๐ณ๐ฟ
billyborsht
2026-06-24 08:39:11
(2 days ago)
2026-06-24T20:39:10.780628+12:00 southern wordpress(nzangels.com)[1369713]: Authentication attempt f ...
show more
2026-06-24T20:39:10.780628+12:00 southern wordpress(nzangels.com)[1369713]: Authentication attempt for unknown user siteseomanager461 from 209.50.175.163
...
show less
Hacking
Web App Attack
๐ฉ๐ช
F242
2026-06-21 07:46:36
(5 days ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐จ๐ญ
4server
2026-06-17 16:06:12
(1 week ago)
[WedJun1718:06:07.1121742026][security2:error][pid1765081:tid1766267][client209.50.175.163:0]ModSecu ...
show more
[WedJun1718:06:07.1121742026][security2:error][pid1765081:tid1766267][client209.50.175.163:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"368\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"r102.ch\"][uri\"/xmlrpc.php\"][unique_id\"ajLF7ypckk3fgkPxyh8YnwAAAM4\"]\,referer:https://www.bing.com/
show less
Hacking
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-06-15 19:09:37
(1 week ago)
levellagiftware.com.au:443 209.50.175.163 - - [16/Jun/2026:05:09:34 +1000] "GET /?author=1 HTTP/1.1" ...
show more
levellagiftware.com.au:443 209.50.175.163 - - [16/Jun/2026:05:09:34 +1000] "GET /?author=1 HTTP/1.1" 404 194829 "https://wordpress.org/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15"
...
show less
Web App Attack
๐บ๐ธ
myagent.site
2026-01-20 21:44:52
(5 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐ซ๐ฎ
Shaik Sai Meera
2025-11-25 20:40:09
(7 months ago)
IM360 WAF: Hidden file access
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-25 06:05:35
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:05:29.532396 2025] [security2:error] [pid 17669:tid 17669] [client 209.50.175.163:17271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.michaelthompson.biz"] [uri "/.env"] [unique_id "aSVHKTA8ZJZKNwifwOmoPwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:29:03
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:28:55.432698 2025] [security2:error] [pid 22054:tid 22054] [client 209.50.175.163:43005] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.heinzmail.com"] [uri "/.env"] [unique_id "aSU-l-c9Upv8_Gdl0-JMiAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:06:03
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:05:55.701134 2025] [security2:error] [pid 13757:tid 13860] [client 209.50.175.163:36397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.goodfridaygolf.com"] [uri "/.svn/wc.db"] [unique_id "aSU5M72j_Ew1xiyiewwdsQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:39:44
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:39:35.979280 2025] [security2:error] [pid 14339:tid 14339] [client 209.50.175.163:13361] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.onlinesuretybonds.com"] [uri "/.svn/wc.db"] [unique_id "aSUzB7pcvg7d29xpajc4pwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:03:02
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:02:58.171577 2025] [security2:error] [pid 3130:tid 3130] [client 209.50.175.163:57399] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bryteandbroderick.org"] [uri "/.git/HEAD"] [unique_id "aSUqcqUu4VMXehaSDFiMvAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:58:29
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:58:18.878364 2025] [security2:error] [pid 17721:tid 17721] [client 209.50.175.163:19855] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bisbyphotography.com"] [uri "/.git/HEAD"] [unique_id "aSUbSlNmqWc0hv8aAo4qDwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:26:24
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:26:21.082548 2025] [security2:error] [pid 4123:tid 4123] [client 209.50.175.163:52067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wilklass.com"] [uri "/.git/HEAD"] [unique_id "aSUTzR542zOPkIKHUrb7tAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:17:58
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:17:50.217999 2025] [security2:error] [pid 12076:tid 12076] [client 209.50.175.163:13355] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.sexeffects.org"] [uri "/.git/HEAD"] [unique_id "aST1rvJ9xXbO8Zb5jUN2bgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:44:50
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.175.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:44:47.315842 2025] [security2:error] [pid 15502:tid 15502] [client 209.50.175.163:55455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mbehel.com"] [uri "/.svn/wc.db"] [unique_id "aSQa_3HK95bzWUkIA1EjLAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack