๐ณ๐ฑ
homeshowdomain.nl
2026-09-16 22:02:33
(6 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-15.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 03:35:43
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:35:38.670534 2026] [security2:error] [pid 27077:tid 27077] [client 2a02:4780:12:2ab::1:55750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ergocorrect.com"] [uri "/wp-config.php~"] [unique_id "aqoOiiHM31WC2yJ7ADTJeAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:57:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:57:42.954702 2026] [security2:error] [pid 31859:tid 31859] [client 2a02:4780:12:2ab::1:44108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tcit.org"] [uri "/wp-config.php~"] [unique_id "aqnphqd3tWbZJE9YheJ-SAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 16:58:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:58:22.835602 2026] [security2:error] [pid 18137:tid 18137] [client 2a02:4780:12:2ab::1:56408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bikinitweets.com"] [uri "/wp-config.php~"] [unique_id "aql5LtM1mcxUfwLqN02vwQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 13:44:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:44:11.901133 2026] [security2:error] [pid 28949:tid 28949] [client 2a02:4780:12:2ab::1:35196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "drgtek.com.smogsandiego.com"] [uri "/wp-config.php.orig"] [unique_id "aqlLq2-5jDivzm2F4NZjggAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:43:23
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:43:18.541432 2026] [security2:error] [pid 32518:tid 32518] [client 2a02:4780:12:2ab::1:55206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "activethinkers.net"] [uri "/wp-config.php~"] [unique_id "aqkhRrwuxe-A0vbeD1akEwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 06:15:49
(1 week ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 14:42:23
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 10:42:16.406086 2026] [security2:error] [pid 6812:tid 6812] [client 2a02:4780:12:2ab::1:51186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hierrosbernal.com"] [uri "/wp-config.php.old"] [unique_id "aqgHyEvqq2K5y7fmJ96WzwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 13:47:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 09:46:57.701044 2026] [security2:error] [pid 24972:tid 24972] [client 2a02:4780:12:2ab::1:43080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vansfanz.rollinchassis.com"] [uri "/wp-config.php.old"] [unique_id "aqf60fbYg3bRBRYcy2qAHAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 01:01:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 21:01:31.420170 2026] [security2:error] [pid 16642:tid 16642] [client 2a02:4780:12:2ab::1:49998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jennyfiore.com"] [uri "/wp-config.php.swp"] [unique_id "aqdHa2CyFzAUItdK-M8oAgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 22:47:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 18:47:01.905430 2026] [security2:error] [pid 12065:tid 12065] [client 2a02:4780:12:2ab::1:33986] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lumentravel.com"] [uri "/wp-config.php~"] [unique_id "aqcn5RqWiFQi4D07FHdcAwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Vano Ganzzz
2026-09-13 19:52:17
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from IN.
Action taken: BLOCK
ASN: 47583 (Hostinger Interna ...
show more
Triggered Cloudflare WAF (firewallCustom) from IN.
Action taken: BLOCK
ASN: 47583 (Hostinger International Limited)
Protocol: HTTP/1.1 (GET method)
Endpoint: /index.php
Timestamp: 2026-09-13T19:52:17Z
Ray ID: a3a9b1066c303ff5
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-13 18:22:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 14:22:36.409062 2026] [security2:error] [pid 16650:tid 16650] [client 2a02:4780:12:2ab::1:37958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.guitarwisdom.benshermanguitar.com"] [uri "/wp-config.php.old"] [unique_id "aqbp7DFkKoDJMfJo5s5n2wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 15:21:16
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 11:21:09.917482 2026] [security2:error] [pid 8341:tid 8341] [client 2a02:4780:12:2ab::1:52372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "armorcorp.gulftelecom.com"] [uri "/wp-config.php.old"] [unique_id "aqa_ZYdl9Bb_LQBCUlPABQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 09:11:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:2ab::1 (srv1432081.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 05:11:34.805828 2026] [security2:error] [pid 23299:tid 23318] [client 2a02:4780:12:2ab::1:53008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.whitecrosslibrary.aafm.us"] [uri "/wp-config.php.old"] [unique_id "aqZoxh3vlJW40FKovR37MQAAAM0"]
show less
Brute-Force
Bad Web Bot
Web App Attack