๐ฒ๐ฝ
octageeks.com
2026-06-18 04:23:51
(13 hours ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ซ๐ท
ELYAZ
2026-06-17 14:06:28
(1 day ago)
(y4) Failed scan -byebye- from 209.50.169.241 (US/United States/-): (CF_ENABLE)
Hacking
๐ฌ๐ท
setupgr
2026-06-12 14:31:03
(6 days ago)
(mod_security) mod_security (id:900001) triggered by 209.50.169.241: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:900001) triggered by 209.50.169.241: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 12 17:31:00.184098 2026] [security2:error] [pid 326864:tid 326915] [client 209.50.169.241:63909] ModSecurity: Access denied with code 403 (phase 1). Match of "rx ^(www\\\\.)?(pankoskal\\\\.gr|alloweddomain2\\\\.com)$" against "REQUEST_HEADERS:Host" required. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "74"] [id "900001"] [msg "Blocked WP Login attempt on domain: mail.doityourself.gr"] [severity "CRITICAL"] [tag "security"] [hostname "mail.doityourself.gr"] [uri "/wp-login.php"] [unique_id "aiwYJMuFnDrX8qeXldOAgAAAANg"], referer: https://mail.doityourself.gr/wp-login.php
show less
Port Scan
๐ฒ๐น
Malta
2026-06-10 11:23:36
(1 week ago)
209.50.169.241 - - [10/Jun/2026:13:23:36 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows ...
show more
209.50.169.241 - - [10/Jun/2026:13:23:36 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 11.0; Win64; x64; rv:119.0) Gecko/20100101 Firefox/119.0"
show less
Hacking
Web App Attack
๐ฉ๐ช
iNetWorker
2026-04-13 17:46:24
(2 months ago)
trolling for resource vulnerabilities
Web App Attack
๐ซ๐ท
Little Iguana
2025-12-07 09:42:19
(6 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐บ๐ธ
TPI-Abuse
2025-11-26 20:04:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 15:04:37.628875 2025] [security2:error] [pid 1431:tid 1431] [client 209.50.169.241:46883] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.musicalmuses.com"] [uri "/.env"] [unique_id "aSddVWNH7uCZ-rVg9zG3pAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 07:00:37
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:00:28.960997 2025] [security2:error] [pid 31097:tid 31107] [client 209.50.169.241:10407] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.barnett-ranch.com"] [uri "/.env"] [unique_id "aSVUDLq9tJPt7N9iC1ML5wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:40:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:40:09.695741 2025] [security2:error] [pid 1817000:tid 1817021] [client 209.50.169.241:39347] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bible.jd-web-designs.com"] [uri "/.env"] [unique_id "aSVPSZiXM9qjzOaPIgRZXAAAAUk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:18:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:18:07.289303 2025] [security2:error] [pid 22243:tid 22243] [client 209.50.169.241:20839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.survivalaikido.com"] [uri "/.env"] [unique_id "aSU8D7fPGxHeHVfN1h4HuAAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:59:39
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:59:34.473985 2025] [security2:error] [pid 19434:tid 19434] [client 209.50.169.241:53193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.stradcompetition.org"] [uri "/.env"] [unique_id "aSUppqTIxBlFkUJma9mwRgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:35:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:35:03.219725 2025] [security2:error] [pid 32589:tid 32589] [client 209.50.169.241:37705] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "store.newmooncafe.com"] [uri "/.svn/wc.db"] [unique_id "aSUV12k0Rm0xD0Wx6W5qLgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:13:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:13:23.912753 2025] [security2:error] [pid 18914:tid 18914] [client 209.50.169.241:10655] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.billwegener.net"] [uri "/.git/HEAD"] [unique_id "aSUQw7CskAwSwqU8OdHxUgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2025-11-25 01:02:24
(6 months ago)
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probin ...
show more
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:51:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.169.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:51:34.273532 2025] [security2:error] [pid 4144:tid 4144] [client 209.50.169.241:56365] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.accommodation-perthairport.com"] [uri "/.env"] [unique_id "aST9lnbDVDZdIfI-RPgePwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack