๐บ๐ธ
TPI-Abuse
2026-09-15 20:47:47
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:47:39.791625 2026] [security2:error] [pid 22018:tid 22018] [client 2a02:4780:12:7f4f::1:53404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bamedica.com"] [uri "/wp-config.php~"] [unique_id "aqmu60Ib_F5Cf2Xg7NFcTAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:53:05
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:53:01.241228 2026] [security2:error] [pid 11366:tid 11366] [client 2a02:4780:12:7f4f::1:58610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.forerunnersjazz.org"] [uri "/.git/config"] [unique_id "aqkxneXILWIOucdgr1gR4wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:56:58
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:56:50.108204 2026] [security2:error] [pid 29428:tid 29442] [client 2a02:4780:12:7f4f::1:40816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conservativedemocrat.aafm.us"] [uri "/wp-config.php.orig"] [unique_id "aqkkcnF-kgRDgUw_7qfuQAAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:09:23
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:09:19.874875 2026] [security2:error] [pid 13664:tid 13711] [client 2a02:4780:12:7f4f::1:48374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ayubhamdardfoundation.org"] [uri "/.env.txt"] [unique_id "aqkZT3fovmTnP7RvcfdjQwAAAMU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 07:49:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 03:49:42.769605 2026] [security2:error] [pid 19746:tid 19746] [client 2a02:4780:12:7f4f::1:34414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.nomorenicenice.net"] [uri "/.env.dev"] [unique_id "aqj4lhROyVp0V3dNVmR5CwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 07:33:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 03:33:18.067259 2026] [security2:error] [pid 6614:tid 6614] [client 2a02:4780:12:7f4f::1:55376] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.kelting.net"] [uri "/.env.txt"] [unique_id "aqj0vubq9xyDbSbkb5m6nAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-15 00:30:08
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: api.dont-eat-the-pudding.top | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 00:14:25
(1 day ago)
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 2a02:4780:12:7f4f::1 - - [15/Sep/2026:02:14:25 +0200] "GET /praktijk/medische-training-en-fitness/.env.save HTTP/1.1" 301 449 "http://arthron.nl/.env.save" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 22:43:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 18:43:16.455640 2026] [security2:error] [pid 9495:tid 9495] [client 2a02:4780:12:7f4f::1:57606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "j3pr.com"] [uri "/wp-config.php.save"] [unique_id "aqh4hJ6NZWUA-EMUGihUxQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 20:07:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 16:07:02.267726 2026] [security2:error] [pid 25427:tid 25427] [client 2a02:4780:12:7f4f::1:58432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "airei.com"] [uri "/.git/config"] [unique_id "aqhT5ixng-lbufc80aCqwQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-14 15:05:36
(1 day ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 18:08:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 14:08:40.305401 2026] [security2:error] [pid 19289:tid 19289] [client 2a02:4780:12:7f4f::1:58526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jannetta.com"] [uri "/wp-config.php.save"] [unique_id "aqbmqHplyf2cz4DRi8zRgAAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 16:15:44
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 12:15:38.832560 2026] [security2:error] [pid 24531:tid 24531] [client 2a02:4780:12:7f4f::1:50308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kobraagencies.com"] [uri "/wp-config.php.bak"] [unique_id "aqbMKgFLFO1GWl3taoED4gAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 17:55:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 13:55:52.129833 2026] [security2:error] [pid 13427:tid 13427] [client 2a02:4780:12:7f4f::1:37830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ink2wear.com"] [uri "/wp-config.php.bak"] [unique_id "aqWSKAyNWPL0c2ivALb3UwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 16:56:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:12:7f4f::1 (srv1063467.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 12:56:11.153133 2026] [security2:error] [pid 1437:tid 1437] [client 2a02:4780:12:7f4f::1:49586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jimrichardart.com"] [uri "/wp-config.php~"] [unique_id "aqWEK2NauoGUQAS82VNsnQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack