๐ง๐ท
maviei
2026-06-15 18:16:09
(3 days ago)
2026-06-15T15:16:06.659496-03:00 srv1251771 kernel: [1314195.985664] [UFW BLOCK] IN=eth0 OUT= MAC=40 ...
show more
2026-06-15T15:16:06.659496-03:00 srv1251771 kernel: [1314195.985664] [UFW BLOCK] IN=eth0 OUT= MAC=40:e8:d4:b8:29:bb:44:38:39:ff:ff:41:08:00 SRC=172.70.240.178 DST=72.61.36.27 LEN=60 TOS=0x00 PREC=0x00 TTL=47 ID=53786 DF PROTO=TCP SPT=9933 DPT=8443 WINDOW=65535 RES=0x00 SYN URGP=0
2026-06-15T15:16:07.714551-03:00 srv1251771 kernel: [1314197.041744] [UFW BLOCK] IN=eth0 OUT= MAC=40:e8:d4:b8:29:bb:44:38:39:ff:ff:41:08:00 SRC=172.70.240.178 DST=72.61.36.27 LEN=60 TOS=0x00 PREC=0x00 TTL=47 ID=53787 DF PROTO=TCP SPT=9933 DPT=8443 WINDOW=65535 RES=0x00 SYN URGP=0
2026-06-15T15:16:08.738412-03:00 srv1251771 kernel: [1314198.065760] [UFW BLOCK] IN=eth0 OUT= MAC=40:e8:d4:b8:29:bb:44:38:39:ff:ff:41:08:00 SRC=172.70.240.178 DST=72.61.36.27 LEN=60 TOS=0x00 PREC=0x00 TTL=47 ID=53788 DF PROTO=TCP SPT=9933 DPT=8443 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ฒ๐ฝ
octageeks.com
2026-06-10 04:34:18
(1 week ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 20:32:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 16:32:49.636010 2026] [security2:error] [pid 25592:tid 25592] [client 172.70.240.178:12469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.angove.biz"] [uri "/.git/config"] [unique_id "aiXVccaxZbJ98lWMzIG0pwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
INTEQ
2026-06-07 18:23:19
(1 week ago)
Web attack from 172.70.240.178
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 22:53:51
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 18:53:46.607191 2026] [security2:error] [pid 32649:tid 32649] [client 172.70.240.178:10731] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.isyourcompanysafe.com"] [uri "/.git/config"] [unique_id "aiSk-gsSX89DnVf_PQPX0wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 10:09:26
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 06:09:20.395733 2026] [security2:error] [pid 13261:tid 13261] [client 172.70.240.178:9908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "canarysuites.com"] [uri "/.git/config"] [unique_id "ah6r0MzeDo__WPKD_xFOmgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 07:05:24
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-30 08:54:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 04:54:21.489707 2026] [security2:error] [pid 18096:tid 18096] [client 172.70.240.178:9902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.rdj.us"] [uri "/.env.development.local"] [unique_id "ahqlvcHAd7FezwcFbFp-NQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 14:18:48
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 10:18:42.970566 2026] [security2:error] [pid 19778:tid 19778] [client 172.70.240.178:11906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "odinscelestialtrust.org"] [uri "/.git/config"] [unique_id "ahmgQvmHSsk8p0J6qr64NQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 18:55:52
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.70.240.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 14:55:44.036203 2026] [security2:error] [pid 2570:tid 2570] [client 172.70.240.178:11977] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.rentadeandamioscdmx.com.spyasociados.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.rentadeandamioscdmx.com.spyasociados.com"] [uri "/backup.sql"] [unique_id "ahc-MJQ9RiEpEy9Tkd3HpwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Duggy_Tuxy๐งฑ
2026-05-23 09:09:25
(3 weeks ago)
[SW01-SRV01-DE] Blocked by SysWarden Firewall (Web Attack)
Hacking
Port Scan
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-05-22 08:50:21
(4 weeks ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
trentwiles.com
2026-05-18 15:07:32
(1 month ago)
Unauthorized connection attempt detected from IP address 172.70.240.178 to port 443 [SYD]
Port Scan
๐ฆ๐บ
trentwiles.com
2026-05-13 19:50:32
(1 month ago)
Unauthorized connection attempt detected from IP address 172.70.240.178 to port 80 [SYD]
Port Scan
๐ฆ๐บ
trentwiles.com
2026-05-11 00:14:57
(1 month ago)
Unauthorized connection attempt detected from IP address 172.70.240.178 to port 443 [SYD]
Port Scan