๐บ๐ธ
TPI-Abuse
2026-05-22 11:43:11
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 07:43:04.620865 2026] [security2:error] [pid 25854:tid 25854] [client 185.94.34.253:27561] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weddingmusicguitar.com"] [uri "/wp-config.php.orig"] [unique_id "ahBBSLz3lWj8IBLDDJAlVgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 09:37:00
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 05:36:54.856517 2026] [security2:error] [pid 2955:tid 2955] [client 185.94.34.253:60663] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yuichiro.us"] [uri "/wp-config.php.old"] [unique_id "ahAjto6B1bJH20nSRiBtCgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 15:23:44
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 11:23:39.814447 2026] [security2:error] [pid 23515:tid 23515] [client 185.94.34.253:34799] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "briannalls.com"] [uri "/wp-config.php.old"] [unique_id "ag3R-yQK6cUQPqVoUWSK1wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 13:09:27
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 09:09:23.757621 2026] [security2:error] [pid 7796:tid 7796] [client 185.94.34.253:24875] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "n4fh.com"] [uri "/wp-config.php.old"] [unique_id "ag2yg5gsu1ugTUaP5_R-lAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 03:14:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 185.94.34.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 23:14:52.240231 2026] [security2:error] [pid 10142:tid 10142] [client 185.94.34.253:48207] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.txt" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thereisaplaceonearth.com"] [uri "/wp-config.txt"] [unique_id "ag0nLLAJfJcLgBJJrb9DtQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-16 22:33:36
(3 weeks ago)
Banned by Fail2Ban on server
Web App Attack
๐ณ๐ฑ
debestelapp
2026-05-16 14:55:06
(3 weeks ago)
Web App Attack
๐ซ๐ฎ
stinpriza
2026-05-15 23:12:47
(3 weeks ago)
Web App Attack
Web App Attack
๐บ๐ธ
octageeks.com
2026-04-16 04:06:15
(1 month ago)
Wordpress malicious attack:[octablocked]
Web App Attack
Anonymous
2025-12-19 11:36:00
(5 months ago)
Forum/form spam
Web Spam
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-10 14:34:51
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐จ๐ญ
backslash
2025-11-19 12:15:05
(6 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
Anonymous
2025-10-11 19:59:19
(7 months ago)
Forum/form spam
Web Spam
๐จ๐ฟ
lp
2025-09-04 15:23:22
(9 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 185.94.34.253
2025-09-04T17:17:04+02: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 185.94.34.253
2025-09-04T17:17:04+02:00 vpn Access-Reject 'date' station: 185.94.34.253 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐บ๐ธ
mdgudell
2025-08-27 23:37:19
(9 months ago)
185.94.34.253 - - [27/Aug/2025:18:37:18 -0500] "GET /+CSCOE+/logon.html HTTP/1.1" 404 4288 "-" "Mozi ...
show more
185.94.34.253 - - [27/Aug/2025:18:37:18 -0500] "GET /+CSCOE+/logon.html HTTP/1.1" 404 4288 "-" "Mozilla/5.0 (Macintosh; U; PPC Mac OS X; de-de) AppleWebKit/85.7 (KHTML, like Gecko) Safari/85.5"
...
show less
Port Scan
Web App Attack