Anonymous
2026-09-25 09:57:50
(6 days ago)
GET /.env HTTP/1.1
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 22:45:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 18:45:26.209889 2026] [security2:error] [pid 6040:tid 6115] [client 82.165.80.216:60118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "broadmoordermatology.com"] [uri "/wp-config.php.bak"] [unique_id "arMFBli0Cn5NCaLv_VyCuQAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 20:38:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 16:38:51.520302 2026] [security2:error] [pid 917:tid 917] [client 82.165.80.216:49304] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "natickvillagerentals.com"] [uri "/wp-config.php.bak"] [unique_id "arLnW4YAI2hdTj6Fi-FPPwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 19:21:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 15:20:58.636768 2026] [security2:error] [pid 1207551:tid 1207551] [client 82.165.80.216:39520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alexlacruz.com"] [uri "/wp-config.php.bak"] [unique_id "arLVGmj1DEoBXL_AICMLpgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:25:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:25:48.562236 2026] [security2:error] [pid 22747:tid 22747] [client 82.165.80.216:57516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thanksgivingcardsprinted.com"] [uri "/wp-config.php.bak"] [unique_id "arK6HJkydoVcWXG3oaF-PwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
entangled_mongoose
2026-09-22 15:10:38
(1 week ago)
Probed /wp-config.php.bak.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 11:23:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 07:22:55.809904 2026] [security2:error] [pid 3024:tid 3024] [client 82.165.80.216:60094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sjtent.com"] [uri "/cat-18-1-14/wood-plaques.htm/wp-config.php.bak"] [unique_id "arJlDwKyJBqaeTsVXrvivgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Valhalla
2025-08-22 15:04:13
(1 year ago)
/docs.zip
Hacking
Web App Attack
Anonymous
2025-08-20 21:04:32
(1 year ago)
scanning for potential vulnerable apps (wordpress etc.) and database accesses (GHR). Requested URI: ...
show more
scanning for potential vulnerable apps (wordpress etc.) and database accesses (GHR). Requested URI: /new.zip
show less
Web App Attack
๐ฆ๐บ
weblite
2025-08-18 11:01:45
(1 year ago)
WP_MALWARE_PROBE
Hacking
Web App Attack
๐ณ๐ฟ
Tripwire
2025-08-16 21:47:43
(1 year ago)
Scanning for backup files
Web App Attack
๐บ๐ธ
mnsf
2025-08-08 18:05:15
(1 year ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
MPL
2025-08-05 08:05:49
(1 year ago)
tcp/80 (30 or more attempts)
Port Scan
๐บ๐ธ
MogBox
2025-07-27 11:10:02
(1 year ago)
(RSRCTROLL) Vulnerability Trolling: HEAD /backup 82.165.80.216 (DE/Germany/infong38.clienthosting.eu ...
show more
(RSRCTROLL) Vulnerability Trolling: HEAD /backup 82.165.80.216 (DE/Germany/infong38.clienthosting.eu): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 82.165.80.216 - - [27/Jul/2025:07:09:53 -0400] "HEAD /backup.zip HTTP/2.0" 404 - "-" "-"
show less
Hacking
๐บ๐ธ
TPI-Abuse
2025-07-20 09:31:29
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.80.216 (infong38.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 20 05:31:21.320666 2025] [security2:error] [pid 31545:tid 31545] [client 82.165.80.216:52326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anthearodgers.com"] [uri "/wp-config.php_orig"] [unique_id "aHy3aXbr4KzN4ACA9NHDAQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack