๐ฉ๐ช
strxmpp
2026-06-10 13:23:16
(2 days ago)
162.158.111.235 - - [10/Jun/2026:15:23:15 +0200] "GET /wp-admin/install.php?step=1 HTTP/1.1" 301 681 ...
show more
162.158.111.235 - - [10/Jun/2026:15:23:15 +0200] "GET /wp-admin/install.php?step=1 HTTP/1.1" 301 681 "-" "http://jabberzueri.ch/wp-admin/install.php?step=1"
...
show less
Bad Web Bot
Anonymous
2026-06-07 19:42:54
(5 days ago)
invalid request
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-02 23:46:36
(1 week ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 02:20:41
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 22:20:36.431399 2026] [security2:error] [pid 13236:tid 13236] [client 162.158.111.235:10177] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "phantomkennels.com"] [uri "/.git/config"] [unique_id "ah499F8qxpp0rWzPX8tErQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
AetherFox
2026-04-24 00:00:00
(1 month ago)
AetherFox VoidGuard detected: Scan path accessed: /.env.local | Scan path accessed: /.env.backup | S ...
show more
AetherFox VoidGuard detected: Scan path accessed: /.env.local | Scan path accessed: /.env.backup | Scan path accessed: /.env.tmp | Scan path accessed: /app/.env | Scan path accessed: /core/.env | Scan path accessed: /.env.php | Scan path accessed: /.env2 | Scan path accessed: /.env.production.bak | Scan path accessed: /.env.prod
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-13 19:53:38
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 15:53:31.810336 2026] [security2:error] [pid 3067867:tid 3067867] [client 162.158.111.235:10146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.willowriver3.com"] [uri "/.git/config"] [unique_id "ad1Ju0axFYxcnxZ0iNjO6wAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 04:51:40
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 00:51:34.325464 2026] [security2:error] [pid 706322:tid 706322] [client 162.158.111.235:9736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.tulsatvmemories.com"] [uri "/.git/index"] [unique_id "adSNVpcQl5-qfRz2d1fzjQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 08:26:00
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 04:25:53.631808 2026] [security2:error] [pid 24695:tid 24695] [client 162.158.111.235:12312] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.oakvillepiano.com"] [uri "/.git/refs/heads/main"] [unique_id "adNuEauIqiuwS9bDPi_QiQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-04-05 16:35:12
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-195)
Hacking
๐ณ๐ฑ
Site.eu
2026-04-04 16:52:17
(2 months ago)
Excessive 404/403 errors
Brute-Force
๐ณ๐ฑ
jjnxpct
2026-04-04 03:53:36
(2 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /config/.env.local (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-03 10:23:46
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 06:23:39.064795 2026] [security2:error] [pid 8930:tid 8930] [client 162.158.111.235:11594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.volkerjahn.link"] [uri "/.git/HEAD"] [unique_id "ac-VKw3yMRSm48cGe0Sl2gAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Tripwire
2026-04-03 05:57:20
(2 months ago)
Scanning for exploits - /.env.development
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 07:48:07
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.111.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 03:47:57.718698 2026] [security2:error] [pid 25974:tid 25974] [client 162.158.111.235:12561] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.sizefinder.com"] [uri "/.git/refs/heads/master"] [unique_id "ac4fLYL8M-j3uA1U-8v9ygAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-04-02 05:45:54
(2 months ago)
Multiple WAF Violations
Web App Attack