๐บ๐ธ
TPI-Abuse
2026-06-07 02:07:30
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 22:07:27.393691 2026] [security2:error] [pid 12508:tid 12508] [client 162.158.111.133:13061] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "njletr.org"] [uri "/.git/config"] [unique_id "aiTSXy4Y019eTjyryHvouQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 19:05:36
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ฆ๐บ
trentwiles.com
2026-05-17 23:40:17
(1 month ago)
Unauthorized connection attempt detected from IP address 162.158.111.133 to port 443 [SYD]
Port Scan
๐ท๐บ
DZBOT
2026-05-16 10:17:33
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ธ๐ช
vaia.cloud
2026-04-08 07:51:01
(2 months ago)
trying wp-login.php/xmlrpc.php 31 times in 1 minutes
Brute-Force
Web App Attack
๐ฎ๐น
ciccio diddo
2026-04-07 03:15:42
(2 months ago)
CMS/WP Exploit multiple 404 port:Tcp/80,443
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 22:55:13
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 18:55:05.644489 2026] [security2:error] [pid 491087:tid 491087] [client 162.158.111.133:13290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vanduijnencoaching.nl"] [uri "/.git/config"] [unique_id "adQ5yam_fYZPBJPDZmh38wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 16:30:12
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 12:30:06.673419 2026] [security2:error] [pid 712545:tid 712545] [client 162.158.111.133:10411] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.robertwhitbeck.com"] [uri "/.git/refs/heads/master"] [unique_id "adPfjt9TsGAa3-WxiSwyzAAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 10:09:59
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 06:09:49.728729 2026] [security2:error] [pid 18538:tid 18538] [client 162.158.111.133:10630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.frankweyer.com"] [uri "/.git/refs/heads/main"] [unique_id "adOGbdx6BASuYlJb9wCl3gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-05 03:05:45
(2 months ago)
Scanning/Probing (15)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 09:55:44
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 05:55:36.953436 2026] [security2:error] [pid 1311:tid 1331] [client 162.158.111.133:9503] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.metropolitanbasel.org"] [uri "/.env.production"] [unique_id "adDgGDeyGJcg7u5lNGAQUAAAAQw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-04 02:05:28
(2 months ago)
Scanning/Probing (22)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 06:20:21
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 02:19:55.535619 2026] [security2:error] [pid 24038:tid 24038] [client 162.158.111.133:12989] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.scoutinsignia.com"] [uri "/.git/index"] [unique_id "ac9cC2q7Hzl3iFCALKRdRQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 18:17:26
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 14:17:18.447679 2026] [security2:error] [pid 20693:tid 20693] [client 162.158.111.133:11767] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.dimitri.daras.name"] [uri "/.git/config"] [unique_id "ac6yru02qsZ80TK4z1Qa0AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-04-01 16:55:21
(2 months ago)
tcp/80 (5 or more attempts)
Port Scan