🇺🇸
TPI-Abuse
2026-09-08 13:13:51
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 09:13:44.913803 2026] [security2:error] [pid 15549:tid 15549] [client 187.19.5.210:59022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "inquisitivequincie.com"] [uri "/wp-config.php.bak"] [unique_id "aqAKCAbT8OrNpk-Ne2FT5AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 11:53:09
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 07:53:01.690067 2026] [security2:error] [pid 17539:tid 17539] [client 187.19.5.210:51964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abeltours.com"] [uri "/wp-config.php.bak"] [unique_id "ap_3HS4tYdb80XMw8IYyowAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Tha_14
2026-09-08 10:22:31
(8 hours ago)
Multiple suspicious activities were detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 07:41:26
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 03:41:20.105763 2026] [security2:error] [pid 9174:tid 9174] [client 187.19.5.210:55776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.activethinkers.net"] [uri "/wp-config.php.bak"] [unique_id "ap-8IOqE3wA-mKZGzf8QlgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
taivas.nl
2026-09-08 07:32:12
(11 hours ago)
Bad_requests
Bad Web Bot
🇭🇳
unph
2026-09-08 07:00:44
(12 hours ago)
Intento de acceso sospechoso bloqueado por AbuseIPDB Blocker Plugin
Brute-Force
🇺🇸
TPI-Abuse
2026-09-08 06:32:05
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 02:31:56.936961 2026] [security2:error] [pid 6874:tid 6874] [client 187.19.5.210:58360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rochesterhistorical.org"] [uri "/wp-config.php.bak"] [unique_id "ap-r3EUgfaMcDyqv9F_S0QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-08 06:17:34
(12 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
🇷🇺
DZBOT
2026-09-08 06:15:07
(12 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-09-08 06:12:37
(12 hours ago)
[ns41.kdns.gr] httpd-config-scan: sites=www.koukas-machines.com; logs=/var/log/httpd/domains/koukas- ...
show more
[ns41.kdns.gr] httpd-config-scan: sites=www.koukas-machines.com; logs=/var/log/httpd/domains/koukas-machines.com.log; samples=/wp-config.php.bak | /wp-config.php~ | /wp-config.php.save
show less
Hacking
Web App Attack
🇸🇪
nekopavel
2026-09-08 06:09:56
(12 hours ago)
187.19.5.210 - - [08/Sep/2026:08:09:50 +0200]"GET /wp-json/gravitysmtp/v1/tests/mock-data?page=gravi ...
show more
187.19.5.210 - - [08/Sep/2026:08:09:50 +0200]"GET /wp-json/gravitysmtp/v1/tests/mock-data?page=gravitysmtp-settings HTTP/1.1" 404 548"-" autoconfig.pavel.gg "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36""0.001" "0.000""Paul\xC3\xADnia" "BR"
187.19.5.210 - - [08/Sep/2026:08:09:53 +0200]"GET /wp-json/gravitysmtp/v1/tests/mock-data HTTP/1.1" 404 548"-" autoconfig.pavel.gg "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36""0.001" "0.001""Paul\xC3\xADnia" "BR"
187.19.5.210 - - [08/Sep/2026:08:09:53 +0200]"GET /wp-json/gravitysmtp/v1/tests/mock-data?page=gravitysmtp-settings HTTP/1.1" 301 162"-" autoconfig.pavel.gg "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36""0.000" "-""Paul\xC3\xADnia" "BR"
...
show less
Hacking
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-08 06:05:26
(13 hours ago)
Abuse Detected (11)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 06:04:38
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the las ...
show more
(mod_security) mod_security (id:210492) triggered by 187.19.5.210 (210.n5.fvno.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 02:04:33.478545 2026] [security2:error] [pid 15470:tid 15470] [client 187.19.5.210:60800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hollywooddrummers.mikedeutsch.com"] [uri "/wp-config.php.bak"] [unique_id "ap-lcX0c9WhuiKkCCc2ZxwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
strefapi_com
2026-09-08 05:48:02
(13 hours ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
🇪🇸
scm
2026-09-08 05:42:10
(13 hours ago)
Web App Attack