๐บ๐ธ
TPI-Abuse
2026-09-23 00:00:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 20:00:47.040439 2026] [security2:error] [pid 16991:tid 16991] [client 2001:8d8:5ff:5f:82:165:80:216:52144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dick-schoonover.com"] [uri "/wp-config.php.bak"] [unique_id "arMWrwLPnE7sTwho_EB4cQAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 21:43:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 17:42:54.293843 2026] [security2:error] [pid 1933:tid 1954] [client 2001:8d8:5ff:5f:82:165:80:216:52840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "love-spells-magic.com"] [uri "/wp-config.php.bak"] [unique_id "arL2XskfN7DPAcmLhuBRgAAAAU8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-22 20:46:14
(2 days ago)
2001:8d8:5ff:5f:82:165:80:216 - - [22/Sep/2026:22:46:12 +0200] "GET /wp-config.php.bak HTTP/1.1" 301 ...
show more
2001:8d8:5ff:5f:82:165:80:216 - - [22/Sep/2026:22:46:12 +0200] "GET /wp-config.php.bak HTTP/1.1" 301 558 "-" "-"
2001:8d8:5ff:5f:82:165:80:216 - - [22/Sep/2026:22:46:12 +0200] "GET /wp-config.php.bak HTTP/2.0" 404 26074 "-" "-"
show less
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-22 19:23:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 15:23:53.265669 2026] [security2:error] [pid 4498:tid 4498] [client 2001:8d8:5ff:5f:82:165:80:216:39848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.domainexecs.com"] [uri "/wp-config.php.bak"] [unique_id "arLVyXAVBMsCtB3D-N8v1wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 19:08:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 15:08:45.486969 2026] [security2:error] [pid 30609:tid 30609] [client 2001:8d8:5ff:5f:82:165:80:216:34198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bestanddonovan.com"] [uri "/wp-config.php.bak"] [unique_id "arLSPTpF_G61TkJl_PYjjQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:52:20
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:52:13.108859 2026] [security2:error] [pid 12517:tid 12517] [client 2001:8d8:5ff:5f:82:165:80:216:48396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "graymatterofdc.com"] [uri "/wp-config.php.bak"] [unique_id "arLATbWIVCFfewmxiig3CwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:06:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:06:47.347354 2026] [security2:error] [pid 32572:tid 32572] [client 2001:8d8:5ff:5f:82:165:80:216:56542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atticlodgeoutdoorlearningcenter.com"] [uri "/wp-config.php.bak"] [unique_id "arK1p-RNHS6tQr6As8TKdQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 16:29:33
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 12:29:29.121908 2026] [security2:error] [pid 15840:tid 15840] [client 2001:8d8:5ff:5f:82:165:80:216:33892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garyschirmer.com"] [uri "/wp-config.php.bak"] [unique_id "arKs6TSNRzbZHV7eBE5yRAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 15:55:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:55:36.278588 2026] [security2:error] [pid 2968:tid 2968] [client 2001:8d8:5ff:5f:82:165:80:216:52318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dwiller.com"] [uri "/whfromh/index.htm/wp-config.php.bak"] [unique_id "arKk-A4-adOL2OeObHBUwQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 14:05:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 10:05:18.859999 2026] [security2:error] [pid 29523:tid 29523] [client 2001:8d8:5ff:5f:82:165:80:216:49968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rochesterhistorical.org"] [uri "/wp-config.php.bak"] [unique_id "arKLHmk5fgGau2xvg4guswAAAD0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 11:25:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 07:24:57.362041 2026] [security2:error] [pid 19817:tid 19843] [client 2001:8d8:5ff:5f:82:165:80:216:46786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sasintegrated.com"] [uri "/wp-config.php.bak"] [unique_id "arJliUQU15qcKhatCDZU5AAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 11:06:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 07:06:03.112120 2026] [security2:error] [pid 5044:tid 5044] [client 2001:8d8:5ff:5f:82:165:80:216:54092] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "omnitractors.com"] [uri "/wp-config.php.bak"] [unique_id "arJhG4v9lvbgaB2WNouUoQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 08:45:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 04:45:28.371729 2026] [security2:error] [pid 8041:tid 8041] [client 2001:8d8:5ff:5f:82:165:80:216:35536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cbcfargo.com"] [uri "/wp-config.php.bak"] [unique_id "arJAKBlXmusxkanifuCKsgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-18 02:27:51
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 22:27:46.598967 2025] [security2:error] [pid 15418:tid 15527] [client 2001:8d8:5ff:5f:82:165:80:216:42760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lamcohomecare.com"] [uri "/wp-config.php.old"] [unique_id "aHmxIha2mJHXXmJPBHr4dwAAAhE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-16 01:52:35
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:80:216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 15 21:52:30.162278 2025] [security2:error] [pid 17516:tid 17516] [client 2001:8d8:5ff:5f:82:165:80:216:36418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ursell.org"] [uri "/wp-config.php1"] [unique_id "aHcF3jhReLvBe1aYuFF4kAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack