๐บ๐ธ
TPI-Abuse
2026-05-22 10:34:55
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 06:34:50.557717 2026] [security2:error] [pid 19562:tid 19562] [client 185.212.115.240:56799] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "salernospizza.com"] [uri "/wp-config.php.bak"] [unique_id "ahAxSvqF_6kQqeMCwfslmgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 20:36:56
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 16:36:49.825029 2026] [security2:error] [pid 7877:tid 7877] [client 185.212.115.240:34691] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.bak" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stationrestaurant.ca"] [uri "/wp-config.bak"] [unique_id "ag4bYbPhQNQ_qGUUJveewgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 18:58:55
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 14:58:50.020075 2026] [security2:error] [pid 21768:tid 21768] [client 185.212.115.240:60725] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kotelbarmitzvah.com"] [uri "/wp-config.php.save"] [unique_id "ag4EanEs4TprQws93kjUxAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 16:33:52
(4 weeks ago)
(mod_security) mod_security (id:210730) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 12:33:43.772726 2026] [security2:error] [pid 26694:tid 26721] [client 185.212.115.240:13957] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gabegabel.prismatik.com|F|2"] [data ".inc"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gabegabel.prismatik.com"] [uri "/wp-config.inc"] [unique_id "ag3iZz6I9K63VkkSTgj6QwAAANg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 15:44:56
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 11:44:50.713577 2026] [security2:error] [pid 17435:tid 17435] [client 185.212.115.240:39997] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.bak" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.escapegeorgesrouquier.williamgilcher.com"] [uri "/wp-config.bak"] [unique_id "ag3W8nNcpnkO1PtOpl8PkQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 04:31:37
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.212.115.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 00:31:32.001321 2026] [security2:error] [pid 21598:tid 21598] [client 185.212.115.240:18447] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plazahacienda.com"] [uri "/.wp-config.php.swp"] [unique_id "ag05JAU0ZWKY9k29Va1-tgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2026-05-14 17:00:07
(1 month ago)
IM360 WAF: WordPress plugins/themes version enumeration
Brute-Force
FTP Brute-Force
Open Proxy
๐จ๐ญ
4server
2026-04-30 20:10:10
(1 month ago)
[ThuApr3022:10:01.1203172026][security2:error][pid4107218:tid4107968][client185.212.115.240:0]ModSec ...
show more
[ThuApr3022:10:01.1203172026][security2:error][pid4107218:tid4107968][client185.212.115.240:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\^/wp-content/plugins/[\^/] /\(readme\\\\\\\\.txt\|changelog\\\\\\\\.txt\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"381\"][id\"960828\"][msg\"WordPresspluginenumerationblocked\"][hostname\"mondo-it.ch\"][uri\"/wp-content/plugins/wp-gdpr-compliance/readme.txt\"][unique_id\"afO3GQD6-rhRxLw_twkOxQAAAQI\"]
show less
Hacking
Web App Attack
๐บ๐ธ
nyt
2026-04-17 10:03:31
(2 months ago)
WP User Enumeration, WP Author Enumeration
Web App Attack
๐ฉ๐ช
mk-dizajn.hr
2026-04-16 06:25:30
(2 months ago)
$f2bV_matches
Brute-Force
๐ฎ๐ฉ
David Koswari
2026-04-01 06:15:00
(2 months ago)
REQ_BLOCKED_ACL
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:00:53
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฑ๐ป
garmtech.com
2025-12-22 02:48:40
(5 months ago)
IM360 WAF: Old style account creation and modification in Joomla! MV:registration
Web App Attack
๐ท๐บ
sms.ru
2024-09-26 06:50:04
(1 year ago)
SMS pumping attack from foreign country
DDoS Attack