๐บ๐ธ
TPI-Abuse
2026-09-25 10:07:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 06:07:01.421947 2026] [security2:error] [pid 13153:tid 13153] [client 2607:f1c0:5ff:5f:74:208:58:184:38666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "insidepublications.com"] [uri "/.env"] [unique_id "arZHxbPP77stX-0cqWrzygAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 05:01:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 01:01:30.804087 2026] [security2:error] [pid 19600:tid 19600] [client 2607:f1c0:5ff:5f:74:208:58:184:51174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mroxygen.org"] [uri "/.env"] [unique_id "arYAKsYOBp1q7_QXlJ1CVwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 00:11:25
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 20:11:17.253033 2026] [security2:error] [pid 17199:tid 17210] [client 2607:f1c0:5ff:5f:74:208:58:184:36256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bestthingieveratelocations.com"] [uri "/wp-config.php.bak"] [unique_id "arMZJb1Pue2a_IP3Qag54AAAAUI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 22:49:52
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 18:49:44.052541 2026] [security2:error] [pid 26519:tid 26519] [client 2607:f1c0:5ff:5f:74:208:58:184:55694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hollistercomputer.com"] [uri "/wp-config.php.bak"] [unique_id "arMGCMwGyKNlk4b11c__LQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 21:58:11
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 17:58:08.302775 2026] [security2:error] [pid 28698:tid 28698] [client 2607:f1c0:5ff:5f:74:208:58:184:59840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "suretrap.com"] [uri "/wp-config.php.bak"] [unique_id "arL58Fg61souLLNKhr1LnQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-09-22 21:00:48
(3 days ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 2607:f1c0:5ff:5f:74:208:58:184 (US/Unite ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 2607:f1c0:5ff:5f:74:208:58:184 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 2607:f1c0:5ff:5f:74:208:58:184 - - [22/Sep/2026:23:00:43 +0200] "GET /wp-config.php.bak HTTP/1.1" 403 146 "-" "-" "-" host=deflorentiis.com
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-22 19:21:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 15:21:13.820462 2026] [security2:error] [pid 30371:tid 30371] [client 2607:f1c0:5ff:5f:74:208:58:184:32880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tributetoelvis.com"] [uri "/wp-config.php.bak"] [unique_id "arLVKQwWNGPZUV8xySQxhwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:05:02
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:04:55.925102 2026] [security2:error] [pid 11284:tid 11284] [client 2607:f1c0:5ff:5f:74:208:58:184:48794] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "linnardfinancial.com"] [uri "/wp-config.php.bak"] [unique_id "arK1Ny5gQMK2JOysv7xPQQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 14:22:41
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 10:22:36.421649 2026] [security2:error] [pid 8756:tid 8756] [client 2607:f1c0:5ff:5f:74:208:58:184:51048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plazacristal.com"] [uri "/wp-config.php.bak"] [unique_id "arKPLOdtd5bGxfX-T7vGawAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 14:02:44
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 10:02:37.897013 2026] [security2:error] [pid 30131:tid 30216] [client 2607:f1c0:5ff:5f:74:208:58:184:51192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mentzclan.com"] [uri "/wp-config.php.bak"] [unique_id "arKKfV5o1sdnfKAJAIGgKwAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 12:21:25
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 08:21:20.245633 2026] [security2:error] [pid 1197:tid 1197] [client 2607:f1c0:5ff:5f:74:208:58:184:45206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jcommonsenseeconomics.com"] [uri "/wp-config.php.bak"] [unique_id "arJywPMfLXBXBhpdvMIZWwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 11:44:49
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 07:44:42.331664 2026] [security2:error] [pid 30526:tid 30526] [client 2607:f1c0:5ff:5f:74:208:58:184:39502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mymuscles.com"] [uri "/wp-config.php.bak"] [unique_id "arJqKg2bEl_dzrSh1COuRwAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 10:16:17
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 06:16:13.460986 2026] [security2:error] [pid 22885:tid 22885] [client 2607:f1c0:5ff:5f:74:208:58:184:41580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rachelfia.com"] [uri "/wp-config.php.bak"] [unique_id "arJVbYjHdyiTL_guwn39sAAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 03:42:39
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perf ...
show more
(mod_security) mod_security (id:210492) triggered by 2607:f1c0:5ff:5f:74:208:58:184 (infong1019.perfora.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 23:42:36.429687 2026] [security2:error] [pid 25891:tid 25891] [client 2607:f1c0:5ff:5f:74:208:58:184:43388] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iconflgc.com"] [uri "/.env"] [unique_id "arH5LHEv7ic9oVOMUogCBwAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
exxos
2025-08-01 08:55:57
(1 year ago)
web exploit attacks
Web App Attack