๐ณ๐ฑ
homeshowdomain.nl
2026-04-24 21:59:03
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-04-23.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
AutoAddOnStore
2026-04-23 17:50:00
(4 months ago)
probing for vulnerabilities
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 13:36:20
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 09:36:12.080288 2026] [security2:error] [pid 2769135:tid 2769135] [client 2a02:4780:c:fb5f::1:34436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "siriusturbo.com.greenlight.us"] [uri "/backend/.env"] [unique_id "aeogTIvbSD4brZRj3i89vwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 12:49:29
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 08:49:25.756862 2026] [security2:error] [pid 30873:tid 30895] [client 2a02:4780:c:fb5f::1:55144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sherwoo1.aafm.us"] [uri "/.env.production"] [unique_id "aeoVVT2UwE4DJ-nF0Ds8uAAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 10:24:26
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 06:24:20.814706 2026] [security2:error] [pid 7805:tid 7822] [client 2a02:4780:c:fb5f::1:44752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ptinctcom.pwrcoupling.com"] [uri "/.git/config"] [unique_id "aenzVF1iGEA0esd34Z4ZTwAAAIE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 06:17:16
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 02:17:11.810574 2026] [security2:error] [pid 12544:tid 12544] [client 2a02:4780:c:fb5f::1:52390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aurumprivatecapital.com"] [uri "/.env.production"] [unique_id "aem5Z40AhV9BtsSAfwUbXQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 05:41:37
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 01:41:32.517275 2026] [security2:error] [pid 2979523:tid 2979523] [client 2a02:4780:c:fb5f::1:56292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autocares-belintxon.com"] [uri "/.env"] [unique_id "aemxDIz3yX3ySHDEbhn60QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 04:48:37
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 00:48:32.239423 2026] [security2:error] [pid 8824:tid 8824] [client 2a02:4780:c:fb5f::1:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.luisguacache.com"] [uri "/.env"] [unique_id "aemkoBa8q9IWFvfZav2UIQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 02:58:30
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 22:58:22.976934 2026] [security2:error] [pid 13742:tid 13742] [client 2a02:4780:c:fb5f::1:39014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "austingrammer.com"] [uri "/.git/HEAD"] [unique_id "aemKzuM9qbWAOtnrcL-T9wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ณ
Genhost
2026-04-23 02:31:19
(4 months ago)
SCANNING OF PHP SHELL FILES
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-04-23 02:21:34
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 22:21:26.040428 2026] [security2:error] [pid 3000468:tid 3000468] [client 2a02:4780:c:fb5f::1:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mail-pmg.com"] [uri "/.git/config"] [unique_id "aemCJkgaT5_dK1uoRLHHhgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Blexyel
2026-04-23 01:38:49
(4 months ago)
2a02:4780:c:fb5f::1 - - [23/Apr/2026:03:38:47 +0200] "GET /.git/config HTTP/1.1" 200 2116 "-" "Mozil ...
show more
2a02:4780:c:fb5f::1 - - [23/Apr/2026:03:38:47 +0200] "GET /.git/config HTTP/1.1" 200 2116 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:149.0) Gecko/20100101 Firefox/149.0"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 01:24:04
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 21:23:58.675000 2026] [security2:error] [pid 25631:tid 25631] [client 2a02:4780:c:fb5f::1:37206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aufflammen.com"] [uri "/.git/config"] [unique_id "ael0rhC0TatkY37RY4Lf8AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
stinpriza
2026-04-22 19:04:54
(5 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-22 18:25:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a02:4780:c:fb5f::1 (srv1609942.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 22 14:25:09.338797 2026] [security2:error] [pid 27053:tid 27053] [client 2a02:4780:c:fb5f::1:36182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.sharperform.com"] [uri "/.git/config"] [unique_id "aekShexmi2_d-pD5imH7HgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack