Anonymous
2026-08-23 18:57:26
(3 days ago)
172.70.247.195 - - [23/Aug/2026:20:57:22 +0200] "GET /clque.php HTTP/1.1" 404 124 "-" "-"
172.70.247 ...
show more
172.70.247.195 - - [23/Aug/2026:20:57:22 +0200] "GET /clque.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:22 +0200] "GET /nano.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:23 +0200] "GET /bengi.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:23 +0200] "GET /gm.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:23 +0200] "GET /m.php?p= HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:23 +0200] "GET /packed.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:24 +0200] "GET /w.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:24 +0200] "GET /file15.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:24 +0200] "GET /f35.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:24 +0200] "GET /images.php HTTP/1.1" 404 124 "-" "-"
172.70.247.195 - - [23/Aug/2026:20:57:24 +0200] "GET /files.php/new.php HTTP/1.1" 404 124 "-" "-"
172.70.247
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-08-22 21:48:02
(4 days ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
acadeova
2026-08-09 11:50:29
(2 weeks ago)
๐จ Recon detected (nft drop)
SRC=172.70.247.195
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.70.247.195
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ง๐ช
madeit
2026-08-06 11:50:06
(2 weeks ago)
Web App Attack
๐ฉ๐ช
acadeova
2026-08-01 18:17:49
(3 weeks ago)
๐จ Recon detected (nft drop)
SRC=172.70.247.195
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.70.247.195
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฉ๐ช
acadeova
2026-07-31 08:28:08
(3 weeks ago)
๐จ Recon detected (nft drop)
SRC=172.70.247.195
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.70.247.195
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-15 07:01:29
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 03:00:28.321613 2026] [security2:error] [pid 32744:tid 32765] [client 172.70.247.195:10655] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oftv.hdtv55.com"] [uri "/.env.backup"] [unique_id "alcwDJHxa--pLUc9aYUofAAAANU"], referer: https://www.google.com/search?q=www.oftv.hdtv55.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
www.mammazone.it
2026-07-01 03:52:42
(1 month ago)
[Wed Jul 01 05:52:41.081403 2026] [proxy_fcgi:error] [pid 358986] [client 172.70.247.195:11859] AH01 ...
show more
[Wed Jul 01 05:52:41.081403 2026] [proxy_fcgi:error] [pid 358986] [client 172.70.247.195:11859] AH01071: Got error 'Primary script unknown'
[Wed Jul 01 05:52:41.864027 2026] [proxy_fcgi:error] [pid 358986] [client 172.70.247.195:11859] AH01071: Got error 'Primary script unknown'
...
show less
Hacking
๐ท๐บ
DZBOT
2026-06-30 16:12:17
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-06-26 21:15:28
(2 months ago)
Blocked by firewall on hugin [2087/tcp] | Rule: UFW | SPT: 13758 | TTL: 57 | LEN: 60 | TOS: 0x00 โข R ...
show more
Blocked by firewall on hugin [2087/tcp] | Rule: UFW | SPT: 13758 | TTL: 57 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฉ๐ช
Blexyel
2026-06-13 18:33:23
(2 months ago)
172.70.247.195 - - [13/Jun/2026:20:33:23 +0200] "GET /.git/info/grafts.bak HTTP/1.1" 404 153 "-" "Mo ...
show more
172.70.247.195 - - [13/Jun/2026:20:33:23 +0200] "GET /.git/info/grafts.bak HTTP/1.1" 404 153 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
๐ท๐บ
DZBOT
2026-05-23 14:00:27
(3 months ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-16 04:05:56
(3 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 05:20:59
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 01:20:45.525604 2026] [security2:error] [pid 18886:tid 18886] [client 172.70.247.195:11313] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "needtoorder.us"] [uri "/.env.backup"] [unique_id "af7ELVmLVd77kXP4wYB94QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 19:54:34
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.195 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 15:54:31.138213 2026] [security2:error] [pid 29722:tid 29722] [client 172.70.247.195:12539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.san-marino-marine-consulting.com"] [uri "/.git/config"] [unique_id "afOzdwUMu4Vn4D2-QwC06QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack