πΊπΈ
mailsec.ca
2026-03-05 18:57:11
(6 months ago)
Phishing. Domain impersonation.
Phishing
πΊπΈ
mailsec.ca
2026-01-10 21:28:01
(8 months ago)
Phishing. Domain impersonation.
Phishing
π¨π¦
Vanyel Ashkevron
2026-01-07 23:46:00
(8 months ago)
Multiple fraud emails received; spoofed DMARC, failed SPF, and DKIM signing.
Phishing
Email Spam
Spoofing
πΈπ¬
ngkmeng
2025-10-17 07:34:00
(11 months ago)
Subject Action Required: Employee Pay Raise and Strategic Organizational Restructuring ID-OcuG4uShH ...
show more
Subject Action Required: Employee Pay Raise and Strategic Organizational Restructuring ID-OcuG4uShHwdxqHFuLk4b
Message Id <4caf9520-35c3-4aef-9e40-c5b79d0f9220@MN1PEPF0000F0E0.namprd04.prod.outlook.com>
Creation time Thu, 16 Oct 2025 20:17:33 +0000 (Delivered after 6 seconds)
From Workforce <[email protected] >
show less
Phishing
Email Spam
Spoofing
πΊπΈ
IT Office
2025-09-11 15:08:00
(1 year ago)
Email Spoofing
Email Spam
Hacking
Spoofing
πΊπΈ
TPI-Abuse
2025-04-05 00:35:41
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 20:35:36.277962 2025] [security2:error] [pid 7821:tid 7821] [client 51.79.209.15:53907] [client 51.79.209.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.179"] [uri "/.env"] [unique_id "Z_B62KxbUmPoSO_PTZNvCgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-04 22:24:05
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 18:24:01.571832 2025] [security2:error] [pid 1652323:tid 1652323] [client 51.79.209.15:52038] [client 51.79.209.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.229"] [uri "/.env"] [unique_id "Z_BcATL2JYEVDPSnVH9zSwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-04 22:08:41
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 18:08:35.444708 2025] [security2:error] [pid 1988626:tid 1988626] [client 51.79.209.15:63244] [client 51.79.209.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.25"] [uri "/.env"] [unique_id "Z_BYY3EK3jRGqK2o3pb6sQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π±
ifiguero
2025-04-04 21:39:32
(1 year ago)
Web Attack (\x00\x00\x00\x00\x00). 7d ban
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-04 21:39:00
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 17:38:55.684959 2025] [security2:error] [pid 26393:tid 26393] [client 51.79.209.15:50301] [client 51.79.209.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.71"] [uri "/.env"] [unique_id "Z_BRb3RGkMDRRt64SbLZ4wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-04 21:23:41
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 17:23:36.474232 2025] [security2:error] [pid 1554573:tid 1554573] [client 51.79.209.15:59758] [client 51.79.209.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.227"] [uri "/.env"] [unique_id "Z_BN2FTQV1JaHxRE1z6yQwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-04 21:07:10
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 17:07:03.849579 2025] [security2:error] [pid 23331:tid 23331] [client 51.79.209.15:50953] [client 51.79.209.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.103"] [uri "/.env"] [unique_id "Z_BJ94OXWVp0pGQyv3K3LAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-04-04 18:47:38
(1 year ago)
51.79.209.15 - - [04/Apr/2025:20:47:37 +0200] "GET / HTTP/1.1" 403 400 "-" "python-requests/2.31.0"
...
show more
51.79.209.15 - - [04/Apr/2025:20:47:37 +0200] "GET / HTTP/1.1" 403 400 "-" "python-requests/2.31.0"
...
show less
Web App Attack
Anonymous
2025-04-04 15:22:42
(1 year ago)
51.79.209.15 - - [04/Apr/2025:17:22:41 +0200] "GET / HTTP/1.1" 402 3396 "-" "python-requests/2.31.0" ...
show more
51.79.209.15 - - [04/Apr/2025:17:22:41 +0200] "GET / HTTP/1.1" 402 3396 "-" "python-requests/2.31.0" ...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-04 15:03:21
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 51.79.209.15 (ip15.ip-51-79-209.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 11:03:14.760882 2025] [security2:error] [pid 10149:tid 10163] [client 51.79.209.15:57712] [client 51.79.209.15] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.123"] [uri "/.env"] [unique_id "Z-_0siKUywJLb0KuIEoflgAAAEU"]
show less
Brute-Force
Bad Web Bot
Web App Attack