๐บ๐ธ
TPI-Abuse
2026-06-04 17:13:24
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 43.163.242.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 43.163.242.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 13:13:15.948041 2026] [security2:error] [pid 2000:tid 2000] [client 43.163.242.6:60152] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||natural-history-conservation.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "natural-history-conservation.com"] [uri "/natural-history-conservation.sql"] [unique_id "aiGyKzQ7vPr0qcMDYegZ7gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-11 12:42:52
(1 month ago)
[redacted] 43.163.242.6 - - [11/Apr/2026:14:42:46 +0200] "GET /blog/wordpress/wp-admin/setup-config. ...
show more
[redacted] 43.163.242.6 - - [11/Apr/2026:14:42:46 +0200] "GET /blog/wordpress/wp-admin/setup-config.php HTTP/1.1" 404 110527 "http://filmphilharmonie.net/blog/wordpress/wp-admin/setup-config.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
[redacted] 43.163.242.6 - - [11/Apr/2026:14:42:46 +0200] "GET /blog/wordpress/wp-admin/install.php HTTP/1.1" 404 110527 "http://filmphilharmonie.net/blog/wordpress/wp-admin/install.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
[redacted] 43.163.242.6 - - [11/Apr/2026:14:42:46 +0200] "GET /blog/wp-admin/setup-config.php HTTP/1.1" 404 110527 "http://filmphilharmonie.net/blog/wp-admin/setup-config.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
[redacted] 43.163.242.6 - - [11/Apr/2026:14:42:46 +0200] "GET
...
show less
Hacking
Web App Attack
๐ฉ๐ช
LRob.fr
2026-04-09 22:15:03
(1 month ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
๐ณ๐ฑ
Mangelot Hosting
2026-04-09 06:27:04
(1 month ago)
(php_susp_dir) srv101 PHP in suspicious dir 43.163.242.6 (JP/Japan/-): 1 in the last 3600 secs; Port ...
show more
(php_susp_dir) srv101 PHP in suspicious dir 43.163.242.6 (JP/Japan/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-04-08 20:41:07
(1 month ago)
Excessive multi-domain requests
Brute-Force
๐ฎ๐น
LTM
2026-03-25 07:20:01
(2 months ago)
WebServer - Attempts to exploit
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
โจ
2026-03-25 02:02:14
(2 months ago)
Domain : staging.fellsoft.com
Rule : admin
2026-03-25 02:00:46 ***hidden-privacy*** GET /wordpress/w ...
show more
Domain : staging.fellsoft.com
Rule : admin
2026-03-25 02:00:46 ***hidden-privacy*** GET /wordpress/wordpress/wp-admin/install.php - 443 - 43.163.242.6 HTTP/1.1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 - staging.fellsoft.com 404 0 0 42365 234 2209 - -
show less
Exploited Host
Web App Attack
๐ณ๐ฑ
Site.eu
2026-03-24 15:14:06
(2 months ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-03-24 11:31:10
(2 months ago)
[Tue Mar 24 12:31:07.054964 2026] [authz_core:error] [pid 481319:tid 481410] [client 43.163.242.6:53 ...
show more
[Tue Mar 24 12:31:07.054964 2026] [authz_core:error] [pid 481319:tid 481410] [client 43.163.242.6:53742] AH01630: client denied by server configuration: /var/www/cimt-precision/wp-admin/install.php, referer: http://pre.cimt-precision.de/wp-admin/install.php
[Tue Mar 24 12:31:07.086238 2026] [authz_core:error] [pid 481206:tid 481290] [client 43.163.242.6:53743] AH01630: client denied by server configuration: /var/www/cimt-precision/wp-admin/setup-config.php, referer: http://pre.cimt-precision.de/wp-admin/setup-config.php
[Tue Mar 24 12:31:09.343579 2026] [authz_core:error] [pid 481319:tid 481395] [client 43.163.242.6:53775] AH01630: client denied by server configuration: /var/www/wordp/wp-admin/setup-config.php
[Tue Mar 24 12:31:09.493036 2026] [authz_core:error] [pid 481320:tid 481462] [client 43.163.242.6:53777] AH01630: client denied by server configuration: /var/www/wordp/wp-admin/install.php
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
jormaster3k
2026-03-23 17:01:12
(2 months ago)
Attack against Apache (too many 404s)
Web App Attack
Anonymous
2026-03-23 00:17:31
(2 months ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 43.163.242.6 (JP/Japan/- ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 43.163.242.6 (JP/Japan/-)
show less
Port Scan
๐บ๐ธ
mnsf
2026-03-22 17:05:13
(2 months ago)
Scanning/Probing (23)
Brute-Force
Web App Attack
๐ฆ๐น
Starburst SysOp Team
2026-03-21 17:27:50
(2 months ago)
Restricted File Access Attempt. Matched phrase "config.php" at REQUEST_FILENAME. (930130-ams6-1)
Hacking
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-03-18 02:57:46
(2 months ago)
43.163.242.6 - - [18/Mar/2026:04:57:28 +0200] "GET /backup/wp-admin/install.php HTTP/1.1" 404 2826 " ...
show more
43.163.242.6 - - [18/Mar/2026:04:57:28 +0200] "GET /backup/wp-admin/install.php HTTP/1.1" 404 2826 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
43.163.242.6 - - [18/Mar/2026:04:57:28 +0200] "GET /wordpress/wordpress/wp-admin/install.php HTTP/1.1" 404 2827 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-03-17 05:58:26
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack