๐ง๐ช
cmbplf
2026-08-23 11:43:56
(2 days ago)
101 requests with url.path *.php.bak
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-08-23 09:42:17
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Mangelot Hosting
2026-08-23 05:41:34
(2 days ago)
(wp_config_access) srv102 WordPress wp-config Scan 194.99.104.18 (ES/Spain/-): 1 in the last 3600 se ...
show more
(wp_config_access) srv102 WordPress wp-config Scan 194.99.104.18 (ES/Spain/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ง๐ช
taivas.nl
2026-08-23 04:33:16
(2 days ago)
Many_bad_calls
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 02:23:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.99.104.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 194.99.104.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 22:23:34.899788 2026] [security2:error] [pid 30121:tid 30121] [client 194.99.104.18:33060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sizefinder.com"] [uri "/wp-config.php.save"] [unique_id "aopZpshGHb8Be-HyMuxNhAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-22 23:23:33
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-22 21:48:08
(2 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /wp-config.php.inc (+4 more)
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 20:18:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.99.104.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 194.99.104.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 16:18:43.583360 2026] [security2:error] [pid 517:tid 527] [client 194.99.104.18:55824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nimbll.com"] [uri "/wp-config.php.OLD"] [unique_id "aooEI9gXm6U5w_OBRneJ8wAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-08-22 19:43:32
(2 days ago)
Blocked by CSF 13 firewall - Rule: ES/Spain/-
Web App Attack
๐ซ๐ท
COMAITE
2026-08-22 19:32:28
(2 days ago)
Suspicious URL access.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 14:48:35
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 194.99.104.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 194.99.104.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:48:28.853569 2026] [security2:error] [pid 14939:tid 14939] [client 194.99.104.18:58840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kathydumesnilart.com"] [uri "/wp-config.php~"] [unique_id "aom2vCzyYQStc1q4AzlVhgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 13:25:27
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 194.99.104.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 194.99.104.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 09:25:22.388687 2026] [security2:error] [pid 3686:tid 3686] [client 194.99.104.18:57218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.inquisitivequincie.com"] [uri "/wp-config.php-backup"] [unique_id "aomjQjVKJD23aLAERpjv-gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-22 12:32:38
(3 days ago)
Try to access /.env
Web App Attack
๐ง๐ช
taivas.nl
2026-08-22 10:32:16
(3 days ago)
Bad_requests
Bad Web Bot
๐บ๐ธ
mnsf
2026-08-22 07:05:06
(3 days ago)
Abuse Detected (9)
Brute-Force
Web App Attack