Anonymous
2026-06-28 13:30:05
(3 days ago)
| CMS scanner: 3 domains targeted (CMS (WordPress or Joomla) login attempt.)
Web App Attack
Hacking
SQL Injection
๐ฒ๐น
Malta
2026-06-28 01:25:38
(3 days ago)
216.26.251.163 - - [28/Jun/2026:03:25:37 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintos ...
show more
216.26.251.163 - - [28/Jun/2026:03:25:37 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.2 Safari/605.1.15"
show less
Hacking
Web App Attack
๐ช๐ธ
librebit
2026-06-24 02:05:05
(1 week ago)
Brute force
Brute-Force
๐ฌ๐ง
openstrike.co.uk
2026-05-13 05:13:20
(1 month ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ต๐ฑ
sefinek.net
2026-04-05 00:41:32
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: / | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-08 15:54:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 10:54:38.672976 2025] [security2:error] [pid 16953:tid 16953] [client 216.26.251.163:35487] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "4115thewestford.com"] [uri "/.svn/wc.db"] [unique_id "aTb0viZhzkJThMImIOPHewAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-06 12:08:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 07:08:33.721500 2025] [security2:error] [pid 12813:tid 12813] [client 216.26.251.163:15597] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "herrell.net"] [uri "/.svn/wc.db"] [unique_id "aTQcwVCkBhg3DeiQr5FeMAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 16:52:04
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 11:52:00.640568 2025] [security2:error] [pid 20023:tid 20023] [client 216.26.251.163:43955] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "suswastima.com"] [uri "/.git/HEAD"] [unique_id "aTMNsMIXR6ugwfwr-hPugQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 08:18:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 03:18:06.158786 2025] [security2:error] [pid 14224:tid 14224] [client 216.26.251.163:58781] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rohn.com"] [uri "/.env"] [unique_id "aTKVPknmleFIZ4aawePMOgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 07:35:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 02:35:39.095521 2025] [security2:error] [pid 26725:tid 26725] [client 216.26.251.163:58419] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cienmalos.com"] [uri "/.svn/wc.db"] [unique_id "aTKLS8pdjhL6Cn8WGEQFBAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:04:52
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:04:49.815813 2025] [security2:error] [pid 17208:tid 17208] [client 216.26.251.163:20247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.valueandmeaning.com"] [uri "/.svn/wc.db"] [unique_id "aSbe0Y658hDgqhv7yOLpjQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:24:22
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:24:17.631019 2025] [security2:error] [pid 24583:tid 24583] [client 216.26.251.163:17277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "new.highaltitudebaking.com"] [uri "/.env"] [unique_id "aSaPAb6CgnqGh4uZUfNv9wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:40:28
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:40:25.078664 2025] [security2:error] [pid 23203:tid 23203] [client 216.26.251.163:11779] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gizmolabs.net"] [uri "/.git/HEAD"] [unique_id "aSZ2qTGkaDj_nFJCCLbN4gAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:41:01
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:40:57.071050 2025] [security2:error] [pid 2166935:tid 2166935] [client 216.26.251.163:17523] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.brookedramer.com"] [uri "/.svn/wc.db"] [unique_id "aSZMmTlodgXFFYsrFm5qzQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:11:03
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.251.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:10:58.126145 2025] [security2:error] [pid 17544:tid 17566] [client 216.26.251.163:33313] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ewoolsey.com"] [uri "/.git/HEAD"] [unique_id "aSZFkrdIsiK1k1jqHcTJqQAAAJQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack