π―π΅
S.O.B.A. Dev.
2026-07-31 15:55:36
(3 hours ago)
Persistent port scanning or vulnerability scanning
Port Scan
π·πΊ
DZBOT
2026-06-09 19:32:23
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-04 17:20:49
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 13:20:44.391912 2026] [security2:error] [pid 14811:tid 14811] [client 162.158.111.107:13682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aycart.es"] [uri "/.git/config"] [unique_id "aiGz7Ce43hnNUB_R1bM6VgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-06-04 15:05:21
(1 month ago)
Abuse Detected (1)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-04 13:07:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 09:07:10.402262 2026] [security2:error] [pid 23777:tid 23777] [client 162.158.111.107:13769] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yosalvationyo.org"] [uri "/.git/config"] [unique_id "aiF4fvizV1rv_9zUdlxN1wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-26 10:01:43
(2 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
π©πͺ
acadeova
2026-05-25 12:42:02
(2 months ago)
π¨ Recon detected (nft drop)
SRC=162.158.111.107
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jou ...
show more
π¨ Recon detected (nft drop)
SRC=162.158.111.107
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
πΊπΈ
TPI-Abuse
2026-05-15 10:54:39
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 06:54:33.345152 2026] [security2:error] [pid 1776:tid 1776] [client 162.158.111.107:9481] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.yukihouse.hk"] [uri "/.env.dev"] [unique_id "agb7adtmMXKM4Vm-t_HZfAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
bescared
2026-05-14 15:18:21
(2 months ago)
F2B - Malicious activity detected. URL Probing. -151302cd-
Hacking
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-09 02:15:02
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 22:14:57.131011 2026] [security2:error] [pid 8322:tid 8322] [client 162.158.111.107:14328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mrbaystreet.crossfiregold.com"] [uri "/.git/config"] [unique_id "af6YoR3x9NCQCC4lrQFYQAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-08 13:55:56
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 09:55:50.833950 2026] [security2:error] [pid 19080:tid 19080] [client 162.158.111.107:12509] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oldmaninthepeanut.com"] [uri "/sftp-config.json"] [unique_id "af3rZgdhXXOEUACgNxfkqwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-30 13:59:07
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 09:59:02.010785 2026] [security2:error] [pid 7497:tid 7497] [client 162.158.111.107:13660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.nuewines.com"] [uri "/.git/config"] [unique_id "afNgJkJy-ixyO_f8UssywQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-30 10:02:44
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 06:02:39.290272 2026] [security2:error] [pid 16939:tid 16939] [client 162.158.111.107:11015] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.maprada92.com"] [uri "/.git/config"] [unique_id "afMov5nGOZXwRlAj9_SHRwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-30 06:08:03
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 02:07:55.598278 2026] [security2:error] [pid 5222:tid 5222] [client 162.158.111.107:10528] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ava-world.com"] [uri "/.git/config"] [unique_id "afLxu8tvuXYphfIbbGDXnQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-29 11:01:26
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.107 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 07:01:21.994861 2026] [security2:error] [pid 25792:tid 25808] [client 162.158.111.107:13516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.aassone.com"] [uri "/.git/config"] [unique_id "afHlAZzLpoXAc23o-AQ6cwAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack