πΊπΈ
TPI-Abuse
2026-09-25 09:59:18
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 05:59:14.288286 2026] [security2:error] [pid 31268:tid 31268] [client 2001:8d8:5ff:5f:82:165:81:60:39432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stormstrips.info"] [uri "/.env"] [unique_id "arZF8q1w8u2irYmGVD1hdQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Alt255
2026-09-25 09:52:04
(1 week ago)
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 2001:8d8:5ff:5f:82:165:81:60 - - [25/Sep/2026:11:51:51 +0200] "GET /.env HTTP/1.1" 404 94248 "-" "-"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-25 05:40:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 01:40:21.548262 2026] [security2:error] [pid 8489:tid 8489] [client 2001:8d8:5ff:5f:82:165:81:60:52262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mvscouts.org"] [uri "/.env"] [unique_id "arYJRR81GJl90-utMOMKTQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 22:34:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 18:34:12.624049 2026] [security2:error] [pid 2528:tid 2528] [client 2001:8d8:5ff:5f:82:165:81:60:37588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "camouflagebikinis.com"] [uri "/wp-config.php.bak"] [unique_id "arMCZMlYQ94t9xc-R43ERgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 17:57:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:57:26.376902 2026] [security2:error] [pid 19193:tid 19193] [client 2001:8d8:5ff:5f:82:165:81:60:42554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "book-arts-press.com"] [uri "/wp-config.php.bak"] [unique_id "arLBhliVAQpK1PF01XJxAwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 15:27:51
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:27:46.589283 2026] [security2:error] [pid 13089:tid 13089] [client 2001:8d8:5ff:5f:82:165:81:60:47572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "angelaridgwaydressage.com"] [uri "/wp-config.php.bak"] [unique_id "arKecm50vwGYppr9PXIkpwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 12:34:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 08:34:06.583082 2026] [security2:error] [pid 18798:tid 18798] [client 2001:8d8:5ff:5f:82:165:81:60:46470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "campconcerto.com"] [uri "/wp-config.php.bak"] [unique_id "arJ1vnM7VLMCvKLd6zo1kAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 09:32:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 05:32:43.963807 2026] [security2:error] [pid 18013:tid 18013] [client 2001:8d8:5ff:5f:82:165:81:60:59884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pacepk.com"] [uri "/wp-config.php.bak"] [unique_id "arJLO9CXy3zhly0OvO_dzwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 08:25:01
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 04:24:58.403059 2026] [security2:error] [pid 1596:tid 1596] [client 2001:8d8:5ff:5f:82:165:81:60:53762] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frankweyer.com"] [uri "/wp-config.php.bak"] [unique_id "arI7WshniHNfbLkLQbDCVAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 04:21:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 00:21:49.067692 2026] [security2:error] [pid 11352:tid 11352] [client 2001:8d8:5ff:5f:82:165:81:60:49064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hollychristmascards.com"] [uri "/.env"] [unique_id "arICXQ9dr87IWyk_PtajOgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
BlueWire Hosting
2026-09-22 03:54:08
(1 week ago)
High-confidence malicious configuration/VCS probe
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-19 17:48:48
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 19 13:48:44.267083 2025] [security2:error] [pid 28694:tid 28694] [client 2001:8d8:5ff:5f:82:165:81:60:51200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.voodooshop.com"] [uri "/wp-config.php_old"] [unique_id "aHvafBQB7Xe_oSHvkkX-BgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-19 02:08:17
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 18 22:08:10.783296 2025] [security2:error] [pid 3226:tid 3234] [client 2001:8d8:5ff:5f:82:165:81:60:49022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.victorchiarizia.com"] [uri "/wp-config.php_orig"] [unique_id "aHr-CttIjj9bl-SeNJaEEwAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-18 06:47:45
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 18 02:47:38.221189 2025] [security2:error] [pid 28633:tid 28633] [client 2001:8d8:5ff:5f:82:165:81:60:55198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.animz.com"] [uri "/wp-config.php1"] [unique_id "aHnuCu9QC5Y_R0vFRzgStAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-17 12:22:21
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienth ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:81:60 (infong349.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 08:22:13.519999 2025] [security2:error] [pid 5639:tid 5639] [client 2001:8d8:5ff:5f:82:165:81:60:60726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fabwestmfg.com"] [uri "/wp-config.php1"] [unique_id "aHjq9SlbOnMShF0UY2F-KAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack