๐ซ๐ท
ELYAZ
2026-07-22 11:15:01
(4 hours ago)
(wordpress) Failed wordpress login from 216.26.243.159 (GB/United Kingdom/-): (CF_ENABLE)
Brute-Force
๐บ๐ธ
cwytech
2026-07-21 15:26:22
(1 day ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/wp-us-login-only-high.
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-07-21 08:38:47
(1 day ago)
WordPress login attempt
Brute-Force
๐ฌ๐ง
openstrike.co.uk
2025-12-21 12:09:19
(7 months ago)
9 packets to port 2083
Port Scan
๐บ๐ธ
TPI-Abuse
2025-11-25 06:07:08
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:07:02.154738 2025] [security2:error] [pid 22440:tid 22440] [client 216.26.243.159:45495] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.folkyou.org"] [uri "/.svn/wc.db"] [unique_id "aSVHhvwX-H995Mm3KRdphwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-25 04:30:57
(7 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-11-25 04:12:40
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:12:34.563322 2025] [security2:error] [pid 31882:tid 31882] [client 216.26.243.159:51893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.powderriverinc.com"] [uri "/.env"] [unique_id "aSUssmf4QMzJwGUN1KYzngAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:16:22
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:16:17.013325 2025] [security2:error] [pid 8371:tid 8371] [client 216.26.243.159:27679] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.aethena.org"] [uri "/.git/HEAD"] [unique_id "aSUfgfytskUVvdEoaVCHMAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:37:39
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:37:32.850222 2025] [security2:error] [pid 28933:tid 28933] [client 216.26.243.159:50861] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rnance.com"] [uri "/.git/HEAD"] [unique_id "aSUWbBUaOs7BC_7_TkoyTgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:04:35
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.243.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:04:28.463226 2025] [security2:error] [pid 24348:tid 24348] [client 216.26.243.159:49197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.sprek.net"] [uri "/.git/HEAD"] [unique_id "aSUOrIMadsPZHkAHVNTGcgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2025-11-25 01:15:45
(7 months ago)
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probin ...
show more
Attempted access to sensitive endpoint (/.svn/wc.db) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐จ๐ญ
backslash
2025-10-16 09:15:13
(9 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot