๐ซ๐ท
geot
2026-09-14 12:37:43
(1 week ago)
GET /api/session/properties HTTP/1.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 17:34:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 s ...
show more
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 13:34:07.809294 2026] [security2:error] [pid 5491:tid 5491] [client 37.247.49.168:57636] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tttns.com"] [uri "/about-jason//wp-config.php.bak"] [unique_id "aqbejxFfLXIgoMWpZQnx6QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 15:42:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 s ...
show more
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 11:42:22.122965 2026] [security2:error] [pid 28142:tid 28142] [client 37.247.49.168:45906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "femalegamblers.org"] [uri "/wp-config.php.bak"] [unique_id "aqbEXg1r6syk9-C2ahH9hAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-13 15:20:01
(1 week ago)
crowdsecurity/http-cve-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 14:43:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 s ...
show more
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 10:43:33.676661 2026] [security2:error] [pid 3255569:tid 3255649] [client 37.247.49.168:48702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.plumeraproductions.com"] [uri "/wp-config.php.bak"] [unique_id "aqa2lT4CZhSgqyWslGgTBQAAAUM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 12:55:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 s ...
show more
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 08:55:43.244113 2026] [security2:error] [pid 17246:tid 17246] [client 37.247.49.168:37550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "susanleeward.com"] [uri "/wp-config.php.bak"] [unique_id "aqadT6nuL5nJbBIvPGgOnwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-13 08:38:11
(1 week ago)
Web vulnerability scanning
Brute-Force
Web Spam
Web App Attack
๐บ๐ธ
mnsf
2026-09-13 08:06:25
(1 week ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐ซ๐ท
COMAITE
2026-09-13 08:03:14
(1 week ago)
Suspicious URL access.
Web App Attack
Anonymous
2026-09-13 07:19:25
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-13 07:08:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 s ...
show more
(mod_security) mod_security (id:210492) triggered by 37.247.49.168 (rewilt.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 03:08:44.429362 2026] [security2:error] [pid 32048:tid 32048] [client 37.247.49.168:52382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.eta-mct.com"] [uri "/wp-config.php.bak"] [unique_id "aqZL_GvWK-__cu0N4d0l3QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-13 06:32:18
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ซ๐ท
ELYAZ
2026-09-13 05:37:01
(1 week ago)
(y3) Failed access -byebye- from 37.247.49.168 (IT/Italy/rewilt.com): (CF_ENABLE)
Hacking
๐ณ๐ฑ
Roderic
2026-09-13 05:24:53
(1 week ago)
*Port Scan* detected from 37.247.49.168 (IT/Italy/Province of Milan/Milan/rewilt.com/[redacted]).
Port Scan
๐ซ๐ท
pm33
2026-09-13 05:00:22
(1 week ago)
Excessive crawling HTTP 404
Web App Attack