π²π½
octageeks.com
2026-08-24 04:38:17
(6 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
π§πͺ
madeit
2026-08-15 19:18:12
(1 week ago)
Web App Attack
π§πͺ
madeit
2026-08-06 05:58:12
(2 weeks ago)
Web App Attack
Anonymous
2026-06-21 12:30:19
(2 months ago)
162.158.63.195 - - [21/Jun/2026:07:30:18 -0500] "GET /admin.php HTTP/1.1" 404 555 "-" "Mozilla/5.0 ( ...
show more
162.158.63.195 - - [21/Jun/2026:07:30:18 -0500] "GET /admin.php HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
162.158.63.195 - - [21/Jun/2026:07:30:19 -0500] "GET /wp-includes/block-supports/ HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
162.158.63.195 - - [21/Jun/2026:07:30:19 -0500] "GET /adminfuns.php HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
π§π¬
Stoyko Stoykov
2026-06-04 05:36:53
(2 months ago)
162.158.63.195 - - [04/Jun/2026:08:36:53 +0300] "GET /.env HTTP/2.0" 404 1853 "-" "Mozilla/5.0 (Maci ...
show more
162.158.63.195 - - [04/Jun/2026:08:36:53 +0300] "GET /.env HTTP/2.0" 404 1853 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:135.0) Gecko/20100101 Firefox/135.0"
...
show less
Hacking
Web App Attack
π§π¬
Stoyko Stoykov
2026-05-27 22:27:34
(2 months ago)
162.158.63.195 - - [28/May/2026:01:27:34 +0300] "GET /backend/.env HTTP/2.0" 404 1792 "-" "Mozilla/5 ...
show more
162.158.63.195 - - [28/May/2026:01:27:34 +0300] "GET /backend/.env HTTP/2.0" 404 1792 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 15.7; rv:149.0) Gecko/20100101 Firefox/149.0"
...
show less
Hacking
Web App Attack
π¨π¦
yukon.ca
2026-04-12 22:34:21
(4 months ago)
Web Server Enforcement Violation: Web Server Exposed Git Repository Information Disclosure
Port:80
Hacking
Exploited Host
π¨π¦
yukon.ca
2026-04-08 16:22:27
(4 months ago)
Web Server Enforcement Violation: Web Server Exposed Git Repository Information Disclosure
Port:80
Hacking
Exploited Host
πΊπΈ
TPI-Abuse
2026-04-02 13:55:05
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 09:54:59.460659 2026] [security2:error] [pid 2929:tid 2929] [client 162.158.63.195:14051] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.nearfieldchrist.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.nearfieldchrist.com"] [uri "/configuration.php.bak"] [unique_id "ac51M_1Dz0hbz_gSjGCkvAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
abdubhai
2026-03-25 14:01:24
(4 months ago)
162.158.63.195 - - [25/Mar/2026:
...
Brute-Force
πΊπΈ
TPI-Abuse
2026-03-21 04:07:25
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 00:07:17.672810 2026] [security2:error] [pid 8166:tid 8166] [client 162.158.63.195:10614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrccertification.com"] [uri "/docker/.env"] [unique_id "ab4ZdXL7MANTTxUo_Bfm8wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 01:31:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 21:31:28.230314 2026] [security2:error] [pid 28920:tid 28934] [client 162.158.63.195:11310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.promoralchoice.org"] [uri "/.env.test"] [unique_id "ab308HnbFaDM8RcNp85jggAAAMw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 00:25:41
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 20:25:35.361831 2026] [security2:error] [pid 10116:tid 10116] [client 162.158.63.195:9377] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.emhelectric.com"] [uri "/.env.development"] [unique_id "ab3lfwOhn7RScxPdDR86CAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 05:27:34
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 01:27:18.583342 2026] [security2:error] [pid 27383:tid 27383] [client 162.158.63.195:10138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marcosbarraza.net"] [uri "/root/.env"] [unique_id "abzatu-77ZYC5_H2BevoegAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 04:06:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 00:06:23.881768 2026] [security2:error] [pid 28973:tid 28973] [client 162.158.63.195:13437] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.gkwire.com"] [uri "/.env.save"] [unique_id "abzHv38p1ZXj6Q7gR-36IgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack