🇫🇷
ELYAZ
2026-08-28 20:36:38
(1 day ago)
(wordpress) Failed wordpress login from 209.50.165.85 (US/United States/-): (CF_ENABLE)
Brute-Force
🇺🇸
lostswordfish.com
2026-08-28 18:02:03
(1 day ago)
Wordfence waf block on jestrellafoundation
Web App Attack
🇩🇪
F242
2026-08-28 13:12:57
(2 days ago)
Wordpress Login or XMLRPC abuse
Web App Attack
🇮🇩
Burayot
2026-08-14 19:59:22
(2 weeks ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 209.50.165.85 (US/United States/-): ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 209.50.165.85 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
🇺🇸
lostswordfish.com
2026-08-09 11:54:04
(3 weeks ago)
Wordfence waf block on uvfousor WPIDD
Web App Attack
🇫🇷
Sklurk
2026-07-30 01:43:29
(1 month ago)
Web App Attack
Web App Attack
Anonymous
2026-07-29 07:00:00
(1 month ago)
Apache probe; attempts=22; exact paths: /xmlrpc.php
Web App Attack
Anonymous
2026-05-23 06:52:51
(3 months ago)
wordpress authentication brute force
Brute-Force
Web App Attack
🇺🇸
cyfordtechnologies.com
2026-05-01 11:00:14
(3 months ago)
High-abuse ASN prefix: 209.50. : Reported by Cyford API
Web App Attack
Anonymous
2026-03-07 14:25:53
(5 months ago)
Forum/form spam
Web Spam
🇦🇺
MAGIC
2025-12-07 00:06:36
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇺🇸
TPI-Abuse
2025-11-26 10:31:14
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.165.85 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.165.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:31:08.365668 2025] [security2:error] [pid 21477:tid 21477] [client 209.50.165.85:52037] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.plazahacienda.com"] [uri "/.svn/wc.db"] [unique_id "aSbW7MQryOw86jNgDqRZ9gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-26 05:58:34
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.165.85 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.165.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:58:30.597899 2025] [security2:error] [pid 20587:tid 20587] [client 209.50.165.85:16837] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.seese.us"] [uri "/.git/HEAD"] [unique_id "aSaXBowni59EkkOXGqA2OwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-26 05:31:49
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.165.85 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.165.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:31:45.730253 2025] [security2:error] [pid 18695:tid 18695] [client 209.50.165.85:10043] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.my1611.com"] [uri "/.svn/wc.db"] [unique_id "aSaQwXIHsOomzV62bvF1uwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-26 03:13:16
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.165.85 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.165.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:13:08.771177 2025] [security2:error] [pid 17544:tid 17568] [client 209.50.165.85:38847] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.boxwoodgarden.com"] [uri "/.git/HEAD"] [unique_id "aSZwRLdIsiK1k1jqHcT7wQAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack