๐บ๐ธ
TPI-Abuse
2026-07-20 11:15:13
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 103.124.165.202 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 103.124.165.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 07:14:56.889954 2026] [security2:error] [pid 24251:tid 24251] [client 103.124.165.202:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rodrigoaldecoa.com"] [uri "/.env"] [unique_id "al4DMP-3dOnDpee3A_XcJAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-20 10:18:40
(4 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-07-20 00:51:24
(13 hours ago)
IP banned by Fail2Ban
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-07-19 21:42:05
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 103.124.165.202 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 103.124.165.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 17:42:00.088646 2026] [security2:error] [pid 28318:tid 28318] [client 103.124.165.202:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pixacast.com"] [uri "/.env"] [unique_id "al1EqDJKKFu1y8KLjADVewAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
wielorzeczownik
2026-07-19 20:33:00
(17 hours ago)
172.30.0.3 - - [19/Jul/2026:22:32:39 +0200] "GET /.env HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Macintosh ...
show more
172.30.0.3 - - [19/Jul/2026:22:32:39 +0200] "GET /.env HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" "103.124.165.202"
172.30.0.3 - - [19/Jul/2026:22:32:42 +0200] "GET /.env HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" "103.124.165.202"
172.30.0.3 - - [19/Jul/2026:22:32:50 +0200] "GET /furryunicorn.com/.env HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" "103.124.165.202"
172.30.0.3 - - [19/Jul/2026:22:32:53 +0200] "GET /furryunicorn.com/.env HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95
...
show less
Brute-Force
Web App Attack
๐ฆ๐บ
Anytech
2026-07-19 14:45:21
(23 hours ago)
Blocked by Conn-Monitor: http-form-spam
Web Spam
Blog Spam
Bad Web Bot
๐ซ๐ท
Catalin Negru
2026-07-19 08:32:50
(1 day ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐บ๐ธ
Mundo Bueno
2026-07-19 05:19:33
(1 day ago)
[ISILIA Protection v2.1] Tentative d'accรจs: /.env | Pays: AL | UA: Mozilla/5.0 (Macintosh; ...
show more
[ISILIA Protection v2.1] Tentative d'accรจs: /.env | Pays: AL | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML,
show less
Hacking
Web App Attack
Anonymous
2026-07-18 21:52:41
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 103.124.165.202 (AL/Albania/-)
SQL Injection
๐ฉ๐ช
netclix.gr
2026-07-18 21:31:11
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 103.124.165.202 (AL/Albania/-): (CF_EN ...
show more
(mod_security) mod_security triggered on hostname [redacted] 103.124.165.202 (AL/Albania/-): (CF_ENABLE)
show less
SQL Injection
๐ฎ๐น
VHosting
2026-07-18 20:45:05
(1 day ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-07-18 16:59:30
(1 day ago)
2026/07/18 17:59:22 [error] 2374#2374: *7580 access forbidden by rule, client: 103.124.165.202, serv ...
show more
2026/07/18 17:59:22 [error] 2374#2374: *7580 access forbidden by rule, client: 103.124.165.202, server: alzulej.pt, request: "GET /autodiscover.xml/.env HTTP/2.0", host: "alzulej.pt"
2026/07/18 17:59:25 [error] 2374#2374: *7580 access forbidden by rule, client: 103.124.165.202, server: alzulej.pt, request: "GET /autodiscover.xml/.env HTTP/2.0", host: "alzulej.pt"
2026/07/18 17:59:28 [error] 2374#2374: *7580 access forbidden by rule, client: 103.124.165.202, server: alzulej.pt, request: "GET /autodiscover.xml/autoconfig.alzulej.pt/.env HTTP/2.0", host: "alzulej.pt"
show less
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-07-18 16:22:23
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-07-18 13:11:03
(2 days ago)
2026/07/18 14:10:56 [error] 2483228#2483228: *2061531 access forbidden by rule, client: 103.124.165. ...
show more
2026/07/18 14:10:56 [error] 2483228#2483228: *2061531 access forbidden by rule, client: 103.124.165.202, server: alzulej.pt, request: "GET /roundcube/.env HTTP/2.0", host: "alzulej.pt"
2026/07/18 14:10:58 [error] 2483228#2483228: *2061531 access forbidden by rule, client: 103.124.165.202, server: alzulej.pt, request: "GET /roundcube/.env HTTP/2.0", host: "alzulej.pt"
2026/07/18 14:11:01 [error] 2483228#2483228: *2061531 access forbidden by rule, client: 103.124.165.202, server: alzulej.pt, request: "GET /roundcube/webmail.alzulej.pt/.env HTTP/2.0", host: "alzulej.pt"
show less
Brute-Force
Web App Attack
๐บ๐ธ
Matthew Ping
2026-07-18 12:15:01
(2 days ago)
ModSecurity rule 949110 triggered on dedicated4785. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking