๐ซ๐ฎ
paissangroup
2025-07-19 18:04:18
(1 year ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-18 00:10:39
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 20:10:34.153036 2025] [security2:error] [pid 30737:tid 30737] [client 192.185.81.102:20688] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jacinc.net"] [uri "/wp-config.php1"] [unique_id "aHmQ-lLDyfKlvLL8bcdBDwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-16 13:52:04
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 16 09:51:59.741973 2025] [security2:error] [pid 15164:tid 15164] [client 192.185.81.102:37598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stansco.com"] [uri "/wp-config.php1"] [unique_id "aHeuf4I2Pbl1MZYGxQSvpQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2025-07-15 04:10:08
(1 year ago)
Probing for Wordpress vulnerabilities
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-07-12 13:15:08
(1 year ago)
Detected attack by Imunify360
Brute-Force
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2025-07-12 09:51:59
(1 year ago)
GET /wp-config.php1 HTTP/1.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-11 07:05:15
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 11 03:05:08.937277 2025] [security2:error] [pid 6110:tid 6110] [client 192.185.81.102:42234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "watlab.com"] [uri "/wp-config.php1"] [unique_id "aHC3pCWeVWIRnTQEuAcHEQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-10 21:21:54
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 10 17:21:51.335292 2025] [security2:error] [pid 27080:tid 27080] [client 192.185.81.102:57670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "statebeach.org"] [uri "/wp-config.php.old"] [unique_id "aHAu70vp0vk8x5_XCOP18wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
rdpguard.com
2025-07-10 05:47:05
(1 year ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-07-09 06:26:49
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 09 02:26:45.572713 2025] [security2:error] [pid 11617:tid 11617] [client 192.185.81.102:35120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hendersonhomes.com"] [uri "/wp-config.php.old"] [unique_id "aG4LpX0aesgP_8EySrmFsAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-09 03:45:13
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 08 23:45:08.388742 2025] [security2:error] [pid 11382:tid 11382] [client 192.185.81.102:51790] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unicomtechnologies.com"] [uri "/wp-config.php.old"] [unique_id "aG3lxC_IuvkX9idatYIkSwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-07-09 01:50:51
(1 year ago)
Detected attack by Imunify360
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-09 00:32:05
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 08 20:31:59.641921 2025] [security2:error] [pid 5826:tid 5826] [client 192.185.81.102:11630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "partyinvitationsprinted.com"] [uri "/wp-config.php1"] [unique_id "aG24f8HCQ7a0vuGmjnKvcwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-07-08 19:00:07
(1 year ago)
Detected attack by Imunify360
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-07 16:05:15
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 192.185.81.102 (cadillac.websitewelcome.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 07 12:05:06.982516 2025] [security2:error] [pid 3414:tid 3414] [client 192.185.81.102:32648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tollcrestdairy.com"] [uri "/wp-config.php1"] [unique_id "aGvwMhyYUg46yKWRopDljwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack