๐บ๐ธ
TPI-Abuse
2026-08-27 23:48:16
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 19:48:10.531709 2026] [security2:error] [pid 18543:tid 18604] [client 108.162.242.56:10583] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lifecoachcertified.com"] [uri "/.git/HEAD"] [unique_id "apDMuothYpSWCkWKRgKcGQAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 23:02:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 19:01:59.577168 2026] [security2:error] [pid 21634:tid 21634] [client 108.162.242.56:13488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.furfriend-z.com"] [uri "/.git/HEAD"] [unique_id "apDB50ejj_ctf5s5irS-cgAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 10:39:03
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:38:58.565347 2026] [security2:error] [pid 11707:tid 11707] [client 108.162.242.56:12823] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sagoscapes.com.piratecostumesonline.com"] [uri "/.git/config"] [unique_id "ao7CQsq6iJkheG9KAzOFBgAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 09:13:19
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 05:13:12.994817 2026] [security2:error] [pid 3721634:tid 3722149] [client 108.162.242.56:11873] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.wpe.uk.com"] [uri "/.git/HEAD"] [unique_id "ao6uKFg18Sa8safm3opy4wAAAlE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-16 17:09:19
(1 week ago)
Web App Attack
๐ฌ๐ง
OptimusGO
2026-08-13 19:03:07
(2 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-13 20:03:07 UTC
Log evidence:
108.162.242.56 - - [13/Aug/2026:20:02:44 +0100] "GET /.well-known/security.txt HTTP/1.1" 301 162 "-" "Mozilla/5.0 (l9scan/2.0.933313e2434313e27363e2237313; +https://leakix.net)"
08/13/2026-20:02:44.292107 [**] [1:2049255:1] ET SCAN LeakIX Inbound User-Agent [**] [Classification: Misc activity] [Priority: 3] {TCP} 108.162.242.56:9677 -> 185.127.18.66:80
show less
Port Scan
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-21 17:51:51
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 13:51:43.320028 2026] [security2:error] [pid 18408:tid 18408] [client 108.162.242.56:9811] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.mahoninginn.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.mahoninginn.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "al-xry6k6E20XwkfnICfzwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-17 12:00:35
(1 month ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-06-27 07:21:42
(2 months ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-05-19 09:42:38
(3 months ago)
Web App Attack
Brute-Force
Web App Attack
๐ฆ๐ฑ
router.al
2026-04-30 14:34:22
(4 months ago)
04/30/2026-14:34:21.815582 108.162.242.56 Protocol: 6 ET SCAN LeakIX Inbound User-Agent
Hacking
Anonymous
2026-04-15 13:46:57
(4 months ago)
Web App Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-09 03:45:45
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 23:45:38.563529 2026] [security2:error] [pid 3232397:tid 3232397] [client 108.162.242.56:12903] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jordanware.com"] [uri "/.env.local"] [unique_id "adcg4pbscMDJ0N7S_GNJlwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 19:05:41
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.242.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 15:05:35.342319 2026] [security2:error] [pid 2796527:tid 2796527] [client 108.162.242.56:13041] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "videoverse.com"] [uri "/app/.env"] [unique_id "adam_7HZ-Ii98sQxhg8B7gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-08 06:32:32
(4 months ago)
Web App Attack
Brute-Force
Web App Attack