๐ฉ๐ช
McClay
2026-09-11 15:20:10
(1 hour ago)
Illegal access attempt:209.50.189.74 - - [11/Sep/2026:17:20:10 +0200] "GET /wp-login.php HTTP/1.1" 4 ...
show more
Illegal access attempt:209.50.189.74 - - [11/Sep/2026:17:20:10 +0200] "GET /wp-login.php HTTP/1.1" 404 4409 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:124.0) Gecko/20100101 Firefox/124.0"
...
show less
Hacking
Web App Attack
๐ณ๐ด
jad-abuse
2026-09-10 18:48:36
(22 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_login. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_login. Observed by 1 sensor(s); 1 hits.
show less
Brute-Force
Web App Attack
๐ซ๐ท
Sklurk
2026-08-17 04:02:00
(3 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-30 00:59:02
(1 month ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-02 13:33:19
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 02 09:33:11.262061 2026] [security2:error] [pid 11687:tid 11726] [client 209.50.189.74:62873] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.destination-kitchen.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.destination-kitchen.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "akZol-f28wfQaZ0u_qxE3wAAANY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 05:48:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 19 00:48:39.414283 2026] [security2:error] [pid 17675:tid 17675] [client 209.50.189.74:18935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kunzteam.com"] [uri "/.git/config"] [unique_id "aZakN58pF1pNVkjWM-V-mAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 03:10:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:10:48.182431 2026] [security2:error] [pid 17724:tid 17724] [client 209.50.189.74:19787] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kerrywood.com"] [uri "/wp/.git/config"] [unique_id "aZZ_OK9i-b828k84RzeQaAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 19:53:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 14:53:18.612634 2026] [security2:error] [pid 6976:tid 6984] [client 209.50.189.74:10721] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "torreymanagement.com"] [uri "/.env.local"] [unique_id "aZYYri0eKVajTgEacMaKyQAAAUU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-02-18 18:31:45
(6 months ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐บ๐ธ
mnsf
2026-02-18 14:06:15
(6 months ago)
Too many Status 40X (11)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 12:43:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.189.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 07:43:47.987535 2026] [security2:error] [pid 4903:tid 4903] [client 209.50.189.74:60417] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weissdavis.com"] [uri "/app/.git/config"] [unique_id "aZW0A4sSCHDT135kmrkU9gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-12 21:02:51
(7 months ago)
"GET /wp-login.php HTTP/1.1"
Hacking
Web App Attack