🇲🇽
octageeks.com
2026-08-24 04:39:07
(5 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
🇺🇸
lostswordfish.com
2026-08-23 06:42:04
(6 days ago)
Wordfence waf block on restore georgia
Web App Attack
🇫🇷
mail.avx.gr
2026-08-22 12:53:35
(1 week ago)
Plesk Fail2Ban jail: Plesk-WebScanners. Evidence: 216.26.254.159 - - [22/Aug/2026:15:53:35 +0300] "P ...
show more
Plesk Fail2Ban jail: Plesk-WebScanners. Evidence: 216.26.254.159 - - [22/Aug/2026:15:53:35 +0300] "POST /wp-login.php HTTP/2.0" 403 1110 "https://candiatrade.gr/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:119.0) Gecko/20100101 Firefox/119.0"
show less
Web App Attack
🇫🇷
Sklurk
2026-08-14 09:59:28
(2 weeks ago)
Web App Attack
Web App Attack
🇫🇷
Sklurk
2026-08-01 02:50:12
(4 weeks ago)
Web App Attack
Web App Attack
🇫🇷
Sklurk
2026-07-08 01:11:46
(1 month ago)
Web App Attack
Web App Attack
🇲🇹
Malta
2026-01-30 03:39:52
(6 months ago)
216.26.254.159 - - [30/Jan/2026:04:39:52 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows ...
show more
216.26.254.159 - - [30/Jan/2026:04:39:52 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.6367.207 Safari/537.36"
show less
Hacking
Web App Attack
🇮🇹
VHosting
2025-12-24 04:20:22
(8 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
🇺🇸
octageeks.com
2025-12-18 05:06:53
(8 months ago)
Wordpress malicious attack:[octaxmlrpc]
Web App Attack
🇩🇪
iNetWorker
2025-11-26 23:24:46
(9 months ago)
trolling for resource vulnerabilities
Web App Attack
🇺🇸
TPI-Abuse
2025-11-26 20:41:03
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 15:40:57.946409 2025] [security2:error] [pid 27389:tid 27389] [client 216.26.254.159:29631] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.aufflammen.com"] [uri "/.git/HEAD"] [unique_id "aSdl2ZegUqExTH_5tw7uIgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-26 10:25:14
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:25:08.179835 2025] [security2:error] [pid 6722:tid 6722] [client 216.26.254.159:16035] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.indigo17.com"] [uri "/.svn/wc.db"] [unique_id "aSbVhPFalx-n-FDXPd4TogAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-25 07:05:21
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:05:12.976581 2025] [security2:error] [pid 25572:tid 25572] [client 216.26.254.159:15843] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.htu.modernsalessolutions.com"] [uri "/.git/HEAD"] [unique_id "aSVVKL6-Se1samWZaCNC5AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-25 06:26:38
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:26:27.294322 2025] [security2:error] [pid 18502:tid 18502] [client 216.26.254.159:32791] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.dynamic-therapy-mn.com"] [uri "/.env"] [unique_id "aSVME7RVM9xHqumgDuo8XgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-25 05:51:38
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.254.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:51:31.263984 2025] [security2:error] [pid 583:tid 583] [client 216.26.254.159:15329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.alarmnummer.com"] [uri "/.git/HEAD"] [unique_id "aSVD46c3f3rB0X9JrT-x6gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack