๐ฉ๐ช
LRob
2026-09-16 02:02:49
(9 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.env | 2026-09-16 02:02 UTC
show less
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-09-16 01:54:23
(9 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:37:21
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.198.84.40 (40.84.198.104.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.84.40 (40.84.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:37:15.974475 2026] [security2:error] [pid 24188:tid 24317] [client 104.198.84.40:52874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "malvadocuaderno.com"] [uri "/.env"] [unique_id "aqnku6kbounfB1-xo4oFBwAAANc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 00:25:02
(11 hours ago)
crowdsecurity/CVE-2017-9841
Brute-Force
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-15 22:14:22
(13 hours ago)
Brute-Force
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-09-15 19:46:23
(15 hours ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/40.84.198.104.bc.googleuserconten ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/40.84.198.104.bc.googleusercontent.com
show less
Web App Attack
๐ฉ๐ช
svr
2026-09-15 19:37:48
(16 hours ago)
Abusive Automated Web Scanner
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 15:24:52
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.198.84.40 (40.84.198.104.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.84.40 (40.84.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 11:24:48.221561 2026] [security2:error] [pid 9629:tid 9629] [client 104.198.84.40:32936] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cypro.com"] [uri "/.env"] [unique_id "aqljQJmmrcs7l59oXd4bhgAAAA0"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-15 13:05:27
(22 hours ago)
Abuse Detected (11)
Brute-Force
Web App Attack
๐ฉ๐ช
macrob
2026-09-15 10:56:10
(1 day ago)
2026/09/15 10:56:08 [error] 2265631#2265631: *752016 access forbidden by rule, client: 104.198.84.40 ...
show more
2026/09/15 10:56:08 [error] 2265631#2265631: *752016 access forbidden by rule, client: 104.198.84.40, server: cityslo.org, request: "GET /.env HTTP/2.0", host: "cityslo.org", referrer: "https://www.google.com/"
2026/09/15 10:56:09 [error] 2265631#2265631: *752016 access forbidden by rule, client: 104.198.84.40, server: cityslo.org, request: "GET /.remote HTTP/2.0", host: "cityslo.org", referrer: "https://www.google.com/"
2026/09/15 10:56:09 [error] 2265631#2265631: *752070 access forbidden by rule, client: 104.198.84.40, server: cityslo.org, request: "GET /.local HTTP/2.0", host: "cityslo.org", referrer: "https://www.google.com/"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:30:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.198.84.40 (40.84.198.104.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.84.40 (40.84.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:30:48.469946 2026] [security2:error] [pid 25100:tid 25222] [client 104.198.84.40:42082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cityofmiddleton.org"] [uri "/.env"] [unique_id "aqkeWFyipBGeV6CMjvrB8AAAAEM"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-09-15 09:01:54
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
Anonymous
2026-09-15 05:00:52
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking