๐ฎ๐ฉ
securejdprop
2026-08-26 18:17:48
(9 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/vpatch-git-config.
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-17 07:07:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:07:13.283150 2026] [security2:error] [pid 8897:tid 8897] [client 162.158.108.139:14266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tier1athletics.liddlesports.com"] [uri "/.git/HEAD"] [unique_id "aoKzIWYpd3u0ZFmzvYwwNgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:53:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:53:23.385198 2026] [security2:error] [pid 14814:tid 14826] [client 162.158.108.139:13966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.metrobaselexpoforum.org"] [uri "/.git/config"] [unique_id "aoKFs2DnqDi7VIF_AJvHlAAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐น
NotACaptcha
2026-08-17 03:00:13
(1 week ago)
webserver:443 [17/Aug/2026] "GET /.git/HEAD HTTP/1.1" 302 5836 "-" "Mozilla/5.0 (Windows NT 10.0; W ...
show more
webserver:443 [17/Aug/2026] "GET /.git/HEAD HTTP/1.1" 302 5836 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:25:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:25:38.413358 2026] [security2:error] [pid 26643:tid 26667] [client 162.158.108.139:9697] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.worldecom.org"] [uri "/.git/HEAD"] [unique_id "aoJjEhLCWpeXOMM1UcN_QgAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:00:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:00:04.364460 2026] [security2:error] [pid 20753:tid 20753] [client 162.158.108.139:13053] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jimmyshakes.org"] [uri "/.git/config"] [unique_id "aoJPBGlfKXBScL4W6DW5-AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 22:34:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 18:34:44.250659 2026] [security2:error] [pid 26166:tid 26166] [client 162.158.108.139:14044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coalminer.com"] [uri "/.git/config"] [unique_id "aoI7BJRFMXsPpZe_F1OkkQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-15 06:04:20
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:949110) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 02:04:00.510813 2026] [security2:error] [pid 4178:tid 4178] [client 162.158.108.139:13848] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "justinpenney.com"] [uri "/.git/HEAD"] [unique_id "aoABUHlrXFWefg7QHm_NQgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-13 04:23:11
(1 week ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 08:54:34
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 04:54:26.513716 2026] [security2:error] [pid 16119:tid 16119] [client 162.158.108.139:14008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.network22.net"] [uri "/.git/config"] [unique_id "anrjQrMXAAxs5a-giqkCRwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 04:38:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 00:38:34.429818 2026] [security2:error] [pid 2185422:tid 2185422] [client 162.158.108.139:10323] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.lordcain.net"] [uri "/.git/config"] [unique_id "anqnSoH6jbGffa-RBCb9rwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 04:20:52
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 00:20:44.163753 2026] [security2:error] [pid 2222774:tid 2222774] [client 162.158.108.139:9967] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.cofias.net"] [uri "/.git/HEAD"] [unique_id "anqjHGWXHhc4-bcBsgD99QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-08 16:32:40
(2 weeks ago)
Web App Attack
Anonymous
2026-06-25 08:17:41
(2 months ago)
162.158.108.139 - - [25/Jun/2026:10:17:38 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 44 ...
show more
162.158.108.139 - - [25/Jun/2026:10:17:38 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 441 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
162.158.108.139 - - [25/Jun/2026:10:17:38 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 246 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
162.158.108.139 - - [25/Jun/2026:10:17:39 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 441 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
162.158.108.139 - - [25/Jun/2026:10:17:39 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 246 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
162.158.108.139 - - [25/Jun/2026:10:17:40 +0200] "GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 12:26:53
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 08:26:44.749691 2026] [security2:error] [pid 4767:tid 4767] [client 162.158.108.139:13613] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fxztrader.com"] [uri "/.env.production"] [unique_id "ajU1hDaKm1Dt3EJVDgUKbAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack