๐บ๐ธ
Penny Packer
2025-07-25 10:41:40
(1 year ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-19 21:19:09
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 19 17:19:03.615891 2025] [security2:error] [pid 31133:tid 31133] [client 31.11.36.236:22080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flyinganorak.com"] [uri "/wp-config.php_old"] [unique_id "aHwLx2D_E9YQWpPhnPVmGwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2025-07-19 17:34:17
(1 year ago)
(modsecurity) srv103 ModSecurity 31.11.36.236 (IT/Italy/host236-36-11-31.serverdedicati.aruba.it): 5 ...
show more
(modsecurity) srv103 ModSecurity 31.11.36.236 (IT/Italy/host236-36-11-31.serverdedicati.aruba.it): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
jcbriar
2025-07-17 22:50:52
(1 year ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-17 00:54:20
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 16 20:54:15.587016 2025] [security2:error] [pid 15517:tid 15527] [client 31.11.36.236:29462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mouawadarchitects.com"] [uri "/wp-config.php1"] [unique_id "aHhJt-fepbqcoCoEvRLbDAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-16 07:24:52
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 16 03:24:45.708904 2025] [security2:error] [pid 5210:tid 5273] [client 31.11.36.236:23850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arizonasolutionsgroup.com"] [uri "/wp-config.php1"] [unique_id "aHdTvY4Yqn1V4nRkK-mTPgAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
DocNetzwerk
2025-07-15 11:58:52
(1 year ago)
(mod_security) mod_security triggered on hostname [redacted] 31.11.36.236 (IT/Italy/host236-36-11-31 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 31.11.36.236 (IT/Italy/host236-36-11-31.serverdedicati.aruba.it)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2025-07-15 09:42:00
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 15 05:41:52.526265 2025] [security2:error] [pid 19937:tid 19937] [client 31.11.36.236:23448] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seebeexee.com"] [uri "/wp-config.php1"] [unique_id "aHYiYNq5qaSGdTMXVrB2CAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-15 02:06:15
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 14 22:06:08.803097 2025] [security2:error] [pid 30086:tid 30086] [client 31.11.36.236:31170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eileensharaga.com"] [uri "/wp-config.php1"] [unique_id "aHW3kN5z7Xkc3vQeohVTeAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
AvonleaConsulting
2025-07-14 06:22:37
(1 year ago)
Attempts to probe web pages for vulnerable PHP or other applications
Web App Attack
Anonymous
2025-07-12 19:14:46
(1 year ago)
Malicious activity detected
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-07-12 15:18:40
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 12 11:18:35.875725 2025] [security2:error] [pid 10098:tid 10116] [client 31.11.36.236:43808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "georgementz.org"] [uri "/wp-config.php.old"] [unique_id "aHJ8y_pt37kwJhl3S6PK-gAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-12 11:28:29
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 12 07:28:25.458296 2025] [security2:error] [pid 28984:tid 28984] [client 31.11.36.236:38058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "therealseska.com"] [uri "/wp-config.php.old"] [unique_id "aHJG2Vwjt3VjXgeWRBMVHAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-11 06:00:45
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 11 02:00:37.549289 2025] [security2:error] [pid 15816:tid 15816] [client 31.11.36.236:23094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ehsantawhidiandassociates.com"] [uri "/wp-config.php.old"] [unique_id "aHCohXeUMa4o0Zdbc-CizwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-11 04:51:55
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.a ...
show more
(mod_security) mod_security (id:210492) triggered by 31.11.36.236 (host236-36-11-31.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 11 00:51:47.995953 2025] [security2:error] [pid 18433:tid 18433] [client 31.11.36.236:36700] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plazacristal.com"] [uri "/wp-config.php.old"] [unique_id "aHCYY2DHfrgUiivB0RgzcwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack