π§πͺ
madeit
2026-09-18 14:27:49
(13 hours ago)
Web App Attack
π§πͺ
madeit
2026-09-10 01:10:21
(1 week ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-19 10:27:39
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 06:27:34.920291 2026] [security2:error] [pid 29462:tid 29462] [client 162.158.158.78:13418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blueskyfederal.com"] [uri "/.env.dist"] [unique_id "ajUZlsUHLuXyGozlzP3SqgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
acadeova
2026-04-25 12:41:27
(4 months ago)
π¨ Recon detected (nft drop)
SRC=162.158.158.78
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(jour ...
show more
π¨ Recon detected (nft drop)
SRC=162.158.158.78
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
Anonymous
2026-04-17 21:36:55
(5 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
πΊπΈ
mnsf
2026-04-04 07:06:05
(5 months ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-04-03 05:07:26
(5 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
πΊπΈ
octageeks.com
2026-03-30 04:08:38
(5 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 01:14:39
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 21:14:34.275477 2026] [security2:error] [pid 13625:tid 13625] [client 162.158.158.78:11740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.roumer.com"] [uri "/.env.local"] [unique_id "ab3w-mHesP2neR2xYGVFnAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 04:11:57
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 00:11:49.210905 2026] [security2:error] [pid 7828:tid 7828] [client 162.158.158.78:12813] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.agrollum.com"] [uri "/var/www/html/.env"] [unique_id "abzJBSnO-0xpzVtjX5jH4gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 02:19:36
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 22:19:32.101251 2026] [security2:error] [pid 31967:tid 31967] [client 162.158.158.78:13773] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.gegkal.com"] [uri "/.env.staging"] [unique_id "abyutI-ASJfPm0-HwAsKfgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 11:52:51
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:52:45.154513 2026] [security2:error] [pid 17866:tid 17866] [client 162.158.158.78:12761] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "countrycottagetogo.buffaloweddingdeejay.com"] [uri "/var/www/html/.env"] [unique_id "abvjjTDKYTuiRviL9nEPUAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 11:05:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:05:28.406154 2026] [security2:error] [pid 19428:tid 19428] [client 162.158.158.78:12899] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.cthog.xyz"] [uri "/site/.env"] [unique_id "abvYeNQcRu8i2k2n_qDVPwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 10:15:47
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 06:15:39.801918 2026] [security2:error] [pid 27346:tid 27346] [client 162.158.158.78:11260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.michaelmoorefield.com"] [uri "/srv/.env"] [unique_id "abvMyz0yNHJq1_0PObO_lAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 09:25:17
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 05:25:13.900419 2026] [security2:error] [pid 23732:tid 23732] [client 162.158.158.78:10202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.flatontaylor.com"] [uri "/.env.prod"] [unique_id "abvA-fB7IvqnZD0-eMeT0wAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack