๐ณ๐ฑ
homeshowdomain.nl
2025-09-14 21:59:22
(11 months ago)
Auto-ban: >3000 req/min op 2025-09-14
Hacking
Web App Attack
SSH
๐จ๐ฆ
Mediashaker
2025-09-14 15:51:31
(11 months ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 13.38.14.132 (FR/France/ ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 13.38.14.132 (FR/France/ec2-13-38-14-132.eu-west-3.compute.amazonaws.com)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-09-14 15:39:13
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 11:39:06.782344 2025] [security2:error] [pid 20975:tid 20975] [client 13.38.14.132:40092] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weird.eco"] [uri "/.env"] [unique_id "aMbhmuQC-EHdghESgLvNaAAAAAk"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2025-09-14 15:23:14
(11 months ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-09-14 15:04:06
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 11:03:58.974513 2025] [security2:error] [pid 3751:tid 3751] [client 13.38.14.132:45544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weightlossover50.customdesignsbybjp.com"] [uri "/.env"] [unique_id "aMbZXrj7cqQMlFP1TIjeVQAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2025-09-14 14:31:15
(11 months ago)
2.191 requests with url.path *.env
Brute-Force
Bad Web Bot
๐ฉ๐ช
DocNetzwerk
2025-09-14 14:02:45
(11 months ago)
(mod_security) mod_security triggered on hostname [redacted] 13.38.14.132 (FR/France/ec2-13-38-14-13 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 13.38.14.132 (FR/France/ec2-13-38-14-132.eu-west-3.compute.amazonaws.com)
show less
SQL Injection
๐จ๐ญ
backslash
2025-09-14 14:00:32
(11 months ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
๐จ๐ญ
zynex
2025-09-14 13:39:55
(11 months ago)
URL Probing: /database/.env
Web App Attack
๐ฉ๐ช
AbuseBaer
2025-09-14 13:19:04
(11 months ago)
access attempt detected by IDS script (B)
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-14 12:40:28
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 08:40:22.502900 2025] [security2:error] [pid 27052:tid 27052] [client 13.38.14.132:50022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weedifyit.com"] [uri "/.env"] [unique_id "aMa3ttZz03rwnPMc5FDBhwAAAAo"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-14 09:07:47
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 05:07:42.694027 2025] [security2:error] [pid 2265:tid 2265] [client 13.38.14.132:46024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medics-group.com"] [uri "/.env"] [unique_id "aMaF3nxVmMbW94AG2xwQtQAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-14 08:05:25
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 04:05:18.507597 2025] [security2:error] [pid 19548:tid 19548] [client 13.38.14.132:50244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medicare.waggonerfinancial.com"] [uri "/.env"] [unique_id "aMZ3Pi65RVV7aZ5Wq8oTDAAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-09-14 07:51:36
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-09-14 07:09:27
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 13.38.14.132 (ec2-13-38-14-132.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 03:09:20.369103 2025] [security2:error] [pid 25593:tid 25593] [client 13.38.14.132:48610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medicalexchangeasinc.com"] [uri "/.env"] [unique_id "aMZqIPJ7QGAe7np1S8qVJAAAACA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack