๐บ๐ธ
TPI-Abuse
2026-06-04 15:46:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 11:46:53.086635 2026] [security2:error] [pid 18303:tid 18303] [client 162.158.110.128:12224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wickliffehof.org"] [uri "/.git/config"] [unique_id "aiGd7XeYGO6v_Liv9mF1kAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-30 10:12:12
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-05-27 01:29:38
(3 weeks ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 10:10:30
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 06:10:23.432470 2026] [security2:error] [pid 2744139:tid 2744139] [client 162.158.110.128:12760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.texassportsmansassociation.org"] [uri "/.git/logs/HEAD"] [unique_id "adYpjx7dBFVg1N00FBHLAAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 10:48:11
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 06:47:59.326085 2026] [security2:error] [pid 1573513:tid 1573513] [client 162.158.110.128:12900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.superiorhandyman.net"] [uri "/.git/HEAD"] [unique_id "adTg32hRJH8HmCsno23QOQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-06 05:05:33
(2 months ago)
Scanning/Probing (33)
Brute-Force
Web App Attack
๐จ๐ฟ
Countryman
2026-04-05 04:32:38
(2 months ago)
repeated unauthorized connection attempts, host sweep, port scan
Port Scan
๐บ๐ธ
mnsf
2026-04-04 13:05:32
(2 months ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 12:17:24
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 08:17:15.047425 2026] [security2:error] [pid 28750:tid 28750] [client 162.158.110.128:10855] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.memrfixitok.com"] [uri "/.git/config"] [unique_id "adEBS8NqYQG0LE96q_6r0AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
Gem
2026-04-03 22:16:11
(2 months ago)
Unauthorized web scan.
Web App Attack
๐บ๐ธ
mnsf
2026-04-03 01:05:39
(2 months ago)
Scanning/Probing (19)
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-02 08:00:57
(2 months ago)
162.158.110.128 - - [02/Apr/2026:11:00:56 +0300] "GET /api/.env HTTP/1.1" 404 846 "-" "-"
162.158.11 ...
show more
162.158.110.128 - - [02/Apr/2026:11:00:56 +0300] "GET /api/.env HTTP/1.1" 404 846 "-" "-"
162.158.110.128 - - [02/Apr/2026:11:00:56 +0300] "GET /admin/.env HTTP/1.1" 404 794 "-" "-"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 02:57:53
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 22:57:49.486328 2026] [security2:error] [pid 3673:tid 3673] [client 162.158.110.128:14065] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.dpcreamery.com"] [uri "/.git/refs/heads/main"] [unique_id "ac3bLbZFqbyEQlHb3JXJsAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-03-31 18:54:59
(2 months ago)
162.158.110.128 - - [31/Mar/2026:21:54:58 +0300] "GET /.env HTTP/1.1" 404 785 "-" "-"
162.158.110.12 ...
show more
162.158.110.128 - - [31/Mar/2026:21:54:58 +0300] "GET /.env HTTP/1.1" 404 785 "-" "-"
162.158.110.128 - - [31/Mar/2026:21:54:59 +0300] "GET /config/.env HTTP/1.1" 404 785 "-" "-"
...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-03-31 16:05:52
(2 months ago)
Scanning/Probing (30)
Brute-Force
Web App Attack