๐ช๐ธ
Gem
2026-03-06 23:11:33
(4 months ago)
Unauthorized web scan.
Web App Attack
๐จ๐ญ
zynex
2026-03-05 21:12:59
(4 months ago)
URL Probing: /.env
Web App Attack
๐ฉ๐ฐ
RhQM
2026-03-05 19:25:08
(4 months ago)
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
r3versedk
2026-03-05 19:18:08
(4 months ago)
๐ก๏ธ Automated Threat Report from maxjensen.dk
๐ฏ Attack Type: Botnet Fingerprint
๐จ Severity: CRITICAL ...
show more
๐ก๏ธ Automated Threat Report from maxjensen.dk
๐ฏ Attack Type: Botnet Fingerprint
๐จ Severity: CRITICAL
๐ Threat Score: 95/100
๐ Total Attacks: 378 (database verified, seen over today)
๐ Peak Score: 95/100
๐ฏ Common Types: Botnet Fingerprint(1x)
๐ Fingerprint: 9f96b00ce11bc787
๐ค AI/ML: ๐ค Multi-Model Consensus (neural-network, q-learning, gpt) - ๐ง NN (55%): block (99.8%) | ๐ฎ QL (23%): block (75.0%) | ๐ค Claude (23%): monitor (70.0%) | โ๏ธ dynamic+boosted weights...
Detected: 2026-03-05T19:18:08.507Z
show less
Bad Web Bot
Anonymous
2026-03-05 19:05:13
(4 months ago)
Blocked: Reason='Suspicious traffic score=60 (review-based detection)'; Requests=4
Hacking
Anonymous
2026-03-05 18:58:38
(4 months ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 06:26:47
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 01:26:39.535600 2026] [security2:error] [pid 31372:tid 31372] [client 116.196.93.138:64283] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oposicionesyconcursos.es"] [uri "/.env"] [unique_id "aakiH7dBoYC5EZWd0B8ayQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 06:10:36
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 01:10:30.002718 2026] [security2:error] [pid 22018:tid 22018] [client 116.196.93.138:52604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aycart.es"] [uri "/.env"] [unique_id "aakeVpxM9CR75JykVi9bgAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 05:18:39
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 00:18:32.795701 2026] [security2:error] [pid 25304:tid 25304] [client 116.196.93.138:54893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "miroconsulting.es"] [uri "/.env"] [unique_id "aakSKIUYk_014jZkPmBKlwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 04:58:35
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 04 23:58:29.353211 2026] [security2:error] [pid 14692:tid 14692] [client 116.196.93.138:61682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xarq.es"] [uri "/.env"] [unique_id "aakNdZge1VY2G3JGkLVIqwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
teamsecure
2026-03-05 04:58:05
(4 months ago)
Banned for trying to access env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 04:37:07
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 04 23:37:02.216486 2026] [security2:error] [pid 25539:tid 25539] [client 116.196.93.138:61414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "intra.es"] [uri "/.env"] [unique_id "aakIbpB8skWMjiKb99OYlgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 03:21:19
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 116.196.93.138 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 04 22:21:14.043519 2026] [security2:error] [pid 2572:tid 2595] [client 116.196.93.138:55105] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nesso.es"] [uri "/.env"] [unique_id "aaj2qj22M2PhHUKiKBjykAAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2026-03-05 03:19:56
(4 months ago)
Restricted File Access Attempt. Matched phrase "/.env" at REQUEST_FILENAME. (930130-122)
Hacking
Web App Attack
๐ฉ๐ช
sdos.es
2026-03-05 02:49:49
(4 months ago)
"Restricted File Access Attempt - Matched Data: /.env found within REQUEST_FILENAME: /.env"
Web App Attack