๐ง๐ท
diego
2026-07-23 06:20:44
(20 hours ago)
[probe-68-69] 2026-07-23 06:02:56, Client: 195.177.94.154, Protocol: 6, Unauthorized activity to HTT ...
show more
[probe-68-69] 2026-07-23 06:02:56, Client: 195.177.94.154, Protocol: 6, Unauthorized activity to HTTP: GET /.env
show less
Web App Attack
๐ง๐ท
Halux
2026-07-23 06:04:07
(20 hours ago)
195.177.94.154 Probing protected path or service
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-07-23 02:16:39
(1 day ago)
CMS/framework probe: 195.177.94.154 - - [23/Jul/2026:04:16:39 +0200] "GET /.env HTTP/1.1" 301 178 "- ...
show more
CMS/framework probe: 195.177.94.154 - - [23/Jul/2026:04:16:39 +0200] "GET /.env HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30" asn=214961 org="Stellar Group SAS" country=FR
...
show less
Web App Attack
๐ณ๐ฑ
VMHeaven.io
2026-07-23 00:17:52
(1 day ago)
Blocked by UFW [80/tcp]
Source port: 56376
TTL: 122
Packet length: 52
Port Scan
Web App Attack
๐ฆ๐น
centurion
2026-07-22 14:45:19
(1 day ago)
Blocked by UFW on ns03 [80/tcp] Source port: 61726 TTL: 114 Packet length: 52 TOS: 0x02 This report ...
show more
Blocked by UFW on ns03 [80/tcp] Source port: 61726 TTL: 114 Packet length: 52 TOS: 0x02 This report was generated by: https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
๐ฉ๐ช
check-the-sum.fr
2026-06-28 00:18:22
(3 weeks ago)
Port Scanning
Port Scan
๐ณ๐ฑ
Cloud86 B.V.
2026-06-24 02:13:06
(1 month ago)
categories: Email Spam
Email Spam
๐ฉ๐ช
ISPLtd
2025-08-10 18:11:49
(11 months ago)
Aug 10 15:11:39 SRC=195.177.94.154 PROTO=TCP SPT=80 DPT=80 SYN
Aug 10 15:11:41 SRC=195.177.94.154 PR ...
show more
Aug 10 15:11:39 SRC=195.177.94.154 PROTO=TCP SPT=80 DPT=80 SYN
Aug 10 15:11:41 SRC=195.177.94.154 PROTO=TCP SPT=80 DPT=443 SYN
Aug 10 15:11:44 SRC=195.177.94.154 PROTO=TCP SPT=80 DPT=80 SYN
Aug 10
...
show less
DDoS Attack
๐จ๐ฆ
JuicyJ
2025-01-27 16:18:57
(1 year ago)
Excessive crawling/scraping
Web App Attack
๐ธ๐ช
Per-Erik Runebert
2025-01-27 09:39:15
(1 year ago)
Excessive unauthorized requests
Hacking
๐ซ๐ฎ
tjs
2025-01-26 23:25:00
(1 year ago)
web attack, SQL injection attempt
Hacking
SQL Injection
Web App Attack
๐ณ๐ฑ
exxos
2025-01-26 11:30:57
(1 year ago)
404 ddos attacks
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-01-26 06:15:45
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 195.177.94.154 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 195.177.94.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 26 01:15:37.783913 2025] [security2:error] [pid 458943:tid 458943] [client 195.177.94.154:56344] [client 195.177.94.154] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||killeramps.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "killeramps.com"] [uri "/g12terms.php"] [unique_id "Z5XTCXQCFqlQXJngWXTw5AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-26 05:33:39
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 195.177.94.154 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 195.177.94.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 26 00:33:34.378262 2025] [security2:error] [pid 5407:tid 5407] [client 195.177.94.154:56036] [client 195.177.94.154] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||stragar.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "stragar.com"] [uri "/index.php"] [unique_id "Z5XJLml8_92ed6cbJGuiZAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-26 05:05:35
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 195.177.94.154 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 195.177.94.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 26 00:05:28.846351 2025] [security2:error] [pid 18661:tid 18661] [client 195.177.94.154:56769] [client 195.177.94.154] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.spores101.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.spores101.com"] [uri "/"] [unique_id "Z5XCmOGD0Uct28TGE4AeOAAAAAM"], referer: http://www.psilosophy.info/banner.php?nrb=6
show less
Brute-Force
Bad Web Bot
Web App Attack