๐ง๐ช
madeit
2026-10-06 16:04:09
(3 days ago)
Web App Attack
Anonymous
2026-09-27 17:24:48
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-27 03:49:30
(1 week ago)
"Packet Flood; Triggered WAF; Persistent 404 Attempts"
DDoS Attack
๐ง๐ช
madeit
2026-09-14 21:06:52
(3 weeks ago)
Web App Attack
๐ง๐ช
madeit
2026-08-25 00:42:18
(1 month ago)
Web App Attack
๐ฌ๐ง
OptimusGO
2026-06-22 02:43:53
(3 months ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-06-22 03:43:53 UTC
Log evidence:
06/22/2026-03:43:42.034600 [**] [1:1000103:1] SECURITY Management Port Probe - CRITICAL [**] [Classification: Attempted Administrator Privilege Gain] [Priority: 1] {TCP} 162.158.63.175:13625 -> 185.127.18.66:8443
06/22/2026-03:43:45.104636 [**] [1:1000101:2] SECURITY Port Scan Detected - Multiple Unauthorized Ports [**] [Classification: Attempted Information Leak] [Priority: 1] {TCP} 162.158.63.175:13625 -> 185.127.18.66:8443
show less
Port Scan
Brute-Force
๐ฒ๐ฝ
octageeks.com
2026-06-17 04:09:43
(3 months ago)
Wordpress malicious attack:[octausername]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 23:07:49
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 19:07:45.058190 2026] [security2:error] [pid 13232:tid 13232] [client 162.158.63.175:22831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdryer.com.daveweisman.com"] [uri "/.env.old"] [unique_id "ajHXQU72d8REcFkKM5IAlgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-16 00:18:03
(3 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ฉ๐ช
Zydzy
2026-05-17 09:53:58
(4 months ago)
Automated attack detected. Server: 95.140.154.181. Jail: nginx-exploit.
Web App Attack
๐ต๐ฑ
IROK
2026-03-30 21:28:47
(6 months ago)
Malware/WebShell Scan blocked by ModSecurity
...
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-21 05:06:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 01:06:19.773253 2026] [security2:error] [pid 26274:tid 26274] [client 162.158.63.175:10057] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.enselme.com"] [uri "/.env.development"] [unique_id "ab4nSz8MnyHyhPwBpw_k4QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 09:06:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 05:06:08.584350 2026] [security2:error] [pid 11630:tid 11630] [client 162.158.63.175:11433] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spores101.com"] [uri "/.git/refs/heads/master"] [unique_id "ab0OABhZe0Lfu2uTY29zGAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 03:24:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 23:24:09.830878 2026] [security2:error] [pid 26481:tid 26481] [client 162.158.63.175:12745] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.kneupper.com"] [uri "/.env.php"] [unique_id "aby92amiT3UB6vawtFWkgQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 02:29:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 22:29:07.683112 2026] [security2:error] [pid 15138:tid 15138] [client 162.158.63.175:12458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ic1surplus.com"] [uri "/var/www/html/.env"] [unique_id "abyw8y4FdqHVjx8-WcJ66wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack