๐ฎ๐ฉ
gonet.home
2026-06-08 06:10:02
(27 minutes ago)
Security Event Detected by SOC Gonet: event=alert, hits=1
Brute-Force
๐บ๐ธ
mnsf
2026-06-03 02:05:17
(5 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 10:41:01
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 06:40:57.772058 2026] [security2:error] [pid 29530:tid 29530] [client 162.158.110.135:11365] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ayudaclic.com"] [uri "/.git/config"] [unique_id "ah6zOWH5fr0ihPak5fD0igAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 10:14:04
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 06:14:00.930537 2026] [security2:error] [pid 17397:tid 17397] [client 162.158.110.135:10116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anythingsoldworldwide.com"] [uri "/.git/config"] [unique_id "ah6s6FsZ6ebVxYIQyy_krgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 04:51:18
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 00:51:06.019014 2026] [security2:error] [pid 31169:tid 31169] [client 162.158.110.135:11153] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.celiaisrock.com"] [uri "/.env.save"] [unique_id "ahPVOs1Wr0sQBV_R_nmHLwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฐ
sbk97 (https://sayor.net)
2026-05-21 14:56:49
(2 weeks ago)
HTTP attacks observed: GET /wp-admin/install.php?step=1 HTTP/1.1 | status=301 || GET /wp-admin/insta ...
show more
HTTP attacks observed: GET /wp-admin/install.php?step=1 HTTP/1.1 | status=301 || GET /wp-admin/install.php?step=1 HTTP/1.1 | status=301 || GET /wp-admin/install.php?step=1 HTTP/2.0 | status=404 || GET /wp-admin/install.php?step=1 HTTP/1.1 | status=301 || GET /wp-admin/install.php?step=1 HTTP/1.1 | status=301
show less
Brute-Force
๐บ๐ธ
WellSpring
2026-05-08 17:55:44
(4 weeks ago)
wordpress scan on 775.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 13:38:55
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 09:38:51.867716 2026] [security2:error] [pid 14665:tid 14691] [client 162.158.110.135:13102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mailporte.com"] [uri "/.git/config"] [unique_id "af3naxrA65Bz_iu7nM7zpwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 01:42:18
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 21:42:11.898763 2026] [security2:error] [pid 30279:tid 30279] [client 162.158.110.135:11175] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bidsonlineauctions.com"] [uri "/.env"] [unique_id "af0_cy5UqM7Wf_UDrjbIvgAAABU"], referer: https://www.google.com/search?q=bidsonlineauctions.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-07 16:00:17
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 12:00:03.087623 2026] [security2:error] [pid 15884:tid 15884] [client 162.158.110.135:9790] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.writeitright.biz"] [uri "/.env"] [unique_id "afy3AyXYjl0qweBh0e8CbwAAAAc"], referer: https://www.google.com/search?q=cpcontacts.writeitright.biz
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-07 00:09:45
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 20:09:36.657232 2026] [security2:error] [pid 30447:tid 30447] [client 162.158.110.135:13547] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.knowledgepreservationalliance.theknowledgemaster.com"] [uri "/.env"] [unique_id "afvYQOUkwVR8rgcMKvxcFgAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-02 11:49:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 02 07:48:54.981103 2026] [security2:error] [pid 4586:tid 4586] [client 162.158.110.135:11174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "linabeverage.com"] [uri "/.git/config"] [unique_id "afXkpq7rA3_OJkVf1jpN8AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 18:52:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 14:52:24.988915 2026] [security2:error] [pid 27056:tid 27056] [client 162.158.110.135:10961] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.rivercityacct.com"] [uri "/.git/config"] [unique_id "afOk6GABgggdzrjwvqWHRwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฐ
sbk97 (https://sayor.net)
2026-04-24 22:58:57
(1 month ago)
HTTP attack observed: GET /wp-admin/install.php?step=1 HTTP/1.1 | status=301 | response_size=253
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-04 23:45:20
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 19:45:05.951455 2026] [security2:error] [pid 11959:tid 11959] [client 162.158.110.135:9904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.srtmanagementservices.com"] [uri "/.git/config"] [unique_id "adGigS76-dzHeArWWywrRAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack