๐ฆ๐น
nomzamo
2026-06-08 17:43:16
(22 hours ago)
Fail2Ban reported: nginx-noscript
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-04 03:04:44
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 23:04:37.736780 2026] [security2:error] [pid 6989:tid 6989] [client 162.158.94.172:12777] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wiro.am"] [uri "/.git/config"] [unique_id "aiDrRUAjxEs9-fulI-E-iAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 15:08:10
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:08:05.301196 2026] [security2:error] [pid 14966:tid 14966] [client 162.158.94.172:11823] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goodfor247.com"] [uri "/.git/config"] [unique_id "ah7x1eMC6IcROWxYX1ZCsgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 13:21:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 09:21:27.078543 2026] [security2:error] [pid 14022:tid 14047] [client 162.158.94.172:10240] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kandooo.com"] [uri "/.git/config"] [unique_id "ah7Y19NMDLGdZRwqRgGwTAAAARc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 13:06:48
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 13:41:47
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 09:41:39.296657 2026] [security2:error] [pid 7279:tid 7348] [client 162.158.94.172:13238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.isigndev.com"] [uri "/.git/config"] [unique_id "ahhGE4v7XSh_jmYjRkPlbgAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 08:47:12
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 04:47:06.757344 2026] [security2:error] [pid 13411:tid 13428] [client 162.158.94.172:11666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cynosureendeavor.cynosureinternetservices.com"] [uri "/sftp-config.json"] [unique_id "agbdikUEM4JlpjNBSoLpuQAAAA4"], referer: https://www.google.com/search?q=www.cynosureendeavor.cynosureinternetservices.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 12:06:17
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 08:06:12.291121 2026] [security2:error] [pid 22888:tid 22888] [client 162.158.94.172:9784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.hemihauling.com"] [uri "/.env.backup"] [unique_id "agRpNAfI8z-ZMUh-aKB2sAAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 20:15:44
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 16:15:34.223496 2026] [security2:error] [pid 2794:tid 2794] [client 162.158.94.172:11227] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caribbeancoders.com"] [uri "/.env.production"] [unique_id "agOKZp6mo5MxXbt-SGFsmwAAAAc"], referer: https://www.google.com/search?q=caribbeancoders.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
walnuts
2026-04-30 19:13:46
(1 month ago)
Automated: Triggered nginx security jail (nginx-444) - probing blocked paths on web server
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 06:23:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 02:23:46.259049 2026] [security2:error] [pid 5597:tid 5597] [client 162.158.94.172:10571] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.esprit-caraibe.com"] [uri "/.git/config"] [unique_id "afL1cioxTVD25po6k6YvzgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Tripwire
2026-04-06 17:30:01
(2 months ago)
Scanning for exploits - /.env.save
Web App Attack
๐ฉ๐ช
Mario Silber
2026-04-06 15:59:44
(2 months ago)
(mod_security) mod_security triggered on hostname [redacted] 162.158.94.172 (US/United States/-)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-04-04 08:47:05
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 04:47:01.192480 2026] [security2:error] [pid 18264:tid 18303] [client 162.158.94.172:13478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.foresthillseast.com"] [uri "/.git/HEAD"] [unique_id "adDQBR1YAGvUXBTAegK-sAAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-04 07:05:56
(2 months ago)
Scanning/Probing (14)
Brute-Force
Web App Attack