Anonymous
2026-07-21 13:57:18
(1 day ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
Axel
2026-05-19 01:00:05
(2 months ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /admin-panel/ ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /admin-panel/.env Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
Sรฉfora Srl
2026-05-18 14:03:30
(2 months ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-08 17:09:25
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 13:09:19.255377 2026] [security2:error] [pid 9478:tid 9478] [client 162.158.94.174:10216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redlandssprinkler.com"] [uri "/.git/config"] [unique_id "af4Yv_eCp30U6FBtu5FRSgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-05-01 11:58:53
(2 months ago)
๐จ Recon detected (nft drop)
SRC=162.158.94.174
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.94.174
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-25 08:49:45
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 04:49:41.111706 2026] [security2:error] [pid 25495:tid 25495] [client 162.158.94.174:12490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnandramonadunn.com"] [uri "/.git/config"] [unique_id "aeyAJWy5g7Tioa5-c3yH1wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-09 20:26:58
(3 months ago)
Web Probe / Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 05:53:15
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 01:53:08.112603 2026] [security2:error] [pid 27773:tid 27773] [client 162.158.94.174:11859] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.americanureport.com"] [uri "/.env.test"] [unique_id "adCnRGNWG85PQB0pXOPB4gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Nightreaver
2026-04-03 18:06:17
(3 months ago)
162.158.94.174 - - [03/Apr/2026:20:06:15 0200] "GET /.env.old HTTP/1.1" 404 495 "-" "-"
162.158.94. ...
show more
162.158.94.174 - - [03/Apr/2026:20:06:15 0200] "GET /.env.old HTTP/1.1" 404 495 "-" "-"
162.158.94.174 - - [03/Apr/2026:20:06:16 0200] "GET /.env.production.local HTTP/1.1" 404 495 "-" "-"
162.158.94.174 - - [03/Apr/2026:20:06:16 0200] "GET /.env.development.local HTTP/1.1" 404 495 "-" "-"
162.158.94.174 - - [03/Apr/2026:20:06:17 0200] "GET /public/.env HTTP/1.1" 404 495 "-" "-"
162.158.94.174 - - [03/Apr/2026:20:06:17 0200] "GET /private/.env HTTP/1.1" 404 495 "-" "-"[...]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-03 05:06:05
(3 months ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 01:18:05
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 21:17:56.463378 2026] [security2:error] [pid 17364:tid 17364] [client 162.158.94.174:13511] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ageh.com"] [uri "/.git/index"] [unique_id "ac8VRIt9Fgwm9ek1LT02gQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Dunham Support
2026-04-01 10:08:48
(3 months ago)
(mod_security) mod_security triggered on hostname [redacted] 162.158.94.174 (US/United States/-)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-04-01 04:11:00
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 00:10:54.428197 2026] [security2:error] [pid 28021:tid 28021] [client 162.158.94.174:13759] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.beebesties.com"] [uri "/.git/index"] [unique_id "acyazpqJjePilgoZ6-GcpgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 12:04:02
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.174 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 08:03:56.452788 2026] [security2:error] [pid 9453:tid 9479] [client 162.158.94.174:13891] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kylight.com"] [uri "/.env.php"] [unique_id "acu4LEy1u584rK48ZZLC4wAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kivitendo.de
2026-03-31 03:32:40
(3 months ago)
[Tue Mar 31 05:32:50.975669 2026] [access_compat:error] [pid 235963:tid 236005] [client 162.158.94.1 ...
show more
[Tue Mar 31 05:32:50.975669 2026] [access_compat:error] [pid 235963:tid 236005] [client 162.158.94.174:14324] AH01797: client denied by server configuration: /var/www/kivitendo-erp/.git/HEAD
[Tue Mar 31 05:32:51.081203 2026] [access_compat:error] [pid 235963:tid 236002] [client 162.158.94.174:14324] AH01797: client denied by server configuration: /var/www/kivitendo-erp/.git/config
...
show less
Brute-Force
Web App Attack