πΊπΈ
TPI-Abuse
2026-06-21 06:40:13
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 02:40:07.546993 2026] [security2:error] [pid 21857:tid 21880] [client 162.158.111.169:12952] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.frontier-sales.com.exede-sales.com"] [uri "/.env.backup"] [unique_id "ajeHR1K4Qu2hCw--mJN1cwAAAQE"], referer: https://www.google.com/search?q=www.frontier-sales.com.exede-sales.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π²π½
octageeks.com
2026-06-15 04:08:07
(6 days ago)
Wordpress malicious attack:[octawp]
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 05:09:44
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 01:09:38.604363 2026] [security2:error] [pid 22283:tid 22283] [client 162.158.111.169:12918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "w0kem.com"] [uri "/.git/config"] [unique_id "ah5lkppvn6ZaoY6cNfb3zAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-09 03:29:49
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 23:29:44.919379 2026] [security2:error] [pid 151723:tid 151761] [client 162.158.111.169:14050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.broadmoordermatology.com"] [uri "/.env_secret"] [unique_id "adcdKDyPMLF1xbSsTukCOwAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-04-07 19:45:06
(2 months ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
mnsf
2026-04-06 12:06:01
(2 months ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 16:50:39
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 12:50:29.375762 2026] [security2:error] [pid 27567:tid 27567] [client 162.158.111.169:10225] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.michaeltravis.com"] [uri "/config/.env"] [unique_id "adFBVZQbLHM4NGHjEnzqjQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-04-04 15:41:30
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-197)
Hacking
πΊπΈ
TPI-Abuse
2026-04-04 06:43:04
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 02:42:55.870958 2026] [security2:error] [pid 13021:tid 13021] [client 162.158.111.169:11857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "curiousnarwhal.gregorii.com"] [uri "/.env.dev"] [unique_id "adCy7_4j3xBz6MjB4CcWGwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-04-03 18:05:42
(2 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 12:50:15
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 08:50:07.619900 2026] [security2:error] [pid 23124:tid 23124] [client 162.158.111.169:13831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ecodesarrollourbano.com"] [uri "/.env"] [unique_id "ac-3f_QTy8rM5OWud-TmFwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-02 20:52:57
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 16:52:52.788463 2026] [security2:error] [pid 6819:tid 6819] [client 162.158.111.169:13524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "accpp.link"] [uri "/.env.production"] [unique_id "ac7XJPjVDzz6JRhXWfma2QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-02 17:12:43
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 13:12:35.715094 2026] [security2:error] [pid 15517:tid 15517] [client 162.158.111.169:13395] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.noramsg.com"] [uri "/.git/config"] [unique_id "ac6jg51blktl8iHswrY7OQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-04-02 16:40:46
(2 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-03-31 19:06:26
(2 months ago)
Scanning/Probing (15)
Brute-Force
Web App Attack