๐บ๐ธ
ShadowWhisperer
2026-05-01 16:56:24
(1 month ago)
DOCKER port scan / probe. GET /secrets
Port Scan
๐บ๐ธ
mnsf
2026-02-15 06:06:35
(3 months ago)
Too many Status 40X (12)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐จ๐ญ
Origon
2026-02-15 03:36:38
(3 months ago)
http-sensitive-files - IP: 209.50.186.151 - time="2026-02-15T04:36:38+01:00" level=info msg="(555f6 ...
show more
http-sensitive-files - IP: 209.50.186.151 - time="2026-02-15T04:36:38+01:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 209.50.186.151 (IT/200373) : 4h ban on Ip 209.50.186.151" module=db
show less
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-02-15 01:31:49
(3 months ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฎ๐ฉ
Burayot
2026-02-14 21:37:09
(3 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 209.50.186.151 (IT/Italy/-): 1 in t ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 209.50.186.151 (IT/Italy/-): 1 in the last 3600 secs
show less
Web App Attack
๐ซ๐ท
dynamix
2026-02-14 21:27:04
(3 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:29:19
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:29:12.816559 2026] [security2:error] [pid 25991:tid 25991] [client 209.50.186.151:46525] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maffiniandbearce.com"] [uri "/.env.local"] [unique_id "aYqmCHmBoHqVnAqXC-11gwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 00:39:52
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 19:39:45.116129 2026] [security2:error] [pid 23856:tid 23856] [client 209.50.186.151:25507] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kewlkarz.com"] [uri "/api/.git/config"] [unique_id "aYp-UQoa0P2qSCoUY_e2ugAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-01-23 20:15:04
(4 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ง๐ช
voormedia
2026-01-13 02:10:44
(4 months ago)
Accessed trap at '/.git/HEAD'
Web App Attack
Anonymous
2026-01-03 13:37:54
(5 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.03 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.03 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-12-02 23:14:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 18:14:49.207912 2025] [security2:error] [pid 24053:tid 24053] [client 209.50.186.151:52293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ibiocat.com"] [uri "/.svn/wc.db"] [unique_id "aS9y6fCAW46qC7RVqYQhegAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 21:11:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 16:11:27.420788 2025] [security2:error] [pid 19960:tid 19960] [client 209.50.186.151:34293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stricklinphotography.com"] [uri "/.svn/wc.db"] [unique_id "aS9V_4cdiUtk3U8lW9KzzQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 08:44:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 03:44:04.995191 2025] [security2:error] [pid 23708:tid 23708] [client 209.50.186.151:28561] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "groomattheinn.com"] [uri "/.svn/wc.db"] [unique_id "aS6m1MtkwClehtGgBa_aGwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 07:41:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.186.151 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 02:41:07.281682 2025] [security2:error] [pid 27676:tid 27676] [client 209.50.186.151:17429] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aksaltwatercharters.com"] [uri "/.svn/wc.db"] [unique_id "aS6YE4KI8IxpX1Sz66HXAAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack