π©πͺ
acadeova
2026-06-14 03:10:19
(1 week ago)
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(jour ...
show more
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
πΊπΈ
mnsf
2026-06-06 13:05:06
(2 weeks ago)
Abuse Detected (2)
Brute-Force
Web App Attack
π©πͺ
acadeova
2026-06-05 02:10:01
(2 weeks ago)
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(jour ...
show more
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
πΊπΈ
TPI-Abuse
2026-05-15 07:31:05
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 03:30:55.835107 2026] [security2:error] [pid 15396:tid 15396] [client 172.71.194.184:13784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "4dbm.com"] [uri "/.env.development"] [unique_id "agbLrzBZiSjb1mTl3hOKaAAAACE"], referer: https://www.google.com/search?q=4dbm.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
acadeova
2026-04-27 00:55:18
(1 month ago)
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(jour ...
show more
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
π©πͺ
acadeova
2026-04-18 18:31:44
(2 months ago)
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(jour ...
show more
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
π©πͺ
acadeova
2026-04-05 21:43:18
(2 months ago)
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(jour ...
show more
π¨ Recon detected (nft drop)
SRC=172.71.194.184
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
πΊπΈ
mnsf
2026-03-31 03:05:40
(2 months ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-27 15:14:10
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 11:13:35.961655 2026] [security2:error] [pid 5683:tid 5683] [client 172.71.194.184:9261] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pathpointexec.com.pathpointservices.com"] [uri "/.env.production.bak"] [unique_id "acaenyEdvn6Atu_kpM3iAgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-27 13:46:17
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 09:46:12.083433 2026] [security2:error] [pid 19759:tid 19759] [client 172.71.194.184:13510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.scr-publications.com"] [uri "/.env.orig"] [unique_id "acaKJJCMV5z4_FciZQV7hQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-27 11:07:11
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 07:06:50.209918 2026] [security2:error] [pid 32081:tid 32081] [client 172.71.194.184:10780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.lakewoodranchhairsalon.com"] [uri "/.env_config"] [unique_id "acZkyoXzLixcJC8LhieIIwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-25 14:47:14
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 10:47:08.958626 2026] [security2:error] [pid 15124:tid 15139] [client 172.71.194.184:11509] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "globalpartssolution.com"] [uri "/.env.production"] [unique_id "acP1bIE2GHb98FgqhcdLbwAAAMw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-25 05:00:06
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 00:59:57.089115 2026] [security2:error] [pid 5166:tid 5166] [client 172.71.194.184:11456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.texaslawman.net"] [uri "/backend/.env"] [unique_id "acNrzUOSPHfje_FxtMPAcQAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-24 23:28:32
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 19:28:22.733947 2026] [security2:error] [pid 19124:tid 19124] [client 172.71.194.184:10275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.apropa.org.sislau.net"] [uri "/config/.env"] [unique_id "acMeFpxiB31Itc9rmqGuOAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-24 15:17:58
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 11:17:39.030030 2026] [security2:error] [pid 28758:tid 28758] [client 172.71.194.184:12620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bgellis.com"] [uri "/.env.development"] [unique_id "acKrE6nTsEZ2zZqDRogQfAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack