๐ท๐ด
INTEQ
2026-07-23 07:45:16
(16 hours ago)
Web attack from 209.50.181.165
Web App Attack
๐ฑ๐ป
garmtech.com
2026-07-23 02:24:53
(21 hours ago)
IM360 WAF: Prohibited WordPress username login/registration
Web App Attack
๐ฎ๐น
mgarofano80
2026-07-22 16:28:02
(1 day ago)
Brute-Force
Web App Attack
๐บ๐ธ
cwytech
2026-07-21 15:26:45
(2 days ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/wp-us-login-only-high.
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-07-21 08:38:13
(2 days ago)
WordPress login attempt
Brute-Force
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(3 months ago)
"DDoS against public endpoint"
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-12-10 01:42:52
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 20:42:48.578333 2025] [security2:error] [pid 28438:tid 28438] [client 209.50.181.165:18603] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rajabarber.com"] [uri "/.git/HEAD"] [unique_id "aTjQGOg9tIG_hM9J9piuAgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-09 12:51:59
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 07:51:51.745811 2025] [security2:error] [pid 5426:tid 5426] [client 209.50.181.165:40069] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fourhillsco.com"] [uri "/.git/HEAD"] [unique_id "aTgbZyHfbQTg5aoNLlQPOAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-08 12:52:42
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 07:52:36.376992 2025] [security2:error] [pid 15563:tid 15563] [client 209.50.181.165:35499] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chrisswansoncampaign.com"] [uri "/.git/HEAD"] [unique_id "aTbKFMzazcUh0M6vFFG7vQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2025-12-08 03:00:11
(7 months ago)
IM360 WAF: Hidden file access
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-12-07 14:46:16
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 09:46:09.324724 2025] [security2:error] [pid 9318:tid 9318] [client 209.50.181.165:11323] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "raysolemfund.org"] [uri "/.git/HEAD"] [unique_id "aTWTMa4RQTixge6N0nHJdwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 12:33:46
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 07:33:39.945573 2025] [security2:error] [pid 18508:tid 18540] [client 209.50.181.165:37075] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cynosurelandscapers.com"] [uri "/.env"] [unique_id "aTLRI06QxcYcOHsrjFUaLwAAANI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:51:51
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:51:45.530332 2025] [security2:error] [pid 5569:tid 5569] [client 209.50.181.165:58955] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bestprostate.com"] [uri "/.svn/wc.db"] [unique_id "aSQcoWX57DJcSu4geVhMuAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:04:26
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:04:21.878804 2025] [security2:error] [pid 32073:tid 32073] [client 209.50.181.165:14435] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.ospreylake.org"] [uri "/.svn/wc.db"] [unique_id "aSPnVXNhP8DkYJeCb9xCIgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:44:09
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.181.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:44:03.608170 2025] [security2:error] [pid 3866:tid 3866] [client 209.50.181.165:14659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.randyscbcenter.com"] [uri "/.git/HEAD"] [unique_id "aSPikyv_iLW037rm4sK_rgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack