๐ง๐ช
madeit
2026-10-07 06:09:36
(1 day ago)
Web App Attack
๐ซ๐ท
dynamix
2026-10-06 14:33:38
(2 days ago)
Multiple WAF Violations
Web App Attack
๐ง๐ช
madeit
2026-09-10 05:50:28
(4 weeks ago)
Web App Attack
๐ง๐ช
madeit
2026-08-24 13:21:32
(1 month ago)
Web App Attack
๐ฎ๐ฉ
securejdprop
2026-08-21 10:28:20
(1 month ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐ง๐ช
madeit
2026-08-12 11:16:44
(1 month ago)
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-16 22:02:10
(3 months ago)
Auto-ban: >3000 req/min op 2026-06-16
Web App Attack
SSH
Hacking
๐ฉ๐ช
acadeova
2026-04-20 01:38:30
(5 months ago)
๐จ Recon detected (nft drop)
SRC=162.158.63.207
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.63.207
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-03-21 00:23:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 20:23:38.563083 2026] [security2:error] [pid 8939:tid 8939] [client 162.158.63.207:10654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.grayhost.net"] [uri "/config/.env.local"] [unique_id "ab3lCrjhhNrZJsjlQ6ZGigAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 05:50:39
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 01:50:29.701104 2026] [security2:error] [pid 3084:tid 3084] [client 162.158.63.207:9293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.railsolutionsmexico.com"] [uri "/web/.env"] [unique_id "abzgJS5bZl-TndqeV9_ecQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 02:39:44
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 22:39:37.570620 2026] [security2:error] [pid 14584:tid 14584] [client 162.158.63.207:11685] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.davidnevue.com"] [uri "/var/www/.env"] [unique_id "abyzaZb-2wjopflm4IUpZAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 00:13:17
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 20:13:12.885408 2026] [security2:error] [pid 25019:tid 25019] [client 162.158.63.207:13367] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.grupo-visalud.com"] [uri "/app/.env"] [unique_id "abyRGHblros9erhpL8zR6QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 11:27:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:27:23.846627 2026] [security2:error] [pid 15799:tid 15799] [client 162.158.63.207:12447] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.wexfordcap.com"] [uri "/.env"] [unique_id "abvdmw-dANrN44v0D2hDXAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 10:22:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 06:22:23.892178 2026] [security2:error] [pid 26967:tid 26967] [client 162.158.63.207:13051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.doctorc.net"] [uri "/.env.development.local"] [unique_id "abvOXwh04JLjzMFNq2WhxgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 09:44:41
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.63.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 05:44:32.012187 2026] [security2:error] [pid 28765:tid 28765] [client 162.158.63.207:12795] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bobrossi.gregorii.com"] [uri "/.env.dev"] [unique_id "abvFgBS4NFM76lCOcAsS8gAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack