๐ฌ๐ง
Oakley
2026-06-16 06:41:13
(4 days ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐บ๐ธ
mnsf
2026-06-02 04:06:13
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
Anonymous
2026-05-30 04:48:36
(3 weeks ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/install.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 04:52:54
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 00:52:47.430261 2026] [security2:error] [pid 25792:tid 25792] [client 162.158.95.76:11232] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hawkeyescm.com"] [uri "/.git/config"] [unique_id "af69n9ovKMTlrzqEN4xMlAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 12:56:19
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 08:56:15.171897 2026] [security2:error] [pid 15071:tid 15071] [client 162.158.95.76:10279] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.biomia.com.simia.com"] [uri "/.git/config"] [unique_id "af3db4pIZ_CiyKcizvHK8AAAAAk"], referer: https://www.google.com/search?q=www.biomia.com.simia.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-05-07 00:34:13
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-03 05:13:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 01:13:21.012348 2026] [security2:error] [pid 28897:tid 28911] [client 162.158.95.76:13031] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3stepreviewforyou.com"] [uri "/.git/config"] [unique_id "afbZcZ64GoMmcHbHoX3jdAAAAUM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 06:00:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 01:59:57.200445 2026] [security2:error] [pid 32311:tid 32311] [client 162.158.95.76:10992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.stagemadrid.com"] [uri "/.git/config"] [unique_id "afLv3eGEZgNw5M-K8qaByQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-04-26 15:21:32
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-14 01:04:27
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 21:04:21.329665 2026] [security2:error] [pid 599322:tid 599322] [client 162.158.95.76:10594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.oakvillenaturopathicclinic.com"] [uri "/.git/config"] [unique_id "ad2SleSX-p0_oy0vuGtlrQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-06 20:05:44
(2 months ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 17:49:39
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 13:49:31.439907 2026] [security2:error] [pid 18469:tid 18469] [client 162.158.95.76:10606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.konahawaiihandyman.com"] [uri "/.env.production.bak"] [unique_id "adFPK4UDWsU69Ew1ar2t3AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 14:49:53
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 10:49:49.453514 2026] [security2:error] [pid 10759:tid 10759] [client 162.158.95.76:10161] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mspish.com"] [uri "/.git/refs/heads/main"] [unique_id "adElDdAcHWYX0CVjRGZH8QAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 05:44:05
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.95.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 01:43:57.848139 2026] [security2:error] [pid 24592:tid 24592] [client 162.158.95.76:12293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.airtechconsulting.com"] [uri "/.env"] [unique_id "adClHSwfnfGFJz6tQuJkEwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-04-04 02:25:11
(2 months ago)
Web App Attack (ModSecurity Block). Evidence: [REDACTED_DOMAIN]:80 162.158.95.76 - - [04/Apr/2026:03 ...
show more
Web App Attack (ModSecurity Block). Evidence: [REDACTED_DOMAIN]:80 162.158.95.76 - - [04/Apr/2026:03:25:01 +0100] GET /home/.env HTTP/1.1 403 213 - -
show less
Web App Attack