๐บ๐ธ
TPI-Abuse
2026-06-04 21:32:25
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 17:32:21.252789 2026] [security2:error] [pid 20482:tid 20482] [client 162.158.111.167:13392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iworklife.org"] [uri "/.git/config"] [unique_id "aiHu5fEQ68NPcjDIlOfSBgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 20:02:38
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 16:02:33.817867 2026] [security2:error] [pid 4892:tid 4892] [client 162.158.111.167:14251] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agworldmissions.org"] [uri "/.git/config"] [unique_id "aiHZ2THswwINSVuwGxfkMQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-30 09:15:10
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 05:15:02.217477 2026] [security2:error] [pid 24006:tid 24006] [client 162.158.111.167:10776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.georgelaceysales.glslightingandcontrols.com"] [uri "/.env.local"] [unique_id "ahqqlszePHEOrTT5EFJ_twAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 03:16:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 23:16:53.824449 2026] [security2:error] [pid 11512:tid 11512] [client 162.158.111.167:14227] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lingafelt.com"] [uri "/.env.development.local"] [unique_id "ahezpZrgm_vO2UF_0R3V_QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-17 00:14:06
(2 weeks ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฉ๐ช
acadeova
2026-05-14 16:07:30
(3 weeks ago)
๐จ Recon detected (nft drop)
SRC=162.158.111.167
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jou ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.111.167
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-08 15:18:55
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 11:18:51.421870 2026] [security2:error] [pid 18150:tid 18171] [client 162.158.111.167:10973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plumberw9.com"] [uri "/.git/config"] [unique_id "af3-2x9FNyGsjLG_8XwKfAAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-05-01 21:50:46
(1 month ago)
Kingcopy(AI-IDS):IP is Probing for Wordpress vulnerabilities WTF:Banned
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 14:05:48
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 10:05:43.162888 2026] [security2:error] [pid 18086:tid 18086] [client 162.158.111.167:12463] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kittysalterations.com"] [uri "/.git/config"] [unique_id "afNhtyF3Xv9RY4i1wiPf0AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 08:01:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 04:01:18.412757 2026] [security2:error] [pid 2897:tid 2897] [client 162.158.111.167:13077] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.book-runningonempty.com"] [uri "/.git/config"] [unique_id "afMMTjh7_zJ1UD3E7k2XhAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-04-27 06:02:39
(1 month ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-11 04:53:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 11 00:53:16.018295 2026] [security2:error] [pid 4047770:tid 4047770] [client 162.158.111.167:11165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.binglawoffice.com"] [uri "/.git/config"] [unique_id "adnTvPXEDTGNOF3Cdpum0QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-04-07 07:43:51
(1 month ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-193)
Hacking
๐ซ๐ท
tecnicorioja
2026-04-04 22:01:19
(2 months ago)
(Mod_security)
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-04 18:32:29
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 14:32:20.807743 2026] [security2:error] [pid 15127:tid 15127] [client 162.158.111.167:14206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.emailaegis.com"] [uri "/.git/refs/heads/main"] [unique_id "adFZNFOiE7UYO8K8Wk1ThAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack