๐บ๐ธ
TPI-Abuse
2026-10-08 03:33:58
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 23:33:52.219750 2026] [security2:error] [pid 26504:tid 26504] [client 162.159.119.23:10911] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arellasoc.com"] [uri "/.env.local"] [unique_id "ascPIGv-vzRmv5AbtqABXwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 09:25:59
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 05:25:52.162957 2026] [security2:error] [pid 30517:tid 30517] [client 162.159.119.23:10483] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.register-yacht-cook-islands.com"] [uri "/.env.production"] [unique_id "asYQIAdFLk9BHRHXZc-7lwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-09-05 10:49:19
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 18:27:19
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 14:27:11.720556 2026] [security2:error] [pid 23701:tid 23701] [client 162.159.119.23:12622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fixmywellwater.com"] [uri "/.git/HEAD"] [unique_id "apHS_8r5h0XWcD-phY_kaAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
securejdprop
2026-08-21 09:57:29
(1 month ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐ง๐ช
madeit
2026-08-21 01:14:12
(1 month ago)
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-08-17 08:00:10
(1 month ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-06 17:11:11
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 13:11:03.959513 2026] [security2:error] [pid 664390:tid 664390] [client 162.159.119.23:25256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lapapevip.spyasociados.com"] [uri "/.env.test"] [unique_id "anTAJ_0xkeKzIM_fiaM73QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-06 02:59:22
(2 months ago)
Web App Attack
๐บ๐ธ
mawan
2026-07-20 18:30:52
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-11 04:14:32
(2 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฌ๐ง
sandra361
2026-06-04 23:46:01
(4 months ago)
Port scan detected: 7 attempts across 1 ports (443). | Evidence: GHOST_SCAN:IN=enp1s0f0 OUT= SRC=162 ...
show more
Port scan detected: 7 attempts across 1 ports (443). | Evidence: GHOST_SCAN:IN=enp1s0f0 OUT= SRC=162.159.119.23 LEN=60 TOS=0x00 PREC=0x00 TTL=56 ID=38101 DF PROTO=TCP SPT=9836 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0
show less
Port Scan
๐ง๐พ
lns.bz
2026-04-25 21:24:12
(5 months ago)
.env scanning [BY]
Web App Attack
๐ง๐พ
lns.bz
2026-03-30 13:03:38
(6 months ago)
Too many 404 requests [BY]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 23:35:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 19:35:52.812062 2026] [security2:error] [pid 22721:tid 22721] [client 162.159.119.23:9988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.bikinitweets.com"] [uri "/config/.env"] [unique_id "acm3WBybvJA-XJT6Xm-epQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack