🇺🇸
Rocky Mountain Bioengineering Symposium
2026-09-03 11:48:41
(4 days ago)
[Thu Sep 03 05:48:40.391661 2026] [authz_core:error] [pid 169465:tid 140669741938240] [client 104.28 ...
show more
[Thu Sep 03 05:48:40.391661 2026] [authz_core:error] [pid 169465:tid 140669741938240] [client 104.28.169.137:49388] AH01630: client denied by server configuration: /var/www/public_html/www/database.sql
[Thu Sep 03 05:48:40.915739 2026] [authz_core:error] [pid 169465:tid 140667678316096] [client 104.28.169.137:49396] AH01630: client denied by server configuration: /var/www/public_html/www/db.sql
[Thu Sep 03 05:48:41.347377 2026] [authz_core:error] [pid 169069:tid 140669188281920] [client 104.28.169.137:43995] AH01630: client denied by server configuration: /var/www/public_html/www/data.sql
...
show less
Bad Web Bot
🇺🇸
Rayulcifer
2026-09-03 08:13:19
(4 days ago)
104.28.169.137 - - [03/Sep/2026:03:13:18 -0500] "GET /.env.bak HTTP/1.1" 403 6766 "-" "Mozilla/5.0 ( ...
show more
104.28.169.137 - - [03/Sep/2026:03:13:18 -0500] "GET /.env.bak HTTP/1.1" 403 6766 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
...
show less
Open Proxy
Port Scan
Hacking
Web App Attack
SSH
🇩🇪
FeG Deutschland
2026-09-03 05:32:12
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
Anonymous
2026-09-02 12:27:51
(5 days ago)
apache vulnerability scan
Web App Attack
🇳🇱
e.fierstra
2026-09-01 11:22:24
(6 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
IndigoRidge
2026-09-01 09:59:32
(6 days ago)
104.28.169.137 - - [01/Sep/2026:05:59:27 -0400] "GET /.git/HEAD HTTP/1.0" 404 33522 "-" "Mozilla/5.0 ...
show more
104.28.169.137 - - [01/Sep/2026:05:59:27 -0400] "GET /.git/HEAD HTTP/1.0" 404 33522 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
104.28.169.137 - - [01/Sep/2026:05:59:29 -0400] "GET /.svn/entries HTTP/1.0" 404 33522 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
104.28.169.137 - - [01/Sep/2026:05:59:30 -0400] "GET /.hg/requires HTTP/1.0" 404 33522 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
104.28.169.137 - - [01/Sep/2026:05:59:31 -0400] "GET /.env HTTP/1.0" 404 33522 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
104.28.169.137 - - [01/Sep/2026:05:59:32 -0400] "GET /backup.sql HTTP/1.0" 404 33522 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
...
show less
Web App Attack
🇺🇸
IndigoRidge
2026-09-01 00:11:24
(1 week ago)
104.28.169.137 - - [31/Aug/2026:20:11:08 -0400] "GET /dump.sql HTTP/1.0" 404 70346 "-" "Mozilla/5.0 ...
show more
104.28.169.137 - - [31/Aug/2026:20:11:08 -0400] "GET /dump.sql HTTP/1.0" 404 70346 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
104.28.169.137 - - [31/Aug/2026:20:11:10 -0400] "GET /phpinfo.php HTTP/1.0" 404 70346 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
104.28.169.137 - - [31/Aug/2026:20:11:23 -0400] "GET /composer.lock HTTP/1.0" 404 70346 "-" "Mozilla/5.0 (compatible; SiteSafetyInventory/4.0; +responsible-disclosure)"
...
show less
Web App Attack
🇦🇺
paulshipley.com.au
2026-08-31 12:04:43
(1 week ago)
[Mon Aug 31 22:04:42.704335 2026] [security2:error] [pid 109097] [client 104.28.169.137:44680] [clie ...
show more
[Mon Aug 31 22:04:42.704335 2026] [security2:error] [pid 109097] [client 104.28.169.137:44680] [client 104.28.169.137] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "stkildashule.org.au"] [uri "/.svn/entries"] [unique_id "apVt2mi9A0DyUslDw5O19gAAAAo"]
...
show less
Web App Attack
🇬🇧
Mendip_Defender
2026-08-31 09:44:02
(1 week ago)
[31/Aug/2026:10:44:12.435343 +0100] apVM7GWcD43Zkioxxv-0NAAAAEU 104.28.169.137 33610 188.246.206.60 ...
show more
[31/Aug/2026:10:44:12.435343 +0100] apVM7GWcD43Zkioxxv-0NAAAAEU 104.28.169.137 33610 188.246.206.60 7081
[31/Aug/2026:10:44:13.325099 +0100] apVM7WWcD43Zkioxxv-0NQAAAFA 104.28.169.137 33626 188.246.206.60 7081
...
show less
Brute-Force
🇩🇪
anycast_ac
2026-07-19 16:24:16
(1 month ago)
[DDoS Attacker] This IP was attacking website anycast.ac and sent 6 requests on port 443
DDoS Attack
Web App Attack