๐ฉ๐ช
FeG Deutschland
2026-09-24 16:53:50
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
Anonymous
2026-09-21 06:20:01
(4 days ago)
"Packet Flood; Triggered WAF; Persistent 404 Attempts"
DDoS Attack
๐ฎ๐ฉ
securejdprop
2026-07-09 05:48:13
(2 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus D ...
show more
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus DROP Listed Traffic Inbound group 67). Ip 216.26.248.74 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-07-09 05:48:11.200480137 +0000 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
kosada.com
2026-07-06 06:27:46
(2 months ago)
Web vulnerability probing: /backoffice/
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-21 04:22:29
(3 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ซ๐ท
ELYAZ
2026-06-16 12:28:25
(3 months ago)
(y4) Failed scan -byebye- from 216.26.248.74 (TH/Thailand/-): (CF_ENABLE)
Hacking
๐ฉ๐ช
georgengelmann
2026-06-15 18:23:52
(3 months ago)
Failed login attempt for 654694041
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:11:06
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:11:00.483852 2025] [security2:error] [pid 8197:tid 8197] [client 216.26.248.74:51121] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oceanicpier.com"] [uri "/.env"] [unique_id "aSQhJJaHDdow0f4SLTS57AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:38:34
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:38:27.885137 2025] [security2:error] [pid 12060:tid 12060] [client 216.26.248.74:26171] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.rjdyckarchitect.com"] [uri "/.env"] [unique_id "aSP9Y4zLY_CVxUBUadDFagAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:40:42
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:40:37.190984 2025] [security2:error] [pid 6420:tid 6420] [client 216.26.248.74:52487] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.firewoodart.com"] [uri "/.git/HEAD"] [unique_id "aSPv1eK9Sc9SOpQ4OITBFQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:23:15
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:23:10.348332 2025] [security2:error] [pid 18194:tid 18304] [client 216.26.248.74:9203] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.joshuapaulweckesser.com"] [uri "/.env"] [unique_id "aSPrvu9urIyQu8V3f-3mCQAAAJQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:49:52
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:49:48.077401 2025] [security2:error] [pid 24332:tid 24332] [client 216.26.248.74:51619] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.esa-nne.org"] [uri "/.env"] [unique_id "aSPj7CG_vM6lUglF1_kMvgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 02:33:04
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.248.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 21:32:48.636262 2025] [security2:error] [pid 29643:tid 29643] [client 216.26.248.74:55249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ancientleather.com"] [uri "/.git/HEAD"] [unique_id "aSPD0E5DkFhQvE7vHLFe3QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-02 16:38:30
(10 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 07:09:47
Port Scan
Brute-Force
Exploited Host
Web App Attack
Anonymous
2025-10-27 06:57:05
(10 months ago)
216.26.248.74 - - [27/Oct/2025:07:57:00 +0100] "GET /wp-login.php HTTP/1.1" 404 47 "https://gl-amf.f ...
show more
216.26.248.74 - - [27/Oct/2025:07:57:00 +0100] "GET /wp-login.php HTTP/1.1" 404 47 "https://gl-amf.fr" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_1_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.7390.77 Safari/537.36"
...
show less
Web App Attack