Anonymous
2026-09-25 04:20:02
(1 week ago)
suspicious request in access.log
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 23:27:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.89.239 (infong-eu-pu0014.clienthosting.e ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.89.239 (infong-eu-pu0014.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 19:27:16.822879 2026] [security2:error] [pid 7209:tid 7209] [client 82.165.89.239:60664] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "merrilymovie.com"] [uri "/wp-config.php.bak"] [unique_id "arMO1FCtFGjBRPVX3YJY4gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 18:19:29
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.89.239 (infong-eu-pu0014.clienthosting.e ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.89.239 (infong-eu-pu0014.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:19:21.819340 2026] [security2:error] [pid 21258:tid 21258] [client 82.165.89.239:37696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "crochetfreepatterns.com"] [uri "/wp-config.php.bak"] [unique_id "arLGqc5fFa1Pb7X8_6O1ngAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 15:09:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.89.239 (infong-eu-pu0014.clienthosting.e ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.89.239 (infong-eu-pu0014.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:09:22.654849 2026] [security2:error] [pid 15812:tid 15933] [client 82.165.89.239:50856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "exedesalesteam.com"] [uri "/wp-config.php.bak"] [unique_id "arKaIlYZ76xF58oh2QWk7gAAAkc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
β¨
2026-09-22 02:29:14
(1 week ago)
Domain : woodrose-carpentry.com
Rule : env
2026-09-22 02:28:09 W3SVC328 PLESK72 79.171.39.6 GET /.en ...
show more
Domain : woodrose-carpentry.com
Rule : env
2026-09-22 02:28:09 W3SVC328 PLESK72 79.171.39.6 GET /.env - 443 - 82.165.89.239 HTTP/2.0 - - - www.woodrose-carpentry.com 404 0 2 415 88 17 - -
show less
Hacking
SQL Injection
π¦πΊ
advena
2025-08-24 23:15:58
(1 year ago)
82.165.89.239 (AS8560 IONOS-AS This is the joint network for IONOS, Fasthosts, Arsys, 1
Web Spam
Hacking
Brute-Force
Web App Attack
Anonymous
2025-08-24 18:49:08
(1 year ago)
Account archive download attempts
Hacking
Brute-Force
π¦πΊ
nzhost.co.nz
2025-08-19 09:09:08
(1 year ago)
$f2bV_matches
Hacking
Brute-Force
πΊπΈ
agenciahypelab.com.br
2025-08-17 19:47:30
(1 year ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
πΊπΈ
rdpguard.com
2025-08-13 21:48:10
(1 year ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
π¬π§
gurnip
2025-08-07 17:53:42
(1 year ago)
Vulnerability probe of page /backup.zip, not found on server.
Brute-Force
Web App Attack
π¦πΉ
RenΓ© Hickersberger
2025-08-02 23:57:41
(1 year ago)
[2025-08-02T23:57:41Z] Malicious request to /wordpress.zip
Hacking
Bad Web Bot
Web App Attack
π¦πΊ
weblite
2025-07-27 07:09:54
(1 year ago)
WP_MALWARE_PROBE
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-18 23:59:53
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 82.165.89.239 (infong-eu-pu0014.clienthosting.e ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.89.239 (infong-eu-pu0014.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 18 19:59:48.969089 2025] [security2:error] [pid 15843:tid 15843] [client 82.165.89.239:57288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brianchancemusic.com"] [uri "/wp-config.php_old"] [unique_id "aHrf9Ft1yELBKxkT1gDn2QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-18 16:30:51
(1 year ago)
Failed login attempt detected by Fail2Ban in recidive jail
Brute-Force