๐บ๐ธ
TPI-Abuse
2026-05-15 11:05:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 07:05:09.497796 2026] [security2:error] [pid 568:tid 568] [client 162.158.79.207:9752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calvetparis1937.com"] [uri "/.env.production"] [unique_id "agb95bl32z4Ia2erjCFY0QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
oncord
2026-05-12 14:24:00
(1 month ago)
Form spam
Web Spam
๐ธ๐ช
vaia.cloud
2026-04-03 17:27:02
(2 months ago)
trying wp-login.php/xmlrpc.php 67 times in 1 minutes
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 12:37:59
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 08:37:49.936982 2026] [security2:error] [pid 11246:tid 11246] [client 162.158.79.207:13702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jenricker.com"] [uri "/srv/.env"] [unique_id "acZ6Hd8JEGQ2IBYQXXMgngAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 12:23:23
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 08:23:02.075168 2026] [security2:error] [pid 956:tid 956] [client 162.158.79.207:14122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.digitalsolutions.help"] [uri "/.env.development"] [unique_id "acUlJjgl0qnz_qyY_ATL1wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 07:21:02
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 03:20:58.227393 2026] [security2:error] [pid 3347:tid 3450] [client 162.158.79.207:12201] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.baronlongford.com"] [uri "/.env.save"] [unique_id "acTeWmnMVQwCbT11HJx09wAAAVA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 17:38:03
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 13:37:51.275012 2026] [security2:error] [pid 10428:tid 10428] [client 162.158.79.207:10065] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.axiselectric.net"] [uri "/.env.tmp"] [unique_id "acQdb6VpQOhp5tBNUGiHzwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-20 12:05:31
(3 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-18 11:05:16
(3 months ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
๐ฆ๐บ
oncord
2025-10-23 03:50:36
(8 months ago)
Form spam
Web Spam
Anonymous
2025-07-28 19:40:00
(10 months ago)
[Mon Jul 28 21:39:59.598981 2025] [authz_core:error] [pid 21031] [client 162.158.79.207:19266] AH016 ...
show more
[Mon Jul 28 21:39:59.598981 2025] [authz_core:error] [pid 21031] [client 162.158.79.207:19266] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Jul 28 21:39:59.704114 2025] [authz_core:error] [pid 21031] [client 162.158.79.207:19266] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Jul 28 21:39:59.805329 2025] [authz_core:error] [pid 21031] [client 162.158.79.207:19266] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2025-07-27 16:19:01
(11 months ago)
[Sun Jul 27 18:19:00.565574 2025] [authz_core:error] [pid 24742] [client 162.158.79.207:12628] AH016 ...
show more
[Sun Jul 27 18:19:00.565574 2025] [authz_core:error] [pid 24742] [client 162.158.79.207:12628] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Jul 27 18:19:00.668492 2025] [authz_core:error] [pid 24742] [client 162.158.79.207:12628] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Jul 27 18:19:00.776676 2025] [authz_core:error] [pid 24742] [client 162.158.79.207:12628] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2025-07-20 21:53:46
(11 months ago)
wp admin page access attempt
...
Hacking
Web App Attack
๐ฌ๐ง
pinguin
2025-06-29 12:43:56
(11 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-06-03 23:21:16
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.79.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 03 19:21:11.991966 2025] [security2:error] [pid 1142788:tid 1142788] [client 162.158.79.207:27628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ruralcommunitycare.org"] [uri "/.env"] [unique_id "aD-DZ3dvKcGetK2jZcy-tgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack