๐ฆ๐ฑ
cheatmaster.store
2026-02-27 01:26:40
(3 months ago)
Automated report: This IP address has been identified as an active public open proxy.
Classification ...
show more
Automated report: This IP address has been identified as an active public open proxy.
Classification: Open Proxy | Spoofing | VPN/Anonymizer | Bad Web Bot.
Country: Canada
Threat level: High. This host is listed across multiple public proxy databases and poses a risk of abuse, credential stuffing, scraping, and spoofed traffic.
Reported by automated threat intelligence pipeline. Do not whitelist without manual verification.
show less
Web Spam
Port Scan
Web App Attack
๐ฆ๐บ
MAGIC
2026-01-19 03:07:16
(5 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฆ๐บ
MAGIC
2025-12-29 03:10:18
(5 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-11 06:10:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 11 01:09:58.051833 2025] [security2:error] [pid 6826:tid 6826] [client 216.26.250.168:23237] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coffeewearamsterdam.com"] [uri "/.env"] [unique_id "aTpgNgfQ4C5dLyKJhsQ2ZAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-09 16:20:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 11:20:08.458483 2025] [security2:error] [pid 5902:tid 5902] [client 216.26.250.168:18107] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magicalgirlcrafts.com"] [uri "/.svn/wc.db"] [unique_id "aThMONGy26KkMlV-WPLOnQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-08 20:25:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 15:25:04.055337 2025] [security2:error] [pid 32742:tid 32742] [client 216.26.250.168:14181] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shannonraevocalstudio.com"] [uri "/.git/HEAD"] [unique_id "aTc0IEMqGGJ3KqKl4icF9QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:02:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:02:26.153140 2025] [security2:error] [pid 18325:tid 18327] [client 216.26.250.168:12113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.windowtailors.com"] [uri "/.git/HEAD"] [unique_id "aSP08ribCkDUtlE56PA-kQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:17:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:17:16.267651 2025] [security2:error] [pid 15149:tid 15149] [client 216.26.250.168:16965] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.wildpete.com"] [uri "/.git/HEAD"] [unique_id "aSPcTMKcrYphb9xVEf-OgQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 03:46:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 22:46:46.295429 2025] [security2:error] [pid 3965260:tid 3965367] [client 216.26.250.168:59753] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.boatservicesgroup.com"] [uri "/.git/HEAD"] [unique_id "aSPVJqyiyKH59MCrZuHpIwAAAg8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 02:40:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.250.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 21:40:06.147421 2025] [security2:error] [pid 776:tid 776] [client 216.26.250.168:53677] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "title29.itaxcenter.com"] [uri "/.svn/wc.db"] [unique_id "aSPFhmEa-y-FIQWY-QkmAAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-21 18:52:20
(6 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/21 12:50:03
Port Scan
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
Nick Lewis
2025-10-09 16:22:33
(8 months ago)
216.26.250.168 (CA/Canada/-), 5 distributed sshd attacks on account [redacted]
Brute-Force
SSH