๐บ๐ธ
Mehmet_The_Script_Kiddie
2026-09-16 04:37:57
(1 day ago)
CloudFlare WAF REPORT: /feed
Bad Web Bot
Web App Attack
๐ง๐ช
taivas.nl
2026-09-16 04:35:01
(1 day ago)
Many_bad_calls
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 17:40:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.r ...
show more
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.render.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:40:26.903701 2026] [security2:error] [pid 14043:tid 14043] [client 74.220.49.36:21892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "m5mindsetcom.indie100.com"] [uri "/.env"] [unique_id "aqmDClYm2CGMDEakmRIZ0wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
jbcrn
2026-09-15 17:11:22
(1 day ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /wp-json/gravitysmtp/v1/tests/mock-data. User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 17:02:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.r ...
show more
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.render.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:02:08.708280 2026] [security2:error] [pid 3700:tid 3769] [client 74.220.49.36:39799] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.catslife.net"] [uri "/.git/config"] [unique_id "aql6EGFlZeJD14UgMpxurQAAAcg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
taivas.nl
2026-09-15 16:32:15
(1 day ago)
Bad_requests
Bad Web Bot
๐จ๐ฑ
ifiguero
2026-09-15 16:06:26
(1 day ago)
Web Attack (WordPress search). 30m ban
Web App Attack
๐บ๐ธ
knock
2026-09-15 14:38:33
(1 day ago)
Knock-Knock honeypot brute-force: HTTP (1 total hits)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 13:24:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.r ...
show more
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.render.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:24:54.997839 2026] [security2:error] [pid 18558:tid 18558] [client 74.220.49.36:4138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.guitarwisdom.benshermanguitar.com"] [uri "/wp-config.php.bak"] [unique_id "aqlHJpeZdn2LOgMjKlwxewAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:35:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.r ...
show more
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.render.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:35:36.012285 2026] [security2:error] [pid 13745:tid 13759] [client 74.220.49.36:16897] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rawhabitat.com"] [uri "/wp-config.php.bak"] [unique_id "aqk7mMl5zMB6vzde2ezrfgAAAUI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:50:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.r ...
show more
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.render.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:50:33.804423 2026] [security2:error] [pid 31048:tid 31048] [client 74.220.49.36:57375] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rachelfia.fiasdesigns.com"] [uri "/wp-config.php.bak"] [unique_id "aqkxCZGHs2c-zwGiVW_xmAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:27:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.r ...
show more
(mod_security) mod_security (id:210492) triggered by 74.220.49.36 (ip-74-220-49-36.virginia-egress.render.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:27:46.303722 2026] [security2:error] [pid 29109:tid 29109] [client 74.220.49.36:60144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puckerbottombikinis.com"] [uri "/wp-config.php~"] [unique_id "aqkdojiOBNgMSVSvEBMQtgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TAY
2026-09-15 10:25:31
(1 day ago)
74.220.49.36 - - [15/Sep/2026:18:23:54 +0800] "GET /wp-config.php.bak HTTP/1.1" 301 474 "-" "Mozilla ...
show more
74.220.49.36 - - [15/Sep/2026:18:23:54 +0800] "GET /wp-config.php.bak HTTP/1.1" 301 474 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
74.220.49.36 - - [15/Sep/2026:18:24:18 +0800] "GET /wp-config.php.bak HTTP/1.1" 301 6128 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
74.220.49.36 - - [15/Sep/2026:18:24:43 +0800] "GET /wp-config.php.bak HTTP/1.1" 404 72066 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
74.220.49.36 - - [15/Sep/2026:18:24:51 +0800] "GET /wp-config.php~ HTTP/1.1" 301 468 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
74.220.49.36 - - [15/Sep/2026:18:25:11 +0800] "GET /wp-config.php~ HTTP/1.1" 301 6125 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chro
...
show less
Brute-Force
๐บ๐ธ
Mehmet_The_Script_Kiddie
2026-09-14 19:48:24
(2 days ago)
CloudFlare WAF REPORT: /feed
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-14 09:31:51
(2 days ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET (+1 more) | path: /wp-json/gravitysmtp/v1/tests/mock-data (+1 more) | ua: python-httpx/0.28.1 | 2026-09-14 09:31 UTC
show less
Bad Web Bot