๐บ๐ธ
TPI-Abuse
2026-09-25 07:56:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 03:56:16.200355 2026] [security2:error] [pid 14691:tid 14691] [client 2001:8d8:5ff:5f:82:165:82:244:35020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tractiondrive.com"] [uri "/.env"] [unique_id "arYpIE6lN2cl_UT1EluGXwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-25 07:39:34
(1 day ago)
[ti-27al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-27al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 2001:8d8:5ff:5f:82:165:82:244 - - [25/Sep/2026:09:39:17 +0200] "GET /.env HTTP/1.1" 301 601 "-" "-"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 05:37:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 01:37:40.653405 2026] [security2:error] [pid 25125:tid 25125] [client 2001:8d8:5ff:5f:82:165:82:244:56122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robcruickshank.com"] [uri "/.env"] [unique_id "arYIpEGFzcDOGQL86fH3gQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 04:46:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 00:46:28.095061 2026] [security2:error] [pid 25007:tid 25007] [client 2001:8d8:5ff:5f:82:165:82:244:40348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "accentcorporatemedia.com"] [uri "/.env"] [unique_id "arX8pHWLbTNltPEE0-HIxAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-22 23:58:38
(3 days ago)
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 2001:8d8:5ff:5f:82:165:82:244 - - [23/Sep/2026:01:58:37 +0200] "GET /wp-config.php.bak HTTP/1.1" 301 542 "-" "-"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 19:36:41
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 15:36:36.882244 2026] [security2:error] [pid 8840:tid 8840] [client 2001:8d8:5ff:5f:82:165:82:244:32952] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "digi-estudio.com"] [uri "/wp-config.php.bak"] [unique_id "arLYxHUa83BOdB88mHpXZQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 18:53:52
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:53:46.262822 2026] [security2:error] [pid 10586:tid 10586] [client 2001:8d8:5ff:5f:82:165:82:244:52578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sheargrafix.com"] [uri "/wp-config.php.bak"] [unique_id "arLOukdDm8Rwwi17JeLbtAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 18:38:30
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:38:26.441381 2026] [security2:error] [pid 1164:tid 1164] [client 2001:8d8:5ff:5f:82:165:82:244:56040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "makegoodsausage.com"] [uri "/wp-config.php.bak"] [unique_id "arLLImMDsVjCd6ptHrz5rwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 18:03:57
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:03:54.217459 2026] [security2:error] [pid 28454:tid 28454] [client 2001:8d8:5ff:5f:82:165:82:244:43506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coyotepoet.com"] [uri "/wp-config.php.bak"] [unique_id "arLDChGsMNA26itim8AtmgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:38:05
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:38:00.342908 2026] [security2:error] [pid 3296:tid 3296] [client 2001:8d8:5ff:5f:82:165:82:244:41222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ficciones.com"] [uri "/wp-config.php.bak"] [unique_id "arK8-NevGKJtAZFQzDkeUAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:13:38
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:13:32.327256 2026] [security2:error] [pid 31371:tid 31371] [client 2001:8d8:5ff:5f:82:165:82:244:53982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cs-mall.com"] [uri "/wp-config.php.bak"] [unique_id "arK3PEXrJKImzEpi6oGJ_QAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 16:05:14
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 12:05:11.598627 2026] [security2:error] [pid 15811:tid 15931] [client 2001:8d8:5ff:5f:82:165:82:244:34858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "geistmartialarts.com"] [uri "/wp-config.php.bak"] [unique_id "arKnN6FoCY7CHIB-ZjDYpwAAAhE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 15:44:30
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:44:22.989039 2026] [security2:error] [pid 31836:tid 31836] [client 2001:8d8:5ff:5f:82:165:82:244:42142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "easyweb-publishing.com"] [uri "/wp-config.php.bak"] [unique_id "arKiViZuzgMx9nIissK_YQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 14:43:19
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 10:43:13.662321 2026] [security2:error] [pid 616:tid 763] [client 2001:8d8:5ff:5f:82:165:82:244:56470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rosendalsateri.com"] [uri "/wp-config.php.bak"] [unique_id "arKUASQ-XkiOwZkLoue2LgAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 13:47:11
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.client ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:82:244 (infong880.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 09:47:05.935235 2026] [security2:error] [pid 14579:tid 14579] [client 2001:8d8:5ff:5f:82:165:82:244:47630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "briannalls.com"] [uri "/wp-config.php.bak"] [unique_id "arKG2WHTiq4v-a_SnLOtqAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack