Anonymous
2026-09-10 18:09:48
(1 hour ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-10 11:03:11
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 07:03:04.697408 2026] [security2:error] [pid 16977:tid 16977] [client 169.40.142.104:49672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.brazilianbottom.com"] [uri "/wp-config.php.save"] [unique_id "aqKOaPuZ97w1TV0WobS1vwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 10:39:12
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 06:39:07.006796 2026] [security2:error] [pid 18974:tid 18974] [client 169.40.142.104:58816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.indyham.com"] [uri "/wp-config.php.bak"] [unique_id "aqKIy9YUy5rxTtV8etT0ngAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
BlueWire Hosting
2026-09-09 15:09:51
(1 day ago)
Probing websites for vulnerabilities
Web App Attack
Anonymous
2026-09-09 14:31:40
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-09 08:07:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 04:07:46.954779 2026] [security2:error] [pid 21473:tid 21473] [client 169.40.142.104:56004] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.crep-psych.org"] [uri "/wp-config.php.bak"] [unique_id "aqET0j7z994ebuVYxmO3fQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Charlesiv
2026-09-09 08:02:22
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
ASN: 215599 (Zkillu SAS)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
ASN: 215599 (Zkillu SAS)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-09-09T06:36:34Z
Ray ID: a3842dedfd6fe634
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
Bad Web Bot
🇧🇪
taivas.nl
2026-09-09 04:32:55
(1 day ago)
Many_bad_calls
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 11:36:13
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 169.40.142.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 169.40.142.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 07:36:05.255567 2026] [security2:error] [pid 4190:tid 4244] [client 169.40.142.104:55884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vinylnotespodcast.com.104ventures.com"] [uri "/wp-config.php.bak"] [unique_id "ap_zJemTK23ngK0qlxNwpAAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 11:00:24
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇧🇪
taivas.nl
2026-09-08 10:32:11
(2 days ago)
Bad_requests
Bad Web Bot
Anonymous
2026-09-08 09:48:47
(2 days ago)
[server.tmg.gr] httpd-config-scan: sites=www.cardiorenal2021.gr; logs=/var/log/httpd/domains/cardior ...
show more
[server.tmg.gr] httpd-config-scan: sites=www.cardiorenal2021.gr; logs=/var/log/httpd/domains/cardiorenal2021.gr.log; samples=/wp-config.php.bak | /wp-config.php~ | /wp-config.php.save
show less
Hacking
Web App Attack
🇺🇸
Charlesiv
2026-09-08 08:02:58
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
ASN: 215599 (Zkillu SAS)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
ASN: 215599 (Zkillu SAS)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-09-08T06:46:48Z
Ray ID: a37bff8879b1e634
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
Bad Web Bot