Anonymous
2025-08-01 11:33:04
(11 months ago)
Account archive download attempts
Hacking
Brute-Force
๐ณ๐ฟ
Tripwire
2025-07-22 03:54:38
(1 year ago)
Scanning for backup files
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-08 01:07:13
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 07 21:07:05.660658 2025] [security2:error] [pid 21977:tid 21977] [client 207.246.240.113:58760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mayiasteadman.com"] [uri "/wp-config.php1"] [unique_id "aGxvOcDFQ59D4n-KADYqPwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-06-11 20:07:18
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
octageeks.com
2025-05-25 04:06:48
(1 year ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-12 02:16:36
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 11 22:16:32.469198 2025] [security2:error] [pid 66261:tid 66261] [client 207.246.240.113:63154] [client 207.246.240.113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sbeii.com"] [uri "/wp-config.php.org"] [unique_id "aCFaAKp2qNqvpoJovmdqwgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ipblock.com
2025-05-05 07:33:00
(1 year ago)
IPBlock protected site ID [4055-d][s=07].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-04 18:51:39
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 04 14:51:33.799457 2025] [security2:error] [pid 2408296:tid 2408350] [client 207.246.240.113:33318] [client 207.246.240.113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "charliefranks.com"] [uri "/wp-config.php_old"] [unique_id "aBe3NaKKNsUO11zEv7xIbQAAAVM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-01 05:13:05
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 01 01:12:56.631658 2025] [security2:error] [pid 96611:tid 96611] [client 207.246.240.113:47684] [client 207.246.240.113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mtgretnacampmeeting.com"] [uri "/wp-config.php.org"] [unique_id "aBMC2CSNRqsvwb7Z1zFj8wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-30 15:03:55
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 30 11:03:51.698549 2025] [security2:error] [pid 21410:tid 21410] [client 207.246.240.113:47430] [client 207.246.240.113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thechoiceint.com"] [uri "/wp-config.phpold"] [unique_id "aBI712cH8I9vMOwza04D3wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
rellik
2025-04-29 01:38:00
(1 year ago)
Mass Scanning Critical Files
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-27 09:37:53
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 27 05:37:47.715630 2025] [security2:error] [pid 2509556:tid 2509556] [client 207.246.240.113:41944] [client 207.246.240.113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocketbattle.org"] [uri "/wp-config.php.save"] [unique_id "aA3667G9H7cogaTm5G0QXQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-27 06:30:01
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 27 02:29:53.528351 2025] [security2:error] [pid 1253745:tid 1253745] [client 207.246.240.113:33816] [client 207.246.240.113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blockadegc.com"] [uri "/wp-config.php.save"] [unique_id "aA3O4XtK7m0hG-SCKjpb-AAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-25 14:07:17
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 10:07:10.932215 2025] [security2:error] [pid 24491:tid 24491] [client 207.246.240.113:41392] [client 207.246.240.113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "addocc.com"] [uri "/wp-config.php.bkp"] [unique_id "aAuXDqPZ2Dd_EH_wweo5pAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-22 14:17:14
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 207.246.240.113 (240.246.207.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 22 10:17:07.562273 2025] [security2:error] [pid 32340:tid 32340] [client 207.246.240.113:43984] [client 207.246.240.113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.old" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rockhillcounselors.com"] [uri "/wp-config.old"] [unique_id "aAek43a1f26MeNz1iwvJAwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack