๐ฉ๐ช
acadeova
2026-06-06 22:31:55
(1 day ago)
๐จ Recon detected (nft drop)
SRC=162.158.94.42
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.94.42
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฉ๐ช
acadeova
2026-06-03 02:12:56
(5 days ago)
๐จ Recon detected (nft drop)
SRC=162.158.94.42
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.94.42
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
mnsf
2026-06-03 00:05:15
(5 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 15:29:03
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:28:57.738870 2026] [security2:error] [pid 27127:tid 27127] [client 162.158.94.42:10535] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harintonmechanical.com"] [uri "/.git/config"] [unique_id "ah72uU54rHTkRZcJL2_zbQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-05-25 08:33:30
(1 week ago)
๐จ Recon detected (nft drop)
SRC=162.158.94.42
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.94.42
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-20 08:18:28
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 04:18:22.081828 2026] [security2:error] [pid 31597:tid 31597] [client 162.158.94.42:10077] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "genevaatlantic.com"] [uri "/.git/config"] [unique_id "ag1uTiRv9KOyUP6EsUwwkQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 06:45:10
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 02:45:04.044771 2026] [security2:error] [pid 26735:tid 26735] [client 162.158.94.42:10514] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "texasfurnitureinc.com"] [uri "/.env.production"] [unique_id "agbA8M9QbKZrUL_gZ1ZmQAAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mivanovs
2026-05-10 12:59:23
(4 weeks ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack
๐บ๐ธ
WellSpring
2026-05-08 18:59:27
(4 weeks ago)
wordpress scan on officialcovenant.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI secur ...
show more
wordpress scan on officialcovenant.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mivanovs
2026-05-06 13:30:23
(1 month ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack
๐ง๐ช
voormedia
2026-05-05 19:27:56
(1 month ago)
Accessed trap at '/.env'
Web App Attack
๐บ๐ธ
mivanovs
2026-05-05 08:37:55
(1 month ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 08:10:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 04:10:44.473062 2026] [security2:error] [pid 12011:tid 12011] [client 162.158.94.42:10744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.laurenandfrank.com"] [uri "/.git/config"] [unique_id "afMOhOGiWAbzbdosZ6MJGwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
walnuts
2026-04-17 20:42:07
(1 month ago)
Automated: Triggered nginx security jail (nginx-444) - probing blocked paths on web server
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 01:23:03
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 21:22:58.151769 2026] [security2:error] [pid 21834:tid 21834] [client 162.158.94.42:10703] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.cozydesignae.com"] [uri "/.env.test"] [unique_id "adMK8prPJeqG40SwO76FcwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack