๐บ๐ธ
TPI-Abuse
2026-03-27 13:07:05
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 09:06:45.714576 2026] [security2:error] [pid 27315:tid 27315] [client 162.158.78.8:14047] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.intrialconsultants.com"] [uri "/.env_config"] [unique_id "acaA5cvL8NorAQd2czTcEgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 23:06:38
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 19:06:31.054512 2026] [security2:error] [pid 10603:tid 10603] [client 162.158.78.8:9289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.spottedeaglearts.com"] [uri "/.env1"] [unique_id "acW792VG5HOLS1QvEx1c3gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 19:48:55
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 15:48:47.518804 2026] [security2:error] [pid 6303:tid 6303] [client 162.158.78.8:11801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bowdens-landing.com"] [uri "/docker/.env"] [unique_id "acWNn9mEFBsRqRALKwVoKQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-26 16:05:41
(2 months ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 15:37:40
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 11:37:21.297141 2026] [security2:error] [pid 986:tid 1012] [client 162.158.78.8:9712] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.honorac.com"] [uri "/var/www/.env"] [unique_id "acQBMTPDgrIgzQznXTu-awAAARg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 13:06:00
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.78.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 09:04:49.447569 2026] [security2:error] [pid 32130:tid 32130] [client 162.158.78.8:11889] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anniversaryprintednapkins.com"] [uri "/.env.example"] [unique_id "acPdcdeFoxfMMwWLww6PeAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-03-24 22:35:29
(2 months ago)
๐จ Recon detected (nft drop)
SRC=162.158.78.8
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journa ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.78.8
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
mnsf
2026-03-21 03:05:34
(2 months ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-20 00:06:01
(2 months ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐ฆ๐บ
oncord
2026-03-19 19:58:19
(2 months ago)
Form spam
Web Spam
๐ฆ๐บ
oncord
2026-03-18 13:41:22
(2 months ago)
Form spam
Web Spam
๐บ๐ธ
mnsf
2026-03-17 12:05:26
(2 months ago)
Scanning/Probing (39)
Brute-Force
Web App Attack
Anonymous
2026-01-19 21:23:58
(4 months ago)
[Mon Jan 19 22:23:57.476545 2026] [authz_core:error] [pid 27575] [client 162.158.78.8:10161] AH01630 ...
show more
[Mon Jan 19 22:23:57.476545 2026] [authz_core:error] [pid 27575] [client 162.158.78.8:10161] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Jan 19 22:23:57.585281 2026] [authz_core:error] [pid 27575] [client 162.158.78.8:10161] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Jan 19 22:23:57.694617 2026] [authz_core:error] [pid 27575] [client 162.158.78.8:10161] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
MirrorImageGaming
2025-12-02 17:36:06
(6 months ago)
80 โ 443
HEAD /old/ HTTP/1.1 http://www.boyshorties.com/old/ Mozilla/5.0 (Linux; Android 10; vivo 19 ...
show more
80 โ 443
HEAD /old/ HTTP/1.1 http://www.boyshorties.com/old/ Mozilla/5.0 (Linux; Android 10; vivo 1904) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.5938.60 Mobile Safari/537.36
show less
Web App Attack
๐ฆ๐บ
oncord
2025-10-10 09:54:47
(7 months ago)
Form spam
Web Spam