๐ซ๐ฎ
Christopher Hughes
2026-06-13 20:30:09
(1 hour ago)
[Sat Jun 13 21:30:07.059857 2026] [proxy_fcgi:error] [pid 707803:tid 139821225854528] [client 146.70 ...
show more
[Sat Jun 13 21:30:07.059857 2026] [proxy_fcgi:error] [pid 707803:tid 139821225854528] [client 146.70.24.91:18231] AH01071: Got error 'Primary script unknown'
[Sat Jun 13 21:30:08.290651 2026] [proxy_fcgi:error] [pid 707803:tid 139822784255552] [client 146.70.24.91:18231] AH01071: Got error 'Primary script unknown'
[Sat Jun 13 21:30:08.488499 2026] [proxy_fcgi:error] [pid 707803:tid 139821225854528] [client 146.70.24.91:18231] AH01071: Got error 'Primary script unknown'
[Sat Jun 13 21:30:08.927088 2026] [proxy_fcgi:error] [pid 707803:tid 139822759077440] [client 146.70.24.91:18231] AH01071: Got error 'Primary script unknown'
[Sat Jun 13 21:30:09.536797 2026] [proxy_fcgi:error] [pid 707803:tid 139821225854528] [client 146.70.24.91:18231] AH01071: Got error 'Primary script unknown'
...
show less
Web App Attack
๐ฎ๐ช
Jim Keir
2026-06-13 18:49:40
(2 hours ago)
2026-06-13 18:49:40 146.70.24.91 File scanning, blocking 146.70.24.91 for 5 minutes
Web App Attack
Anonymous
2026-06-13 17:40:02
(4 hours ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐ณ๐ฑ
ParaBug
2026-06-13 15:32:41
(6 hours ago)
146.70.24.91 - - [13/Jun/2026:17:32:41 +0200] "GET /wp-load.php HTTP/1.1" 403 461 "-" "Mozilla/5.0 ( ...
show more
146.70.24.91 - - [13/Jun/2026:17:32:41 +0200] "GET /wp-load.php HTTP/1.1" 403 461 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-13 14:21:25
(7 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
ghostwarriors
2026-06-13 13:50:10
(7 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 12:37:49
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:37:41.649640 2026] [security2:error] [pid 6305:tid 6305] [client 146.70.24.91:57403] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hi-niemczuras.net"] [uri "/wp-config.php"] [unique_id "ai1PFT-jLtwE4u0OBdIJBgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Christopher Hughes
2026-06-13 11:29:44
(10 hours ago)
[Sat Jun 13 12:29:40.489167 2026] [proxy_fcgi:error] [pid 701406:tid 139822207309376] [client 146.70 ...
show more
[Sat Jun 13 12:29:40.489167 2026] [proxy_fcgi:error] [pid 701406:tid 139822207309376] [client 146.70.24.91:63561] AH01071: Got error 'Primary script unknown'
[Sat Jun 13 12:29:41.681150 2026] [proxy_fcgi:error] [pid 701406:tid 139822215702080] [client 146.70.24.91:63561] AH01071: Got error 'Primary script unknown'
[Sat Jun 13 12:29:42.308504 2026] [proxy_fcgi:error] [pid 701406:tid 139822089877056] [client 146.70.24.91:63561] AH01071: Got error 'Primary script unknown'
[Sat Jun 13 12:29:42.676898 2026] [proxy_fcgi:error] [pid 701406:tid 139822767470144] [client 146.70.24.91:63561] AH01071: Got error 'Primary script unknown'
[Sat Jun 13 12:29:43.690732 2026] [proxy_fcgi:error] [pid 701406:tid 139822232487488] [client 146.70.24.91:63561] AH01071: Got error 'Primary script unknown'
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 11:20:15
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:20:10.452218 2026] [security2:error] [pid 8160:tid 8160] [client 146.70.24.91:37629] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.balirealestateadvertiser.com"] [uri "/wp-config.php"] [unique_id "ai086um02YE-FP-FxQyLCgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 11:03:31
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:03:26.589343 2026] [security2:error] [pid 28677:tid 28677] [client 146.70.24.91:61567] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.takemehomedogrescue.org"] [uri "/wp-config.php"] [unique_id "ai04_h36YHBwWRmwkA6FygAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-13 10:51:37
(10 hours ago)
146.70.24.91 - - [13/Jun/2026:12:51:27 +0200] "GET /wp-content/themes/pridmag/db.php HTTP/1.1" 404 6 ...
show more
146.70.24.91 - - [13/Jun/2026:12:51:27 +0200] "GET /wp-content/themes/pridmag/db.php HTTP/1.1" 404 61574 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
146.70.24.91 - - [13/Jun/2026:12:51:27 +0200] "GET /wp-content/themes/pridmag/db.php HTTP/1.1" 404 14421 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
146.70.24.91 - - [13/Jun/2026:12:51:27 +0200] "GET /wp-content/themes/seotheme/mar.php HTTP/1.1" 404 61574 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
146.70.24.91 - - [13/Jun/2026:12:51:28 +0200] "GET /wp-content/themes/seotheme/mar.php HTTP/1.1" 404 14421 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
146.70.24.91 - - [13/Jun/2026:12:51:36 +0200] "GET /wp-includes/autoload_classmap.php HTTP/1.1" 404 6157
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 10:38:45
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 06:38:39.013964 2026] [security2:error] [pid 7616:tid 7616] [client 146.70.24.91:20687] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.abundancecompany.com"] [uri "/wp-config.php"] [unique_id "ai0zL46AmLO7n0eoK2isHwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-13 10:23:32
(11 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
Anonymous
2026-06-13 10:02:05
(11 hours ago)
Attempt to scan vulnerabilities
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-13 10:01:26
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 146.70.24.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 06:01:21.822586 2026] [security2:error] [pid 31424:tid 31424] [client 146.70.24.91:55139] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.phalanxemail.net"] [uri "/wp-config.php"] [unique_id "ai0qcbtl3MYJ53pldOgukgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack