๐จ๐ฆ
polycoda
2025-08-04 09:38:56
(1 year ago)
๐ Probes for backup files such as: content.zip, arc.zip, new.zip, data.zip, temp.zip, main.zip, back ...
show more
๐ Probes for backup files such as: content.zip, arc.zip, new.zip, data.zip, temp.zip, main.zip, backup.zip, back.zip, old.zip, pack.zip, docs.zip, html.zip, www.zip, www1.zip, website.zip, web.zip, wp-config.php.zip, public_html.zip, #domainmiddle#.zip or #domainunderline#.zip
show less
Hacking
Web App Attack
๐บ๐ธ
etu brutus
2025-07-17 15:46:05
(1 year ago)
50.116.89.2 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-07-17 14:10:55
(1 year ago)
Detected attack by Imunify360
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-17 11:11:23
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 07:11:15.736639 2025] [security2:error] [pid 2277:tid 2277] [client 50.116.89.2:15846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pointandshootfilm.com"] [uri "/wp-config.php.old"] [unique_id "aHjaU5L3jd99jPXegpzDSQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-15 17:48:33
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 15 13:48:29.402626 2025] [security2:error] [pid 25170:tid 25170] [client 50.116.89.2:41056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robinnixon.com"] [uri "/wp-config.php1"] [unique_id "aHaUbXIn-3WHmtRr7lf-JwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-15 00:42:46
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 14 20:42:42.759141 2025] [security2:error] [pid 6190:tid 6190] [client 50.116.89.2:40336] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cdromline.com"] [uri "/wp-config.php.old"] [unique_id "aHWkAhyqxYxT2YP6LiG5mgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
SkyDancer
2025-07-14 00:43:57
(1 year ago)
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blo ...
show more
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blocked by SkyDancer Ai(web-X).
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-07-11 22:04:21
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 11 18:04:15.223828 2025] [security2:error] [pid 28938:tid 28938] [client 50.116.89.2:19992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "landex.auction"] [uri "/wp-config.php1"] [unique_id "aHGKX3CqEeaTCQ9WujVtKgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-11 03:16:18
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 10 23:16:12.107098 2025] [security2:error] [pid 10624:tid 10624] [client 50.116.89.2:12882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnpritchett.com"] [uri "/wp-config.php1"] [unique_id "aHCB_DPAENujbMu8Fu-4vAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-10 20:20:34
(1 year ago)
Bot / scanning and/or hacking attempts: GET / HTTP/2.0, GET /wp-config.phpold HTTP/1.1, [1/1] done, ...
show more
Bot / scanning and/or hacking attempts: GET / HTTP/2.0, GET /wp-config.phpold HTTP/1.1, [1/1] done, GET /wp-config HTTP/1.1, GET /wp-config.php.org HTTP/1.1, GET /wp-config.php1 HTTP/1.1
show less
Hacking
Web App Attack
๐ธ๐ช
nekopavel
2025-07-09 22:00:15
(1 year ago)
50.116.89.2 - - [10/Jul/2025:00:00:05 +0200]"GET /wp-config.php.old HTTP/1.1" 301 162"-" futomomo.ar ...
show more
50.116.89.2 - - [10/Jul/2025:00:00:05 +0200]"GET /wp-config.php.old HTTP/1.1" 301 162"-" futomomo.art "-""0.000" "-""-" "US"
50.116.89.2 - - [10/Jul/2025:00:00:06 +0200]"GET /wp-config.php.old HTTP/2.0" 404 2124"-" futomomo.art "-""0.007" "0.001""-" "US"
50.116.89.2 - - [10/Jul/2025:00:00:06 +0200]"GET /wp-config.php_ HTTP/1.1" 301 162"-" futomomo.art "-""0.000" "-""-" "US"
...
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-09 16:16:50
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 09 12:16:45.744176 2025] [security2:error] [pid 16435:tid 16435] [client 50.116.89.2:40570] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tvsolar.com"] [uri "/wp-config.php.old"] [unique_id "aG6V7e1tnx_m5LPA4wc5DAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-09 15:55:41
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 50.116.89.2 (cs15.bluehost.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 09 11:55:37.464739 2025] [security2:error] [pid 6863:tid 6908] [client 50.116.89.2:25492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "potashbarn.com"] [uri "/wp-config.php.old"] [unique_id "aG6Q-fWIwTnCCLc-Gk0MXwAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-07-08 23:10:53
(1 year ago)
Detected attack by Imunify360
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2025-07-07 13:55:04
(1 year ago)
Detected attack by Imunify360
Brute-Force
Web App Attack