๐บ๐ธ
mnsf
2026-06-11 14:05:17
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
wimaxnz
2026-05-14 08:08:01
(1 month ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-02 14:37:37
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 02 10:37:29.701313 2026] [security2:error] [pid 22786:tid 22786] [client 162.158.94.205:12655] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mijn-pedicure.nl"] [uri "/.git/config"] [unique_id "afYMKRB6I07pSx-aXztvrAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 12:16:55
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 08:16:51.617750 2026] [security2:error] [pid 16514:tid 16514] [client 162.158.94.205:13464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autumn-kennedy.com"] [uri "/.git/config"] [unique_id "aeoNs-E-H69iNalpevdEDwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
omartin
2026-04-17 20:30:28
(2 months ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 05:57:39
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 01:57:34.331289 2026] [security2:error] [pid 14827:tid 14827] [client 162.158.94.205:13563] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.quincysheetmetal.com"] [uri "/.git/HEAD"] [unique_id "adCoTo4F4X_r1HTP3E-ccAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 01:32:56
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 21:32:50.793116 2026] [security2:error] [pid 3759:tid 3759] [client 162.158.94.205:9220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cageliners.net"] [uri "/.env.prod"] [unique_id "adBqQgfeUP_F6EDdCwwumQAAADo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-03 23:06:43
(2 months ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 21:26:49
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 17:26:42.783336 2026] [security2:error] [pid 8961:tid 8977] [client 162.158.94.205:12535] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.exedesalesteam.com"] [uri "/.env"] [unique_id "adAwkgFJl17ygBJTHRhY_QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
breubit
2026-04-03 06:01:45
(2 months ago)
162.158.94.205 - - [03/Apr/2026:08:01:44 +0200] "GET /.env.save HTTP/1.1" 404 3093 "-" "-"
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 03:57:44
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 23:57:37.293667 2026] [security2:error] [pid 20725:tid 20725] [client 162.158.94.205:14154] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.asociacionmutualsanjose.com"] [uri "/.git/HEAD"] [unique_id "ac86scCykPdSTOtxAaoQHgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 08:31:13
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 04:31:08.879427 2026] [security2:error] [pid 12670:tid 12670] [client 162.158.94.205:14233] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tiley.net"] [uri "/.env.local"] [unique_id "acuGTNjNerDfUM5VlBRrNQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-03-31 02:20:43
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-195)
Hacking
๐บ๐ฆ
URAN Publishing Service
2026-03-30 22:59:41
(2 months ago)
162.158.94.205 - - [31/Mar/2026:01:59:31 +0300] "GET /site/.env HTTP/1.1" 404 352 "-" "-"
162.158.94 ...
show more
162.158.94.205 - - [31/Mar/2026:01:59:31 +0300] "GET /site/.env HTTP/1.1" 404 352 "-" "-"
162.158.94.205 - - [31/Mar/2026:01:59:41 +0300] "GET /server/.env HTTP/1.1" 404 331 "-" "-"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 16:16:46
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 12:16:32.897499 2026] [security2:error] [pid 6324:tid 6324] [client 162.158.94.205:12314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "houston-church-of-god.org"] [uri "/.git/logs/HEAD"] [unique_id "acqh4NmI9bDOym1u8cy69QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack