๐บ๐ธ
TPI-Abuse
2026-09-02 17:37:59
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:37:51.744322 2026] [security2:error] [pid 31421:tid 31421] [client 2a02:4780:12:7c6a::1:39858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "americannetsecurity.com"] [uri "/.git/config"] [unique_id "aphe7wz_7lefgROH2_2Q3wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 15:48:39
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 11:48:35.224092 2026] [security2:error] [pid 18799:tid 18799] [client 2a02:4780:12:7c6a::1:50276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rimworld.com"] [uri "/notra//.git/config"] [unique_id "aphFU8vSFQEJ3Q-4DYP-TQAAAAg"], referer: http://northernohiotra.com/.git/config
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-02 15:08:00
(12 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-02 15:08 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 14:07:54
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 10:07:47.497885 2026] [security2:error] [pid 4431:tid 4431] [client 2a02:4780:12:7c6a::1:59182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alhill.com"] [uri "/.git/config"] [unique_id "apgts05ModFlLb67ivMorQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-02 01:18:46
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: radius.budyn.top | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
LRob
2026-09-02 00:00:21
(1 day ago)
Enumerating paths that do not exist (scanning) | method: GET (+1 more) | path: / (+3 more) | 2026-09 ...
show more
Enumerating paths that do not exist (scanning) | method: GET (+1 more) | path: / (+3 more) | 2026-09-02 00:00 UTC
show less
Port Scan
Web App Attack
๐ฉ๐ช
jbcrn
2026-09-01 00:14:35
(2 days ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /. User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-31 22:02:57
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-30.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 21:11:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 17:11:14.073690 2026] [security2:error] [pid 10882:tid 10882] [client 2a02:4780:12:7c6a::1:45822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trailofcrumbs.com"] [uri "/.git/config"] [unique_id "apXt8oRwi1eCvKdJzXKeQQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 16:23:08
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 12:22:59.483378 2026] [security2:error] [pid 22495:tid 22495] [client 2a02:4780:12:7c6a::1:48612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dabovalbb.com"] [uri "/.git/config"] [unique_id "apWqY98qTErswtMpXYEbqwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 12:53:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:53:38.373780 2026] [security2:error] [pid 4048:tid 4048] [client 2a02:4780:12:7c6a::1:46454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bosdkbook.joepeters.org"] [uri "/.git/config"] [unique_id "apV5UvECJjtxHrj9GduikwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 11:17:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 07:17:16.539594 2026] [security2:error] [pid 3720759:tid 3720869] [client 2a02:4780:12:7c6a::1:47674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "miltonthepuppy.sailcleaner.com"] [uri "/.git/config"] [unique_id "apVivEi-3ujBU-IfRDjWWwAAAg0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 06:45:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:45:07.497311 2026] [security2:error] [pid 4385:tid 4385] [client 2a02:4780:12:7c6a::1:52660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robin5on.com"] [uri "/.git/config"] [unique_id "apUi87I7HChy-_AedOeeXAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 06:29:23
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:29:15.486399 2026] [security2:error] [pid 2437:tid 2437] [client 2a02:4780:12:7c6a::1:43226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.prensa.sendera.mx"] [uri "/.git/config"] [unique_id "apUfO3_toNrryqZfzRXQYQAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 04:16:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7c6a::1 (srv1240685.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 00:15:59.493755 2026] [security2:error] [pid 26860:tid 26860] [client 2a02:4780:12:7c6a::1:53680] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.daisydoesoap.com"] [uri "/.git/config"] [unique_id "apT__zhQDNr0aZ8M402RdQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack