๐บ๐ฆ
URAN Publishing Service
2026-09-15 01:40:33
(1 day ago)
[15/Sep/2026:04:40:33 +0300] -- 209.50.185.79 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-l ...
show more
[15/Sep/2026:04:40:33 +0300] -- 209.50.185.79 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-login.php HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
ph
2026-09-10 22:49:26
(5 days ago)
Bad web bot attempting to run wp-json on non-WP site
Hacking
Bad Web Bot
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-04 05:29:53
(1 week ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐ซ๐ท
Sklurk
2026-08-05 01:17:01
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-08-04 00:04:20
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-30 00:08:33
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
โจ
2026-02-09 01:54:12
(7 months ago)
Domain : cleaners.greenleaflaundry.co.uk
Rule : wp-login
2026-02-09 01:53:05 ***hidden-privacy*** GE ...
show more
Domain : cleaners.greenleaflaundry.co.uk
Rule : wp-login
2026-02-09 01:53:05 ***hidden-privacy*** GET /wp-login.php - 443 - 209.50.185.79 HTTP/2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.6367.207 Safari/537.36 - cleaners.greenleaflaundry.co.uk 404 0 2 1527 659 40 - -
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:24:26
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:24:17.274091 2025] [security2:error] [pid 16592:tid 16592] [client 209.50.185.79:54455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "armchairdevotional.shepherdsgroup.com"] [uri "/.svn/wc.db"] [unique_id "aSVLkU6EeaiNbwSb5rvVugAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:56:58
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:56:51.802917 2025] [security2:error] [pid 9858:tid 9858] [client 209.50.185.79:38155] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emiliofatuzzo.com"] [uri "/.env"] [unique_id "aSVFI_OI7975ldm942ld2gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:44:44
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:44:36.076452 2025] [security2:error] [pid 15101:tid 15104] [client 209.50.185.79:23467] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "driftwoodblue.com"] [uri "/.env"] [unique_id "aSU0NKNKS2jdjfTVKRdrXwAAAQE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:20:25
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:20:17.307112 2025] [security2:error] [pid 19790:tid 19790] [client 209.50.185.79:37811] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coloradocultured.com"] [uri "/.env"] [unique_id "aSUEUTnHskljqXg30cHdAgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:26:10
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:26:01.926817 2025] [security2:error] [pid 2475:tid 2475] [client 209.50.185.79:40585] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barpubsigns.com"] [uri "/.git/HEAD"] [unique_id "aSQWmao0NiEpBeCUn8xMaAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:56:40
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:56:33.829775 2025] [security2:error] [pid 26347:tid 26347] [client 209.50.185.79:16751] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.baker15.com"] [uri "/.svn/wc.db"] [unique_id "aSPlgRnISfKtAR_gn14J3AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:15:45
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:15:01.769052 2025] [security2:error] [pid 10030:tid 10030] [client 209.50.185.79:40909] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.slpawb.com"] [uri "/.svn/wc.db"] [unique_id "aSPbxRsa3CHCV-pQ907jFAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 03:39:55
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.185.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 22:39:50.034145 2025] [security2:error] [pid 21934:tid 21934] [client 209.50.185.79:36279] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "247.fishing"] [uri "/.git/HEAD"] [unique_id "aSPThrfAQI1Ez6LCpFgiFQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack