๐บ๐ธ
TPI-Abuse
2026-09-25 10:51:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 06:51:52.461022 2026] [security2:error] [pid 24363:tid 24363] [client 82.165.85.224:52588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weddingsuppliescanada.com"] [uri "/.env"] [unique_id "arZSSNZ6hzk7G2OxypDTIgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 10:24:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 06:24:52.743831 2026] [security2:error] [pid 18830:tid 18841] [client 82.165.85.224:47270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seal-block.com"] [uri "/.env"] [unique_id "arZL9KJ4S4PLpzUPM90qZgAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 09:24:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 05:24:04.079831 2026] [security2:error] [pid 9747:tid 9747] [client 82.165.85.224:56318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "transportdelivery.com"] [uri "/.env"] [unique_id "arY9tPqiL61wBWK7JGsraAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-25 08:30:32
(1 week ago)
82.165.85.224 - - [25/Sep/2026:04:30:31 -0400] "GET /.env HTTP/1.1" 403 6355 "-" "-"
...
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 00:13:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 20:12:54.162633 2026] [security2:error] [pid 684:tid 684] [client 82.165.85.224:35964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stbms.com"] [uri "/wp-config.php.bak"] [unique_id "arMZhjFVhx9YAThAPQOKOQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 20:33:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 16:33:46.597800 2026] [security2:error] [pid 12875:tid 12875] [client 82.165.85.224:54822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stonetarot.com"] [uri "/wp-config.php.bak"] [unique_id "arLmKhcRrnM-ebKaBrXJNAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Halux
2026-09-22 02:55:40
(1 week ago)
82.165.85.224 Probing protected path or service
Web App Attack
๐ซ๐ฎ
as211431.net
2025-08-21 12:13:08
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
Protocol: HTTP/2 (HEAD method ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
Protocol: HTTP/2 (HEAD method)
Endpoint: /
UA: Empty string
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
MogBox
2025-08-19 10:28:28
(1 year ago)
(RSRCTROLL) Vulnerability Trolling: HEAD /blog 82.165.85.224 (DE/Germany/infong-es206.clienthosting. ...
show more
(RSRCTROLL) Vulnerability Trolling: HEAD /blog 82.165.85.224 (DE/Germany/infong-es206.clienthosting.eu): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 82.165.85.224 - - [19/Aug/2025:06:28:17 -0400] "HEAD /blog.zip HTTP/2.0" 404 - "-" "-"
show less
Hacking
๐บ๐ธ
TPI-Abuse
2025-07-20 06:22:28
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 20 02:22:24.094121 2025] [security2:error] [pid 19281:tid 19281] [client 82.165.85.224:49210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "misterflores.com"] [uri "/wp-config.php_orig"] [unique_id "aHyLIFsiRuZE5wcMXi6LtwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-19 22:26:31
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 19 18:26:23.909453 2025] [security2:error] [pid 27018:tid 27018] [client 82.165.85.224:33302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "prcs.biz"] [uri "/wp-config.php_old"] [unique_id "aHwbj5bLHV9oUJR2OvczbgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-19 06:57:12
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 19 02:57:05.222854 2025] [security2:error] [pid 8065:tid 8153] [client 82.165.85.224:56048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "liquido.cocoonprojects.com"] [uri "/wp-config.php_orig"] [unique_id "aHtBwYZqeaN9MYG00OXd-gAAAcA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-18 06:46:31
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 18 02:46:26.949726 2025] [security2:error] [pid 21267:tid 21267] [client 82.165.85.224:33302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jalenbattle.com"] [uri "/wp-config.php1"] [unique_id "aHntwpsGFSN7ukIK9xNIYgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-18 01:47:36
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 21:47:31.267699 2025] [security2:error] [pid 30724:tid 30724] [client 82.165.85.224:49180] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "monteriggioni.net"] [uri "/wp-config.php1"] [unique_id "aHmns4VzOk5prqPf6Q9-ZQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-17 04:41:35
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.85.224 (infong-es206.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 00:41:30.659238 2025] [security2:error] [pid 27793:tid 27793] [client 82.165.85.224:44294] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "altansirel.com"] [uri "/wp-config.php.old"] [unique_id "aHh--o9X60Diq3SEKaW3mwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack