๐ง๐ช
madeit
2026-09-15 15:49:06
(1 week ago)
Web App Attack
๐ง๐ช
madeit
2026-08-28 11:10:44
(4 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 05:19:31
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:19:20.262374 2026] [security2:error] [pid 1479:tid 1479] [client 162.158.155.141:9789] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.kfraser.com"] [uri "/.git/HEAD"] [unique_id "ao_I2MpZ3fel-QPSQMsbNgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
securejdprop
2026-08-21 07:11:01
(1 month ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-19 04:00:53
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 00:00:46.633258 2026] [security2:error] [pid 28387:tid 28387] [client 162.158.155.141:11686] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eaglespiritproductions.net"] [uri "/.git/config"] [unique_id "aoUqbiIEXIgvgAoF6l6nQwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-14 02:58:12
(1 month ago)
Web App Attack
๐ซ๐ท
IRISIO
2026-07-08 10:05:07
(2 months ago)
scans/SQL injection/spam posts : 1 queries
Web App Attack
SQL Injection
๐ฌ๐ง
pinguin
2026-06-06 02:43:06
(3 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /rest/V1/store/storeConfigs
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ง๐ท
Peregrine
2026-04-17 19:23:37
(5 months ago)
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 162.158.155.141 - - [17/Apr/2026:06:55:15 -0300] "G ...
show more
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 162.158.155.141 - - [17/Apr/2026:06:55:15 -0300] "GET /.git/config HTTP/1.1" 404 18193
show less
Bad Web Bot
Anonymous
2026-04-14 11:08:26
(5 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 01:27:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 21:26:56.277969 2026] [security2:error] [pid 29794:tid 29794] [client 162.158.155.141:9462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kritaka.ai"] [uri "/.env.dev.local"] [unique_id "ab3z4PXUQyyvIDi2b_P7OgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 07:10:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 03:10:37.343545 2026] [security2:error] [pid 9207:tid 9207] [client 162.158.155.141:13452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jhbookdesign.com"] [uri "/.env"] [unique_id "abzy7VN_a-XjU2x0_lwr2AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 06:02:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 02:02:29.957559 2026] [security2:error] [pid 741:tid 741] [client 162.158.155.141:12394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.dualspiralsystems.com"] [uri "/.env.production"] [unique_id "abzi9UeKjl20kdMkOPvdJQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 05:27:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 01:27:35.790653 2026] [security2:error] [pid 2455676:tid 2455676] [client 162.158.155.141:11158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "microkerneltechnologies.com"] [uri "/.env"] [unique_id "abzax7Q-3wTnIdSodEBq5QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 10:42:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 06:41:56.939797 2026] [security2:error] [pid 1280:tid 1280] [client 162.158.155.141:13360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.the-it-man.com"] [uri "/www/.env"] [unique_id "abvS9GoKnQUrnG-uHJEOfwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack