๐บ๐ธ
mawan
2026-06-20 23:37:44
(1 day ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 20:09:46
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 16:09:38.197092 2026] [security2:error] [pid 23282:tid 23282] [client 162.158.95.242:12584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smart1services.sophcomp.com"] [uri "/.env.production"] [unique_id "ai25Aia9VHx3f4pxcyLj3gAAAA8"], referer: https://www.google.com/search?q=smart1services.sophcomp.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-05-23 16:02:32
(4 weeks ago)
Failed attempt detected by Fail2Ban in plesk-wordpress jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 09:13:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 05:13:25.661910 2026] [security2:error] [pid 27558:tid 27558] [client 162.158.95.242:9444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garanzuayrec.com"] [uri "/.env.local"] [unique_id "agbjtV9Izi8h7t14iDNCEgAAADs"], referer: https://www.google.com/search?q=garanzuayrec.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-05-08 02:28:20
(1 month ago)
wordpress scan on 828.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 09:10:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 05:10:48.095249 2026] [security2:error] [pid 5370:tid 5370] [client 162.158.95.242:10748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnpritchett.com"] [uri "/.git/config"] [unique_id "aeyFGFf4HXY2ado1_SEoygAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-04 14:05:56
(2 months ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 07:45:53
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 03:45:47.244330 2026] [security2:error] [pid 17500:tid 17500] [client 162.158.95.242:13043] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anxo.net.anxo.org"] [uri "/.git/HEAD"] [unique_id "adDBq6tF-QWMpNWtCIFaqAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-31 16:06:35
(2 months ago)
Too many Status 40X (16)
Scanning/Probing (15)
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2026-03-31 14:03:40
(2 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 10:54:27
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 06:54:21.315471 2026] [security2:error] [pid 19205:tid 19205] [client 162.158.95.242:12329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.psychoatomicpower.theknowledgemaster.com"] [uri "/.git/HEAD"] [unique_id "acun3bMQ_YZCzGcgiomiigAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 09:53:28
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 05:53:20.576754 2026] [security2:error] [pid 21152:tid 21177] [client 162.158.95.242:10867] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.annaly.org"] [uri "/.git/refs/heads/master"] [unique_id "acuZkLzsNR4Q8AHhJOwfZQAAAZY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Mario Silber
2026-03-31 07:06:46
(2 months ago)
(mod_security) mod_security triggered on hostname [redacted] 162.158.95.242 (US/United States/-)
SQL Injection
๐ซ๐ท
dynamix
2026-03-31 06:00:02
(2 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 04:52:12
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 00:51:51.900924 2026] [security2:error] [pid 12149:tid 12149] [client 162.158.95.242:13416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocknwalktours.com"] [uri "/.env_backup"] [unique_id "actS54JG3HQjXwy2U0ZYSgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack