๐บ๐ธ
TPI-Abuse
2026-10-07 03:27:16
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 23:27:06.797844 2026] [security2:error] [pid 1279:tid 1287] [client 162.159.119.27:11532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hotairwelder.com"] [uri "/.env.production"] [unique_id "asW8CiLA1cnrRhwk9MuXvgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-10-06 20:13:19
(9 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 07:39:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 03:39:28.620302 2026] [security2:error] [pid 11517:tid 11517] [client 162.159.119.27:13878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeffreyasweeney.com"] [uri "/.htaccess"] [unique_id "asNUMG8cFmlPxuvFoqpo5QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 15:26:55
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 11:26:49.437142 2026] [security2:error] [pid 24316:tid 24331] [client 162.159.119.27:11075] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dulemba.com"] [uri "/wp-config.php.old"] [unique_id "asJwOQV2AjUNCiOWsfjbXQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-09-07 20:18:48
(4 weeks ago)
Web App Attack
๐ง๐ช
madeit
2026-08-22 20:19:35
(1 month ago)
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-09 04:14:27
(2 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
Anonymous
2026-04-23 05:05:12
(5 months ago)
Web App Attack
Brute-Force
Web App Attack
๐ฆ๐บ
oncord
2026-04-15 15:17:04
(5 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-03-31 05:56:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 01:56:29.377294 2026] [security2:error] [pid 9993:tid 9993] [client 162.159.119.27:12746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.teenybikinigirls.com"] [uri "/backend/.env"] [unique_id "actiDRuZpASBpqxbIEIpqwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 16:01:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 12:01:26.681508 2026] [security2:error] [pid 20029:tid 20029] [client 162.159.119.27:13797] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.yuichiro.us"] [uri "/.env.bak"] [unique_id "acqeVpmklxiHUUJWMaEn5wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-03-28 19:02:31
(6 months ago)
๐จ Recon detected (nft drop)
SRC=162.159.119.27
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=162.159.119.27
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
mnsf
2026-03-20 16:10:43
(6 months ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 09:06:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 05:06:26.812977 2026] [security2:error] [pid 14109:tid 14109] [client 162.159.119.27:13703] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.joshuashands.org"] [uri "/.env~"] [unique_id "ab0OEmqkh_ki4LJd6BUaKwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 07:18:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.159.119.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 03:18:32.064385 2026] [security2:error] [pid 9730:tid 9730] [client 162.159.119.27:10026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.slusarczyk.com"] [uri "/.envrc"] [unique_id "abz0yGZw70CjNwW2ngAVIAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack