πΊπΈ
TPI-Abuse
2026-09-29 08:19:47
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 04:19:41.021441 2026] [security2:error] [pid 1281:tid 1281] [client 162.158.158.94:9431] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ablogisticsgroup.com"] [uri "/wp-config.php"] [unique_id "art0ndWIx6H2cEv-CS-SlwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
LoneRider
2026-09-03 22:33:34
(3 weeks ago)
[04/Sep/2026:00:33:32.868035 +0200] apn1vKjzAHEZPN_p1pGEiwAAAAI 162.158.158.94 41484 127.0.0.1 7081
...
show more
[04/Sep/2026:00:33:32.868035 +0200] apn1vKjzAHEZPN_p1pGEiwAAAAI 162.158.158.94 41484 127.0.0.1 7081
[04/Sep/2026:00:33:33.290714 +0200] apn1vePE_QCfqQpG1XbDUgAAAAc 162.158.158.94 41510 127.0.0.1 7081
[04/Sep/2026:00:33:33.657142 +0200] apn1vSews11js8tEK5YA1wAAAAk 162.158.158.94 41536 127.0.0.1 7081
...
show less
Hacking
π§πͺ
madeit
2026-08-30 06:48:13
(4 weeks ago)
Web App Attack
π©πͺ
ValtonTahiri
2026-07-15 22:02:10
(2 months ago)
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show more
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=162.158.158.94; proto=TCP; source_port=11571; target_port=8443; flags=SYN
show less
Port Scan
π¦π±
router.al
2026-07-02 16:55:29
(2 months ago)
07/02/2026-16:55:28.548497 162.158.158.94 Protocol: 6 ET SCAN LeakIX Inbound User-Agent
Hacking
π¬π§
Steve
2026-04-12 12:31:58
(5 months ago)
SQL Injection Attempts
Brute-Force
SQL Injection
πΊπΈ
octageeks.com
2026-03-21 04:06:42
(6 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 03:18:05
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 23:17:57.176345 2026] [security2:error] [pid 6990:tid 6990] [client 162.158.158.94:11768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.brazilianbottom.com"] [uri "/api/.env"] [unique_id "ab4N5Rsll0kCgHHbY0HY0wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 01:24:37
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 21:24:29.695142 2026] [security2:error] [pid 10870:tid 10870] [client 162.158.158.94:10830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.okeetokee.org"] [uri "/docker/.env.local"] [unique_id "abyhzdoO_qZZZ2FQwXiH5gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 10:47:24
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 06:47:20.154789 2026] [security2:error] [pid 27647:tid 27647] [client 162.158.158.94:13865] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.patanthony.com"] [uri "/.env.local"] [unique_id "abvUOExNoNt6LnbLbQ44WgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 09:45:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 05:45:07.524489 2026] [security2:error] [pid 15805:tid 15805] [client 162.158.158.94:11113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.amplifihearing.com"] [uri "/root/.env"] [unique_id "abvFo8iqHnjiWFx9BLM5PgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 09:00:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 05:00:29.027239 2026] [security2:error] [pid 25933:tid 25933] [client 162.158.158.94:13915] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.st-johns.us"] [uri "/.env.production.local"] [unique_id "abu7LVFlwo0Op69c9nwSwwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 08:03:52
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 04:03:49.439098 2026] [security2:error] [pid 531:tid 531] [client 162.158.158.94:14300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northfortworthalliance.com"] [uri "/.env.production.local"] [unique_id "abut5QYhVaOISuGd32a24AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 07:45:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 03:45:24.203647 2026] [security2:error] [pid 22023:tid 22023] [client 162.158.158.94:9417] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.exotic-dancers-los-angeles.com"] [uri "/.env_settings"] [unique_id "abuplAe_QBATzbu1RQ4G_AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-19 07:17:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.158.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 03:17:06.330073 2026] [security2:error] [pid 26665:tid 26665] [client 162.158.158.94:10743] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.afdfurniture.com"] [uri "/.env.old"] [unique_id "abui8mopoMgwPUZsRwOpqwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack