๐บ๐ธ
synthetic-motor-oil-change-and-filters.com
2025-09-16 15:42:00
(11 months ago)
Blocked by WordPress WordFence for break-in attempts
Hacking
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-08 17:45:53
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 08 13:45:45.241847 2025] [security2:error] [pid 14499:tid 14499] [client 85.239.242.168:63961] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jhonbens.com"] [uri "/wp-config.php"] [unique_id "aL8WSeJThto4aO1BtliuLAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-08 17:27:08
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 08 13:27:03.853082 2025] [security2:error] [pid 22032:tid 22032] [client 85.239.242.168:51266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karendraughon.com"] [uri "/wp-config.php"] [unique_id "aL8R58SgcXFX8JOnHf6idQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-08 16:37:29
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 08 12:37:23.211014 2025] [security2:error] [pid 4996:tid 5021] [client 85.239.242.168:62718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mentzlaw.com"] [uri "/wp-config.php"] [unique_id "aL8GQ3t5bv-aB2OkoJBYvQAAARM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2025-09-08 16:30:35
(11 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-08 16:12:50
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 08 12:12:46.463293 2025] [security2:error] [pid 18617:tid 18617] [client 85.239.242.168:55588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "franknash.com"] [uri "/wp-config.php"] [unique_id "aL8AfmkxfmWHIgcnAEBj5QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-08 14:31:40
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 08 10:31:35.539099 2025] [security2:error] [pid 2394:tid 2394] [client 85.239.242.168:54448] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "omnithermal.com"] [uri "/wp-config.php"] [unique_id "aL7ox5Cl83U-EteMe89khAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2025-09-08 13:30:51
(11 months ago)
368 requests with url.path */.well-known/pki-validation/*.php
280 requests with url.path */.well-k ...
show more
368 requests with url.path */.well-known/pki-validation/*.php
280 requests with url.path */.well-known/acme-challenge/*.php
show less
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-09-08 13:18:00
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 85.239.242.168 (vmi2747158.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 08 09:17:52.944587 2025] [security2:error] [pid 3724:tid 3724] [client 85.239.242.168:50274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marianozaro.com"] [uri "/wp-config.php"] [unique_id "aL7XgGBg3NVJTdbpQiU6jAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-09-08 12:56:03
(11 months ago)
Detected attack by Imunify360
Brute-Force
Web App Attack