๐บ๐ธ
TPI-Abuse
2026-09-26 07:23:29
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 37.139.53.183 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 37.139.53.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 03:23:12.143965 2026] [security2:error] [pid 13482:tid 13482] [client 37.139.53.183:53245] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.takemehomedogrescue.org"] [uri "/%23wp-config.php%23"] [unique_id "ardy4Cn61IuPSUy5tmDfHQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
rubixstudios
2026-09-25 20:58:02
(12 hours ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
๐ฌ๐ง
Greg Poulson
2026-09-25 05:45:43
(1 day ago)
Our website was hit by this DDOS at a rate of 201 in 5 minutes.
DDoS Attack
Web Spam
Brute-Force
Anonymous
2026-09-25 02:00:45
(1 day ago)
[server.tmg.gr] httpd-config-scan: sites=www.eradjournal.com; logs=/var/log/httpd/domains/eradjourna ...
show more
[server.tmg.gr] httpd-config-scan: sites=www.eradjournal.com; logs=/var/log/httpd/domains/eradjournal.com.log; samples=/config.php.old | /.env | /.env.local
show less
Hacking
Web App Attack
๐ณ๐ฑ
Alboweb B.V.
2026-09-24 18:11:02
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
1gz
2026-09-24 06:20:10
(2 days ago)
Triggered Cloudflare WAF (firewallManaged) from RU.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET meth ...
show more
Triggered Cloudflare WAF (firewallManaged) from RU.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /wp-config.php.cs
UA: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
antlac1
2026-09-24 03:36:51
(2 days ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ท๐ด
clauss
2026-09-24 02:54:22
(2 days ago)
37.139.53.183 - - [24/Sep/2026:05:54:20 +0300] "GET /_wpeprivate/config.json HTTP/2.0" 403 6219 "-" ...
show more
37.139.53.183 - - [24/Sep/2026:05:54:20 +0300] "GET /_wpeprivate/config.json HTTP/2.0" 403 6219 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0"
37.139.53.183 - - [24/Sep/2026:05:54:21 +0300] "GET /web.config HTTP/2.0" 403 6219 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 00:55:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 37.139.53.183 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 37.139.53.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 20:55:18.504238 2026] [security2:error] [pid 10933:tid 10933] [client 37.139.53.183:60001] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.drbolen.com"] [uri "/%23wp-config.php%23"] [unique_id "arR09iw3-vWgLwsKt5dCWQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 23:37:33
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 37.139.53.183 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 37.139.53.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 19:37:18.184034 2026] [security2:error] [pid 12432:tid 12432] [client 37.139.53.183:51011] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.midwayisland.com"] [uri "/%23wp-config.php%23"] [unique_id "arRiroOl6vleoNwN_JzFYAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-23 08:25:17
(3 days ago)
csagent: score 22.4: 404 noise floor x4, secrets grab x2, php 404 x1; 1 domain(s) in 5s
Web App Attack
๐ง๐ช
cmbplf
2026-09-23 08:04:41
(3 days ago)
210 requests with url.path *config.php
Brute-Force
Bad Web Bot
๐ฒ๐ฝ
octageeks.com
2026-09-23 04:20:43
(3 days ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ซ๐ท
dynamix
2026-09-22 22:26:09
(3 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:26:49
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 37.139.53.183 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 37.139.53.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:26:33.871524 2026] [security2:error] [pid 12336:tid 12336] [client 37.139.53.183:50744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dogarttoday.com"] [uri "/%23wp-config.php%23"] [unique_id "arK6SVP6nsOaeUtW3oGTxQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack