๐ซ๐ท
ELYAZ
2026-08-23 00:23:58
(1 day ago)
(wordpress) Failed wordpress login from 209.50.176.35 (BR/Brazil/-): (CF_ENABLE)
Brute-Force
๐ฉ๐ช
conseilgouz
2026-08-22 17:30:13
(2 days ago)
mae-6 : Trying access system files=>/wp-login.php(wp-login.php)
Hacking
๐ซ๐ท
ELYAZ
2026-05-31 07:51:18
(2 months ago)
(y4) Failed scan -byebye- from 209.50.176.35 (BR/Brazil/-): (CF_ENABLE)
Hacking
Anonymous
2026-05-30 19:21:01
(2 months ago)
[ssd5.kdns.gr] httpd-login-spray-site: sites=e-anastasiadis.gr; logs=/var/log/httpd/domains/e-anasta ...
show more
[ssd5.kdns.gr] httpd-login-spray-site: sites=e-anastasiadis.gr; logs=/var/log/httpd/domains/e-anastasiadis.gr.log; samples=site_wide=true | distinct_ips=64 | /wp-login.php
show less
Hacking
Web App Attack
๐ซ๐ท
pm33
2026-05-25 23:05:00
(2 months ago)
Wordpress login attempts
Brute-Force
๐ท๐ด
INTEQ
2026-05-25 22:42:49
(2 months ago)
Web attack from 209.50.176.35
Web App Attack
๐บ๐ธ
Charlesiv
2026-01-03 02:53:11
(7 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: BLOCK
ASN: 200373 (DREI-K-TECH-GMBH ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: BLOCK
ASN: 200373 (DREI-K-TECH-GMBH)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.svn/wc.db
Timestamp: 2026-01-03T02:25:45Z
Ray ID: 9b7f0c267f99ac64
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.1 Safari/605.1.15
show less
Bad Web Bot
Anonymous
2025-12-30 08:35:30
(7 months ago)
"GET /.git/HEAD HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:59:33
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:59:26.191517 2025] [security2:error] [pid 19769:tid 19769] [client 209.50.176.35:46019] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rockitfish.com"] [uri "/.svn/wc.db"] [unique_id "aVIYvqu2shYSMGi48NQMBgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 04:49:36
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:49:29.412544 2025] [security2:error] [pid 13984:tid 13984] [client 209.50.176.35:60285] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flemingtonmartins.com"] [uri "/.env"] [unique_id "aVIIWdqidDh_CLUUQXoAywAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
OceanTreasure
2025-12-29 03:35:21
(7 months ago)
tcp/80; AWS dotfile access attempt: "GET /.aws/credentials" @ 2025-12-29T03:30:36Z [proxy]
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-27 19:56:18
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 14:56:13.991801 2025] [security2:error] [pid 13273:tid 13273] [client 209.50.176.35:47595] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brianwhitty.com"] [uri "/.git/HEAD"] [unique_id "aSis3UEMV7wjGUMzNCOFRwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:02:02
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:01:55.714335 2025] [security2:error] [pid 29891:tid 29891] [client 209.50.176.35:10551] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kiubo.net"] [uri "/.env"] [unique_id "aSbeI2n-ipVL42w-gJ4RkgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:40:25
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:40:22.472820 2025] [security2:error] [pid 3958:tid 3958] [client 209.50.176.35:27415] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.growingsolutions.org"] [uri "/.git/HEAD"] [unique_id "aSaSxgf6B5L_ooiNLAxC1QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 02:19:33
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.176.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 21:19:29.781119 2025] [security2:error] [pid 13653:tid 13653] [client 209.50.176.35:20851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.merrilymovie.robertmcatee.com"] [uri "/.svn/wc.db"] [unique_id "aSZjscaFJ1YpK2JvUvZLFQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack