π«π·
ecowan.fr
2025-07-29 01:22:07
(10 months ago)
87.249.132.214&categories=<categories>&comment=Fail2ban: portscan ban - IP 87.249.132.214 detected w ...
show more
87.249.132.214&categories=<categories>&comment=Fail2ban: portscan ban - IP 87.249.132.214 detected with 2 attempts
show less
Port Scan
Anonymous
2025-07-06 21:07:22
(11 months ago)
Ports: 25,2525,465,587,2525; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
Anonymous
2025-03-20 16:25:35
(1 year ago)
Port Scanner
Port Scan
πΊπΈ
technonerd
2025-01-14 08:52:32
(1 year ago)
1736844751 - 01/14/2025 03:52:31 Host: unn-87-249-132-214.datapacket.com/87.249.132.214 Port: 1 TCP ...
show more
1736844751 - 01/14/2025 03:52:31 Host: unn-87-249-132-214.datapacket.com/87.249.132.214 Port: 1 TCP Blocked
show less
Port Scan
π¨π
π¨π Hosting
2024-06-14 05:44:09
(2 years ago)
Used in participation of a (D)DoS attack
DDoS Attack
π§πͺ
cmbplf
2024-04-10 10:14:17
(2 years ago)
511 requests to /wp-config.php
Brute-Force
Bad Web Bot
πΊπΈ
TPI-Abuse
2024-04-10 08:29:41
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 10 04:29:34.935055 2024] [security2:error] [pid 20835] [client 87.249.132.214:30441] [client 87.249.132.214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cloudex.link"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZhZN7o5VngkChXDXIhbBJAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-04-10 08:02:12
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 10 04:02:08.109343 2024] [security2:error] [pid 4107882] [client 87.249.132.214:15687] [client 87.249.132.214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cliniquecavalancia.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZhZHgKUL2jpY0-bKQWgQaQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-04-10 07:31:56
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 10 03:31:52.306361 2024] [security2:error] [pid 11875] [client 87.249.132.214:20343] [client 87.249.132.214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "climasyequipos.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZhZAaJy5o_Tv_Vv8VzH2wgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-04-10 06:25:37
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 10 02:25:29.393859 2024] [security2:error] [pid 2152698] [client 87.249.132.214:10125] [client 87.249.132.214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.clayrivers.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZhYw2fS6v1JKrBIgOqbL8QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-04-10 04:51:13
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 10 00:51:09.727769 2024] [security2:error] [pid 27738] [client 87.249.132.214:16479] [client 87.249.132.214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.citizensforsanity.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZhYavd8iE0T59bvrf8c-uAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-04-10 04:36:12
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 10 00:36:05.628949 2024] [security2:error] [pid 18741] [client 87.249.132.214:27205] [client 87.249.132.214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.circulodesonido.org"] [uri "/site/wp-admin/admin-ajax.php"] [unique_id "ZhYXNaNSjZWZU4vuydpZEwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
taivas.nl
2024-04-10 04:32:32
(2 years ago)
Many_bad_calls
Web App Attack
πΊπΈ
TPI-Abuse
2024-04-10 03:50:51
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 87.249.132.214 (unn-87-249-132-214.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 09 23:50:47.518012 2024] [security2:error] [pid 31761] [client 87.249.132.214:38845] [client 87.249.132.214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cienmalos.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZhYMl_3EhjoMZgDZse8chAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§π·
hostseries
2024-04-10 03:44:38
(2 years ago)
Trigger: LF_MODSEC
Brute-Force