π³π±
WeCloudit-Anti-Abuse
2026-09-18 10:07:34
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
π³π±
Site.eu
2026-09-18 09:56:52
(1 day ago)
Excessive multi-domain requests
Brute-Force
πΊπΈ
TPI-Abuse
2026-09-17 15:58:40
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 11:58:33.339105 2026] [security2:error] [pid 14397:tid 14397] [client 2a01:4f8:c015:8240::1:39300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.newhopepetgrooming.leonardodecaprio.com"] [uri "/wp-config.php.bak"] [unique_id "aqwOKcuc7ZRua8nVJm_2WQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 08:37:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 04:37:33.358185 2026] [security2:error] [pid 29575:tid 29575] [client 2a01:4f8:c015:8240::1:36474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.caddydad.com"] [uri "/wp-config.php.bak"] [unique_id "aqumzST7yKlNrcGzubKZCwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-17 06:40:01
(2 days ago)
Excessive multi-domain requests
Brute-Force
π³π±
Alt255
2026-09-17 03:17:24
(2 days ago)
[cb-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 2a01:4f8:c015:8240::1 - - [17/Sep/2026:05:17:02 +0200] "GET /wp-config.php.bak HTTP/1.1" 404 94069 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
π©πͺ
ger-stg-sifi1
2026-09-16 23:26:44
(2 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 20:28:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 16:28:31.591728 2026] [security2:error] [pid 24355:tid 24355] [client 2a01:4f8:c015:8240::1:47670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.fgrotary.org"] [uri "/wp-config.php.bak"] [unique_id "aqr77-9K9GBE05W4YUGZmAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 18:59:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 14:59:13.793561 2026] [security2:error] [pid 3149:tid 3149] [client 2a01:4f8:c015:8240::1:49334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "j3pr.com"] [uri "/wp-config.php.bak"] [unique_id "aqrnAaqPtA2LZbbu3oVxcAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π΅π±
wielorzeczownik
2026-09-16 18:24:18
(2 days ago)
5 failed attempts
2026-09-16 20:24:15 GET /.env -> 404
2026-09-16 20:24:16 GET /.env.bak -> 404 ...
show more
5 failed attempts
2026-09-16 20:24:15 GET /.env -> 404
2026-09-16 20:24:16 GET /.env.bak -> 404
2026-09-16 20:24:16 GET /.env.old -> 404
2026-09-16 20:24:17 GET /.env.save -> 404
2026-09-16 20:24:17 GET /.env.swp -> 404
show less
Web App Attack
Hacking
π΅π±
strefapi_com
2026-09-16 14:49:31
(3 days ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 13:55:38
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:55:33.867900 2026] [security2:error] [pid 16828:tid 16828] [client 2a01:4f8:c015:8240::1:37076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fishleadership.org"] [uri "/wp-config.php.bak"] [unique_id "aqqf1Yeu021nGvfFZXdXmQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-16 06:34:20
(3 days ago)
Excessive 404/403 errors
Brute-Force
πΊπΈ
TPI-Abuse
2026-09-16 04:49:15
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:49:11.193726 2026] [security2:error] [pid 14637:tid 14637] [client 2a01:4f8:c015:8240::1:53338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mkdesignndetailing.com"] [uri "/wp-config.php.bak"] [unique_id "aqofxwpYJfvQVD7QGV_pCgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 02:49:08
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 2a01:4f8:c015:8240::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:49:03.005670 2026] [security2:error] [pid 15132:tid 15132] [client 2a01:4f8:c015:8240::1:54078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tcit.org"] [uri "/wp-config.php.bak"] [unique_id "aqoDnw3TmYj6nplQJvJKnwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack