๐บ๐ธ
TPI-Abuse
2026-06-05 15:56:25
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 11:56:19.376120 2026] [security2:error] [pid 32419:tid 32419] [client 162.158.111.209:10619] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garridolandscaping.com.fiyaplatform.com"] [uri "/.git/config"] [unique_id "aiLxo2x2j63r9ibsXlUcRQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 03:38:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 23:38:20.865691 2026] [security2:error] [pid 29136:tid 29136] [client 162.158.111.209:13004] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "4115thewestford.com"] [uri "/.git/config"] [unique_id "aiDzLDlSu8oSCvO3p5z_VAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 21:14:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 17:14:32.058119 2026] [security2:error] [pid 8372:tid 8372] [client 162.158.111.209:9963] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "etudesoftware.com"] [uri "/.git/config"] [unique_id "aiCZOG2I5PnjXzEOYUo0EQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 11:35:53
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 07:35:47.225549 2026] [security2:error] [pid 14022:tid 14044] [client 162.158.111.209:10622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "southtampaprints.com"] [uri "/.git/config"] [unique_id "ah7AE9NMDLGdZRwqRgGpcgAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-23 09:26:52
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
F242
2026-05-16 03:19:31
(3 weeks ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-05-15 00:15:00
(3 weeks ago)
Known malicious PHP file or CMS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 12:02:44
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 08:02:39.456742 2026] [security2:error] [pid 16944:tid 16944] [client 162.158.111.209:13383] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.hemihauling.com"] [uri "/.env.development"] [unique_id "agRoXwVR2UE9rmxVlacDWwAAAB0"], referer: https://www.google.com/search?q=webmail.hemihauling.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 04:23:14
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 00:23:02.102941 2026] [security2:error] [pid 15448:tid 15448] [client 162.158.111.209:12494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.test.high5-vr.com"] [uri "/.env.development.local"] [unique_id "agFZppjpw-wh4wThVauWewAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 05:30:39
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 01:30:32.586470 2026] [security2:error] [pid 465:tid 465] [client 162.158.111.209:13035] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "googhoo.com"] [uri "/.git/config"] [unique_id "af7GeLnDH58GMhrM_XmqqQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 03:41:28
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 23:41:20.873034 2026] [security2:error] [pid 6280:tid 6280] [client 162.158.111.209:13674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bradmackenzie.com"] [uri "/.git/config"] [unique_id "af6s4G6sdx1IwPmVTWuonQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-05-07 14:47:08
(4 weeks ago)
wordpress scan on 907.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
Tokolosh Hunters
2026-05-05 15:17:28
(1 month ago)
AutoBlockWindow-Known bad useragent query-2026-05-05 15:17:27
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-30 14:38:53
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 10:38:48.960381 2026] [security2:error] [pid 30855:tid 30855] [client 162.158.111.209:10988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.wintercypher.com"] [uri "/.git/config"] [unique_id "afNpeNt5oTBceMsrCXAG5AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 08:50:55
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.209 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 04:50:51.815872 2026] [security2:error] [pid 32613:tid 32613] [client 162.158.111.209:12213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "globaldentalservices.com"] [uri "/.git/config"] [unique_id "aeyAa28GflPrd_bx0tzNMQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack