๐ฉ๐ช
FeG Deutschland
2026-08-30 08:20:30
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 23:15:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 19:15:34.648137 2026] [security2:error] [pid 30394:tid 30394] [client 162.158.88.143:9813] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mininoarg.com"] [uri "/.git/HEAD"] [unique_id "aoOWFgSZhWdcaupnBAKdSgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:42:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:42:35.872681 2026] [security2:error] [pid 4276:tid 4276] [client 162.158.88.143:9948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.dismain.com"] [uri "/.git/HEAD"] [unique_id "aoK7a6olNubdaYAu5sDLCQAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:32:52
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:32:46.910844 2026] [security2:error] [pid 27052:tid 27052] [client 162.158.88.143:13603] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.whatcausesmentalillness.com"] [uri "/.git/config"] [unique_id "aoKrDolCtsvuBNVI4oE4twAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:03:34
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:03:30.151472 2026] [security2:error] [pid 2110:tid 2110] [client 162.158.88.143:9322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lajoze.com"] [uri "/.git/config"] [unique_id "aoKWIqtZPkyniGfz837qSgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 02:44:27
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 22:44:23.280416 2026] [security2:error] [pid 19132:tid 19132] [client 162.158.88.143:12950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.growingsolutions.org"] [uri "/.git/config"] [unique_id "aoJ1h3yobzw7gPPMLqNeywAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:15:37
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:15:27.835696 2026] [security2:error] [pid 18199:tid 18219] [client 162.158.88.143:12144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.certifiedfinancialmanager.org"] [uri "/.git/config"] [unique_id "aoJgr_sl65fCvzgWbP7WcAAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 22:14:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 18:14:08.837378 2026] [security2:error] [pid 17099:tid 17099] [client 162.158.88.143:9262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garantagroup.com"] [uri "/.git/config"] [unique_id "aoI2ME3DXp-t9D_8hSslygAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-16 15:09:25
(2 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 09:54:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 05:54:25.190454 2026] [security2:error] [pid 26524:tid 26524] [client 162.158.88.143:11197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.katisfaction.nl"] [uri "/.git/HEAD"] [unique_id "aoGI0SnDZJsJxe2uk0osaAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-08-16 02:24:19
(2 weeks ago)
Accessed trap at '/.git/config'
Web App Attack
๐ฉ๐ช
acadeova
2026-08-14 17:06:52
(2 weeks ago)
๐จ Recon detected (nft drop)
SRC=162.158.88.143
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.88.143
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-14 00:12:08
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.88.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 20:12:02.243103 2026] [security2:error] [pid 2513031:tid 2513031] [client 162.158.88.143:11425] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.drowninglovers.com"] [uri "/.git/config"] [unique_id "an5dUvkz7uxC2hb_ILuT0gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-08-07 21:33:03
(3 weeks ago)
๐จ Recon detected (nft drop)
SRC=162.158.88.143
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.88.143
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ง๐ช
madeit
2026-08-06 07:03:14
(3 weeks ago)
Web App Attack