Anonymous
2025-10-28 10:05:44
(10 months ago)
wordpress-trap
Web App Attack
๐ฎ๐ฉ
Burayot
2025-10-28 01:26:46
(10 months ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 87.246.10.210 (BG/Bulgaria/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 87.246.10.210 (BG/Bulgaria/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-17 00:48:28
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 16 20:48:20.415499 2025] [security2:error] [pid 30526:tid 30526] [client 87.246.10.210:26893] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sfholidayrentals.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sfholidayrentals.com"] [uri "/backup/sql.sql"] [unique_id "aPGSVIUCbasYjQstCsre-wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-16 23:34:37
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 16 19:34:28.690717 2025] [security2:error] [pid 16162:tid 16162] [client 87.246.10.210:31591] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cruisedawgs.com"] [uri "/wp-config.php.old"] [unique_id "aPGBBITxNKug4cSiFpZJSAAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-14 22:16:29
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 14 18:16:23.968095 2025] [security2:error] [pid 21326:tid 21326] [client 87.246.10.210:1357] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "havelocktruckandauto.ca"] [uri "/wp-config.php.old"] [unique_id "aO7Lt0tq_-5KYif44VsrPwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-12 10:03:52
(10 months ago)
87.246.10.210 - - [12/Oct/2025:10:03:51 +0000] "GET /backup.zip HTTP/1.1" 404 46939 "-" "Mozilla/5.0 ...
show more
87.246.10.210 - - [12/Oct/2025:10:03:51 +0000] "GET /backup.zip HTTP/1.1" 404 46939 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14.5; rv:105.0) Gecko/20100101 Firefox/105.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-11 10:01:16
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 11 06:01:09.388688 2025] [security2:error] [pid 6972:tid 6997] [client 87.246.10.210:16629] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||culturallyyours.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "culturallyyours.org"] [uri "/old.sql"] [unique_id "aOoq5cfRUyWpMsW_qOdxxwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-10 01:29:10
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 21:29:01.590659 2025] [security2:error] [pid 9127:tid 9127] [client 87.246.10.210:13755] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deutschpunkt.com"] [uri "/wp-content/backup/wp-config.php.old"] [unique_id "aOhhXbRVNujOV6iDb6V5TAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-09 17:42:09
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 13:42:04.663503 2025] [security2:error] [pid 2448:tid 2448] [client 87.246.10.210:28295] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "renjunews.com"] [uri "/wp-content/uploads/wp-config.php.old"] [unique_id "aOfz7BgzoDPFLnkuzvrquQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-09 17:18:08
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 13:18:00.600145 2025] [security2:error] [pid 25189:tid 25189] [client 87.246.10.210:10343] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "veneerdent.com"] [uri "/wp-content/uploads/wp-config.php.bak"] [unique_id "aOfuSLFQtDWMqdveozEmlgAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-09 14:07:45
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 10:07:38.085165 2025] [security2:error] [pid 29530:tid 29530] [client 87.246.10.210:19789] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "livingwaterresortandspa.com"] [uri "/wp-content/uploads/wp-config.php~"] [unique_id "aOfBqkq_oqhljLQ4B6tm5QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-09 08:30:06
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 04:29:57.024151 2025] [security2:error] [pid 18405:tid 18434] [client 87.246.10.210:19415] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "transitionalcareservices.com"] [uri "/wp-content/wp-config.php~"] [unique_id "aOdyhISd3su0lDon5cRcegAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-07 23:13:52
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 87.246.10.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 07 19:13:44.302857 2025] [security2:error] [pid 19476:tid 19476] [client 87.246.10.210:23597] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "exorex.com"] [uri "/wp-config.php~"] [unique_id "aOWeqPXgde-thFdAJZQ4FwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ps-center
2025-10-07 20:32:26
(10 months ago)
C1: Web Attack GET /wp-content/old.sql
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ฌ๐ง
Silly Development
2025-09-05 04:00:00
(11 months ago)
Malicious activity detected from 2914 NTT-DATA-2914 towards host panel.sillydev.co.uk (GET HTTP/2) @ ...
show more
Malicious activity detected from 2914 NTT-DATA-2914 towards host panel.sillydev.co.uk (GET HTTP/2) @ 2025-09-05T04:00:00Z (2 occurrences)
show less
DDoS Attack
Exploited Host