๐ฎ๐ฉ
securejdprop
2026-08-21 09:29:55
(1 day ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
Anonymous
2026-08-09 23:52:42
(1 week ago)
Fail2Ban apache-noscript
Bad Web Bot
Anonymous
2026-07-26 20:22:00
(3 weeks ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-15 20:17:42
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 16:17:37.425030 2026] [security2:error] [pid 4036:tid 4036] [client 162.158.63.19:12624] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.m1graphics.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.m1graphics.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "alfq4VUOFddZ8JbxszJAfgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-01 15:15:29
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 01 11:15:18.905222 2026] [security2:error] [pid 10282:tid 10282] [client 162.158.63.19:24104] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rootsofwellnessayurveda.com"] [uri "/.git/HEAD"] [unique_id "akUvBpZoI5gm-9oXMFftGwAAACM"], referer: https://www.google.com/search?q=rootsofwellnessayurveda.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-29 15:01:16
(1 month ago)
Fail2Ban apache-noscript
Bad Web Bot
๐บ๐ธ
mawan
2026-06-23 04:50:19
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-06-19 18:19:12
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฉ๐ช
acadeova
2026-05-14 15:26:24
(3 months ago)
๐จ Recon detected (nft drop)
SRC=162.158.63.19
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.63.19
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
Anonymous
2026-04-24 15:09:49
(3 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
wimaxnz
2026-04-18 06:30:15
(4 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
๐บ๐ธ
wimaxnz
2026-04-17 06:30:07
(4 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
๐บ๐ธ
TPI-Abuse
2026-03-21 02:26:33
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 22:26:27.852407 2026] [security2:error] [pid 28176:tid 28176] [client 162.158.63.19:13809] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bizecomm.com"] [uri "/.env.dist"] [unique_id "ab4B09CMERG7fcNelKYY6wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 00:10:11
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 20:10:04.480541 2026] [security2:error] [pid 31410:tid 31532] [client 162.158.63.19:10213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.prominentregroup.com"] [uri "/.env_backup"] [unique_id "ab3h3CvecK1zcH-t6w6uMgAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 08:52:43
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 04:52:35.666815 2026] [security2:error] [pid 23026:tid 23026] [client 162.158.63.19:12694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.pikcasa.com"] [uri "/private/.env"] [unique_id "ab0K0wJdpHdTdIoe4VAIKQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack