๐ณ๐ฑ
hxsain
2026-10-07 03:42:24
(1 day ago)
Blocked by UFW [443/tcp] | SPT: 16896 | TTL: 56 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefi ...
show more
Blocked by UFW [443/tcp] | SPT: 16896 | TTL: 56 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ง๐ช
madeit
2026-10-01 13:09:13
(6 days ago)
Web App Attack
๐ฉ๐ช
4server
2026-09-30 12:51:15
(1 week ago)
[WedSep3014:51:10.1510592026][security2:error][pid3758140:tid3758252][client162.158.110.163:0]ModSec ...
show more
[WedSep3014:51:10.1510592026][security2:error][pid3758140:tid3758252][client162.158.110.163:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Matchedphrase\".php.txt\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"619\"][id\"340035\"][rev\"5\"][msg\"Atomicorp.comWAFRules:Bogusfileextensions\"][severity\"CRITICAL\"][hostname\"www.wildpferde.ch\"][uri\"/index.php.txt\"][unique_id\"ar0Fvl3ptwkLhq9spQsYngAAAMM\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ท๐บ
DZBOT
2026-08-07 03:14:43
(2 months ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 20:01:28
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 16:01:20.212762 2026] [security2:error] [pid 1890:tid 1890] [client 162.158.110.163:12830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rbmediaworks.com"] [uri "/.env.test"] [unique_id "ajw3kEpgOjhAxrmaYCNwfAAAACc"], referer: https://www.google.com/search?q=rbmediaworks.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Axel
2026-06-10 07:12:06
(3 months ago)
Blocked by ModSecurity. Rule ID: 210730 Message: COMODO WAF: URL file extension is restricted by pol ...
show more
Blocked by ModSecurity. Rule ID: 210730 Message: COMODO WAF: URL file extension is restricted by policy||redcasiepac.com|F|2 Phase: 2 Severity: CRITICAL URI: /server.key Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-06-02 23:08:37
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 19:08:29.198764 2026] [security2:error] [pid 21383:tid 21383] [client 162.158.110.163:12837] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "survivorassistance.com"] [uri "/.git/config"] [unique_id "ah9ibTjMI954UeBNvDM0sgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-20 00:18:29
(4 months ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 18:58:31
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 14:58:27.570846 2026] [security2:error] [pid 24185:tid 24185] [client 162.158.110.163:11457] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.robertmcatee.com"] [uri "/.git/config"] [unique_id "afOmU9bgvuvrb9J_oliWZAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 23:30:45
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 19:30:37.971843 2026] [security2:error] [pid 4892:tid 4892] [client 162.158.110.163:12552] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thinkwealthactwealth.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thinkwealthactwealth.com"] [uri "/config/master.key"] [unique_id "afKUnafjL-Mevovifc3-twAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-26 03:30:40
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 23:30:36.414926 2026] [security2:error] [pid 22265:tid 22265] [client 162.158.110.163:12442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pagewideprinting.com"] [uri "/.git/config"] [unique_id "ae2G3A08E0rsNcMUeEQ8zAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 11:57:12
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 07:57:05.967638 2026] [security2:error] [pid 2513574:tid 2513636] [client 162.158.110.163:10105] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jonneher.com"] [uri "/.git/config"] [unique_id "adZCkczDIWYfOUq5iHR9BwAAAgY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
penguin-solutions.at
2026-04-08 03:59:09
(6 months ago)
Excessive 403/404 errors
...
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 18:05:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 14:04:59.609774 2026] [security2:error] [pid 16097:tid 16097] [client 162.158.110.163:12258] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.tunabay.com"] [uri "/var/www/.env"] [unique_id "adKkS6LO7jwb-TjYSO0a4AAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-04-05 03:55:27
(6 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.git/refs/heads/main (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking