๐ฉ๐ช
palla89
2026-09-08 04:59:21
(1 week ago)
(mod_security) mod_security triggered on hostname [redacted] 2406:da1a:f84:a400:9331:a82a:7851:649f ...
show more
(mod_security) mod_security triggered on hostname [redacted] 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown)
show less
SQL Injection
Anonymous
2026-09-08 02:33:10
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-08 02:00:51
(1 week ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-08 01:48:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 21:48:50.236449 2026] [security2:error] [pid 31958:tid 31958] [client 2406:da1a:f84:a400:9331:a82a:7851:649f:47582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ultratecnologia.com.mx"] [uri "/wp-config.php.bak"] [unique_id "ap9pgoNWgSK5hQ5roHDOYwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-08 00:13:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 20:13:01.885650 2026] [security2:error] [pid 25800:tid 25800] [client 2406:da1a:f84:a400:9331:a82a:7851:649f:46978] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shhcenter.com"] [uri "/wp-config.php.bak"] [unique_id "ap9TDZcSqig6tuzPZdAtDgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 23:24:05
(1 week ago)
2406:da1a:f84:a400:9331:a82a:7851:649f - - [08/Sep/2026:07:24:05 +0800] "GET /.env.bak HTTP/1.1" 200 ...
show more
2406:da1a:f84:a400:9331:a82a:7851:649f - - [08/Sep/2026:07:24:05 +0800] "GET /.env.bak HTTP/1.1" 200 30690 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-07 22:35:32
(1 week ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-07 22:11:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 18:11:50.564102 2026] [security2:error] [pid 20595:tid 20595] [client 2406:da1a:f84:a400:9331:a82a:7851:649f:47176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "doreenkimura.com.misscharlottemusic.com"] [uri "/wp-config.php.bak"] [unique_id "ap82pqK7xTOS6uXon4bCxQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-07 19:17:03
(1 week ago)
Aggressive scanning resulting into 404
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-07 18:41:03
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown ...
show more
(mod_security) mod_security (id:949110) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:40:56.545713 2026] [security2:error] [pid 32179:tid 32179] [client 2406:da1a:f84:a400:9331:a82a:7851:649f:58128] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.delcano.org"] [uri "/wp-config.php~"] [unique_id "ap8FOBDxRXAr00hsUYIS8gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-07 14:19:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 10:19:08.039066 2026] [security2:error] [pid 12156:tid 12156] [client 2406:da1a:f84:a400:9331:a82a:7851:649f:60626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lumentravel.com"] [uri "/wp-config.php~"] [unique_id "ap7H3CSI5OExHAElKAhpLwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 14:16:52
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-07 13:08:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 09:07:58.501330 2026] [security2:error] [pid 26205:tid 26205] [client 2406:da1a:f84:a400:9331:a82a:7851:649f:32904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michelehoop.com"] [uri "/wp-config.php.bak"] [unique_id "ap63LuMZmInJG9719VtNfgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-07 12:50:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 08:50:27.710679 2026] [security2:error] [pid 3339:tid 3339] [client 2406:da1a:f84:a400:9331:a82a:7851:649f:48822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.michaelthompson.biz"] [uri "/wp-config.php.bak"] [unique_id "ap6zE4k2ZyXbMOjP1khCawAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-07 11:19:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2406:da1a:f84:a400:9331:a82a:7851:649f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 07:19:30.302219 2026] [security2:error] [pid 14603:tid 14603] [client 2406:da1a:f84:a400:9331:a82a:7851:649f:36784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.femalegamblers.mobileonlinecasinos.co"] [uri "/wp-config.php.bak"] [unique_id "ap6dwnGYtBPX2ZqF3g3dewAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack