๐บ๐ธ
TPI-Abuse
2026-06-13 15:26:32
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 11:26:23.302823 2026] [security2:error] [pid 22546:tid 22546] [client 162.158.86.19:13486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "4md.lol"] [uri "/.env.old"] [unique_id "ai12n7vmnTY4298R_vWP8wAAAAc"], referer: https://www.google.com/search?q=4md.lol
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Kinsei Engineering Inc.
2026-06-11 07:44:22
(2 days ago)
UFW:High-frequency access to unused ports
Port Scan
๐บ๐ธ
WellSpring
2026-05-21 21:23:55
(3 weeks ago)
wordpress scan on gotahand.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security laye ...
show more
wordpress scan on gotahand.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
show less
Bad Web Bot
Web App Attack
Anonymous
2026-05-08 17:03:51
(1 month ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-04-28 02:01:38
(1 month ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-26 12:00:19
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 26 08:00:14.654313 2026] [security2:error] [pid 14400:tid 14400] [client 162.158.86.19:11980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "noelramos.com"] [uri "/.git/config"] [unique_id "ae3-TqqEJX-hfoY-F7BnLwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 15:03:57
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 11:03:51.743073 2026] [security2:error] [pid 21680:tid 21680] [client 162.158.86.19:11946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hillsboroughcountyresident.com.alanmariotti.com"] [uri "/.env.backup"] [unique_id "aezX18JNuQC0SaRPhuPXPAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-09 16:52:45
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 09 12:52:39.439111 2026] [security2:error] [pid 694138:tid 694138] [client 162.158.86.19:11607] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hayresearch.am"] [uri "/.env.dev"] [unique_id "adfZV1jBjW5s_EZeThuzFAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 03:53:00
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 23:52:52.770822 2026] [security2:error] [pid 2208812:tid 2208812] [client 162.158.86.19:13942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.circleinthesquare.org"] [uri "/.git/index"] [unique_id "adXRFGBfd3pW1ncgENT1WQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-06 15:04:23
(2 months ago)
[Mon Apr 06 17:04:19.785796 2026] [authz_core:error] [pid 21191] [client 162.158.86.19:10420] AH0163 ...
show more
[Mon Apr 06 17:04:19.785796 2026] [authz_core:error] [pid 21191] [client 162.158.86.19:10420] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Apr 06 17:04:21.446025 2026] [authz_core:error] [pid 21191] [client 162.158.86.19:10420] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Apr 06 17:04:22.096238 2026] [authz_core:error] [pid 21191] [client 162.158.86.19:10420] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ซ๐ท
masterguru
2026-04-06 00:27:40
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-197)
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-04 00:31:35
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 20:31:28.147113 2026] [security2:error] [pid 17018:tid 17018] [client 162.158.86.19:9838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mhebert.com"] [uri "/.git/logs/HEAD"] [unique_id "adBb4CPIthI1j4BWuy5pXwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 18:28:20
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.86.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 14:28:13.325473 2026] [security2:error] [pid 24431:tid 24431] [client 162.158.86.19:13462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.carlfink.name"] [uri "/.git/logs/HEAD"] [unique_id "adAGvUZmq1Kqy23ByFKuBQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Little Iguana
2026-04-03 16:42:02
(2 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐ณ๐ฑ
e.fierstra
2026-04-03 13:52:03
(2 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack