๐ณ๐ฑ
Alboweb B.V.
2025-08-26 12:44:03
(1 year ago)
Bad web bot activity detected by Fail2Ban in plesk-apache-badbot jail
Bad Web Bot
๐ฉ๐ช
Phenix Info
2025-08-21 04:07:45
(1 year ago)
SmallGuard.fr/Prestashop Empty User Agent
Web App Attack
Anonymous
2025-08-18 13:22:03
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
๐ซ๐ท
geot
2025-07-31 12:26:44
(1 year ago)
HEAD /<<removed>>.com.zip HTTP/1.1
HEAD /backup.zip HTTP/1.1
HEAD /Archive.zip HTTP/1.1
HEAD /<<remo ...
show more
HEAD /<<removed>>.com.zip HTTP/1.1
HEAD /backup.zip HTTP/1.1
HEAD /Archive.zip HTTP/1.1
HEAD /<<removed>>.zip HTTP/1.1
show less
Hacking
Web App Attack
๐ฉ๐ฐ
SaltySoftworks
2025-07-19 10:29:50
(1 year ago)
User agent spoofing
Page: /wp-config.php_old/
Hacking
Spoofing
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-17 12:20:03
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 08:19:51.021965 2025] [security2:error] [pid 9071:tid 9071] [client 37.99.248.26:53942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cuulphotos.com"] [uri "/wp-config.php1"] [unique_id "aHjqZzxhboBnNu5fUmIdaQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-15 11:27:36
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 15 07:27:31.472572 2025] [security2:error] [pid 26948:tid 26948] [client 37.99.248.26:56802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkcodedesign.net"] [uri "/wp-config.php1"] [unique_id "aHY7I60bRPFQ1BcSXW7NvQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-14 08:56:30
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 14 04:56:25.336768 2025] [security2:error] [pid 11338:tid 11338] [client 37.99.248.26:52210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cnprreviews.org"] [uri "/wp-config.php1"] [unique_id "aHTGOQAi-8JtHJRBgC2oZgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-13 09:57:14
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 13 05:57:07.935577 2025] [security2:error] [pid 16049:tid 16049] [client 37.99.248.26:50162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "varalla.com"] [uri "/wp-config.php1"] [unique_id "aHOC841AK-qdp2NbYcjX6wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-12 23:01:36
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 12 19:01:31.246377 2025] [security2:error] [pid 16791:tid 16791] [client 37.99.248.26:50286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thepinesokc.org"] [uri "/wp-config.php.old"] [unique_id "aHLpS6lrih2yLWDojNriwAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
YF
2025-07-11 09:05:02
(1 year ago)
Attempted access to sensitive files
Web App Attack
Anonymous
2025-07-10 23:33:52
(1 year ago)
[00:33:50] 11: Scanning for Exploits - /wp-config.php.old
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-10 18:39:26
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 37.99.248.26 (fasthosting1.geny.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 10 14:39:20.877509 2025] [security2:error] [pid 25217:tid 25217] [client 37.99.248.26:52246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "delcano.org"] [uri "/wp-config.php.old"] [unique_id "aHAI2ILpmRMpQjfjfBqmOgAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-10 10:05:05
(1 year ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ฎ๐น
VHosting
2025-07-10 03:15:52
(1 year ago)
Detected attack by Imunify360
Brute-Force
Web App Attack