๐บ๐ธ
TPI-Abuse
2026-10-01 20:35:54
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 16:35:47.827006 2026] [security2:error] [pid 4626:tid 4626] [client 2a02:4780:12:4d3d::1:47508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.geriart.qu1ck.com"] [uri "/.env.txt"] [unique_id "ar7EIwT1KejrvS9XwiW-JAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 15:19:50
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 11:19:44.595774 2026] [security2:error] [pid 10565:tid 10565] [client 2a02:4780:12:4d3d::1:32900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "images4themind.com"] [uri "/.env.txt"] [unique_id "ar56ECvqVczd8iTqsICE5wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-10-01 04:00:06
(1 day ago)
Brute-force attack to identify web exploits
Brute-Force
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-10-01 03:06:11
(1 day ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ต๐ฑ
Budyn
2026-09-30 10:50:27
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: vpn.goblinpot.online | URI: /.env.txt | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-30 03:56:55
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: kibana.budyn.xyz | URI: /.env.txt | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-29 23:15:55
(2 days ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 22:44:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 18:44:04.025674 2026] [security2:error] [pid 4362:tid 4362] [client 2a02:4780:12:4d3d::1:33080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aws.corepest.com"] [uri "/.env.txt"] [unique_id "arw_NJUskP5h_xoh67QX0wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 19:47:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 15:47:19.099296 2026] [security2:error] [pid 19688:tid 19715] [client 2a02:4780:12:4d3d::1:48000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "livingalegacybulldogges.petsentiments.com"] [uri "/.env.txt"] [unique_id "arwVx5gw5SzfXYqLgQPKjQAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 16:58:23
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 12:58:19.938338 2026] [security2:error] [pid 27550:tid 27632] [client 2a02:4780:12:4d3d::1:36392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.visionforandfromchildren.org"] [uri "/wp-config.php.old"] [unique_id "arvuKwoLyWOtnG4T6YhvowAAANg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 12:08:16
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 08:08:11.102032 2026] [security2:error] [pid 18652:tid 18675] [client 2a02:4780:12:4d3d::1:36408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.georgementzorg.aafm.us"] [uri "/wp-config.php.bak"] [unique_id "aruqK2Rki318CWoNNnzergAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 06:00:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 02:00:21.127431 2026] [security2:error] [pid 20968:tid 20968] [client 2a02:4780:12:4d3d::1:59844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.sharawi-gum.com"] [uri "/wp-config.php.bak"] [unique_id "artT9eZmir8Z4M8DCyyu_AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:32:58
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:32:51.086480 2026] [security2:error] [pid 14083:tid 14083] [client 2a02:4780:12:4d3d::1:52828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "salernospizza.com"] [uri "/wp-config.php.old"] [unique_id "arflo86q3PmvGKt8TF9FpgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 10:12:37
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 06:12:30.637916 2026] [security2:error] [pid 24094:tid 24094] [client 2a02:4780:12:4d3d::1:45054] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ironsightsarmory.com"] [uri "/.env.bak"] [unique_id "areajl7XB5HJQ_QTsYbUTQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 19:56:09
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:4d3d::1 (srv1376546.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 15:56:02.326831 2026] [security2:error] [pid 9239:tid 9239] [client 2a02:4780:12:4d3d::1:43968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.major33.com"] [uri "/wp-config.php.txt"] [unique_id "arbR0nviCg9KwCk-Jl7D8gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack