๐ง๐ช
madeit
2026-08-23 08:55:46
(3 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 02:26:34
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:26:27.456610 2026] [security2:error] [pid 24896:tid 24896] [client 162.158.163.211:10341] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.pfs-nj.com"] [uri "/.git/HEAD"] [unique_id "aoPC0wE0dMDZ6EnVndUiQgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:53:46
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:53:40.832423 2026] [security2:error] [pid 21705:tid 21705] [client 162.158.163.211:14056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.theyoungstrategist.com"] [uri "/.git/config"] [unique_id "aoO7JAkjrO-O5_29KxwKEwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 00:55:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 20:55:43.123078 2026] [security2:error] [pid 23817:tid 23817] [client 162.158.163.211:9249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bosch.pamplonaserviciotecnico.com"] [uri "/.git/config"] [unique_id "aoOtj_mMTCbanLcXSZH1ugAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:48:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:48:06.863222 2026] [security2:error] [pid 22871:tid 22891] [client 162.158.163.211:9222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.gsji.org"] [uri "/.git/HEAD"] [unique_id "aoKEdjFrCj5uB6qvEoepTQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:25:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:24:58.824709 2026] [security2:error] [pid 5915:tid 5915] [client 162.158.163.211:10741] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.adventiststoday.org"] [uri "/.git/config"] [unique_id "aoJ_CnPVsPqd5hUfPUKB3gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:25:51
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:25:46.532466 2026] [security2:error] [pid 25338:tid 25338] [client 162.158.163.211:11451] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.yanchuk.org"] [uri "/.git/HEAD"] [unique_id "aoJjGmDx0ts03bFrQvrotAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 10:38:52
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:38:48.723328 2026] [security2:error] [pid 26208:tid 26208] [client 162.158.163.211:14174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "natursac.com"] [uri "/.git/config"] [unique_id "aoGTOIK0w7O0dTyoXTdyEAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:23:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:23:12.614507 2026] [security2:error] [pid 32413:tid 32413] [client 162.158.163.211:9812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.mobresearchinc.com"] [uri "/.git/HEAD"] [unique_id "aoFXUD8_gR7SLXIPxxQuuQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-14 19:32:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 15:32:11.043268 2026] [security2:error] [pid 3608:tid 3608] [client 162.158.163.211:10084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "achillespress.com"] [uri "/.git/HEAD"] [unique_id "an9tOzUJj0Z0Ar0e2G8sJQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
anotherwatcher
2026-06-15 05:27:52
(2 months ago)
bad bot
Bad Web Bot
๐ฉ๐ช
acadeova
2026-04-10 12:35:43
(4 months ago)
๐จ Recon detected (nft drop)
SRC=162.158.163.211
Observed=TCP dpt=80 in=enp0s6 ttl=54
Time=recent(jou ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.163.211
Observed=TCP dpt=80 in=enp0s6 ttl=54
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฒ๐พ
Rizzy
2026-04-07 01:12:16
(4 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฎ๐ฉ
Burayot
2026-04-04 05:09:20
(4 months ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 162.158.163.211 (SG/Singapore/-): 1 ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 162.158.163.211 (SG/Singapore/-): 1 in the last 3600 secs
show less
Web App Attack
๐ซ๐ท
domainemporium
2026-01-22 03:15:58
(7 months ago)
(wordpress) Failed wordpress login from 162.158.163.211 (SG/Singapore/-): (CF_ENABLE)
Brute-Force