π§πͺ
madeit
2026-09-30 08:15:03
(2 hours ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 08:19:06
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 04:19:00.192345 2026] [security2:error] [pid 24188:tid 24188] [client 162.158.78.100:10011] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.stoutmen.com"] [uri "/.git/config"] [unique_id "aoFydOPB_0JrkrT9Bn_4EwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-11 21:46:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 17:46:21.988714 2026] [security2:error] [pid 605663:tid 605663] [client 162.158.78.100:14131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mystudioinparis.com"] [uri "/.git/HEAD"] [unique_id "anuYLbk4DHbKhVpFLm1tLAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-15 10:48:10
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 06:48:04.838337 2026] [security2:error] [pid 24582:tid 24582] [client 162.158.78.100:11517] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.kbalan.com"] [uri "/.env.development"] [unique_id "agb55D1CTkAmfJYy8auCdgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-09 19:02:42
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 15:02:37.286009 2026] [security2:error] [pid 22801:tid 22801] [client 162.158.78.100:13566] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "opmasterpainter.com"] [uri "/.git/config"] [unique_id "af-EzTk00gJCjICA-ij6pgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-03-30 14:05:15
(5 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-27 11:15:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 07:15:28.870641 2026] [security2:error] [pid 624:tid 624] [client 162.158.78.100:10001] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.frame-sa.com"] [uri "/.env.example"] [unique_id "acZm0Ps6YsALmB4rYnqdqwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-25 15:37:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 11:37:19.585261 2026] [security2:error] [pid 986:tid 1010] [client 162.158.78.100:13478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.honorac.com"] [uri "/.envrc"] [unique_id "acQBLzPDgrIgzQznXTu-XwAAARY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-03-17 07:05:52
(6 months ago)
Scanning/Probing (41)
Brute-Force
Web App Attack
πΊπΈ
wimaxnz
2026-01-17 07:59:34
(8 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Port Scan
Brute-Force
SSH
π¦πΊ
oncord
2026-01-06 05:52:45
(8 months ago)
Form spam
Web Spam
πΊπΈ
creations.works
2025-08-11 07:01:34
(1 year ago)
Blocked by UFW on vds [80/tcp]
Source port: 26158
TTL: 58
Packet length: 60
TOS: 0x00
This report w ...
show more
Blocked by UFW on vds [80/tcp]
Source port: 26158
TTL: 58
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
π―π΅
Kinsei Engineering Inc.
2025-07-22 23:46:37
(1 year ago)
UFW:High-frequency access to unused ports
Port Scan
πΊπΈ
thefoofighter
2025-07-04 06:57:53
(1 year ago)
[Fri Jul 04 06:57:52.481455 2025] [:error] [pid 199414] [client 162.158.78.100:53868] [client 162.15 ...
show more
[Fri Jul 04 06:57:52.481455 2025] [:error] [pid 199414] [client 162.158.78.100:53868] [client 162.158.78.100] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.2"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "sarahmcnally.com"] [uri "/.git/config"] [unique_id "aGd7cPhDtHdJ6UYnWqtT-QAAAAQ"]
[Fri Jul 04 06:57:52.552261 2025] [:error] [pid 199414] [client 162.158.78.100:53868] [client 162.158.78.100] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_
...
show less
Bad Web Bot
Web App Attack
Anonymous
2025-07-01 23:00:46
(1 year ago)
wp admin page access attempt
...
Hacking
Web App Attack