๐บ๐ธ
Ben Schoolland
2026-09-11 11:08:12
(6 days ago)
Requested known WordPress backdoor/scanner-only paths. No legitimate use.
Bad Web Bot
Web App Attack
๐จ๐ฟ
Countryman
2026-09-05 00:10:02
(1 week ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
๐บ๐ธ
etu brutus
2026-09-01 22:21:38
(2 weeks ago)
216.26.228.174 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host
๐บ๐ธ
cyfordtechnologies.com
2026-05-02 02:37:24
(4 months ago)
High-abuse ASN prefix: 216.26. : Reported by Cyford API
Web App Attack
Anonymous
2026-04-19 06:35:19
(4 months ago)
Forum/form spam
Web Spam
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(5 months ago)
"DDoS against public endpoint"
DDoS Attack
๐บ๐ธ
cyfordtechnologies.com
2026-03-21 00:05:35
(5 months ago)
High-abuse ASN prefix: 216.26. : Reported by Cyford API
Web App Attack
Anonymous
2026-01-26 06:30:33
(7 months ago)
Forum/form spam
Web Spam
๐ฌ๐ง
relianoid.com
2026-01-26 00:28:12
(7 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
๐ฆ๐บ
MAGIC
2026-01-10 02:03:59
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-24 09:25:56
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:25:48.201176 2025] [security2:error] [pid 27437:tid 27482] [client 216.26.228.174:31453] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.martinbenes.com"] [uri "/.env"] [unique_id "aSQknNoYfOeNrXwwM6SO3QAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:37:26
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:37:19.190189 2025] [security2:error] [pid 18093:tid 18093] [client 216.26.228.174:58781] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jcbergapparel.com"] [uri "/.env"] [unique_id "aSQLLzT7hOsF81KqVse2BAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:48:04
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:47:58.197275 2025] [security2:error] [pid 17612:tid 17612] [client 216.26.228.174:26289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shopliddlesports.liddlesports.com"] [uri "/.env"] [unique_id "aSP_np6McF-W6EQ1rql4YwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:21:23
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:21:16.005520 2025] [security2:error] [pid 31169:tid 31169] [client 216.26.228.174:15839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.drmaterna.com"] [uri "/.svn/wc.db"] [unique_id "aSPrTG6XMMzvBFlT6G8WNQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:22:04
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.228.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:21:38.465448 2025] [security2:error] [pid 3285509:tid 3285509] [client 216.26.228.174:44945] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.pasamugo.com"] [uri "/.git/HEAD"] [unique_id "aSPdUgiDacXwv42UaxzC6gAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack