๐ณ๐ฑ
homeshowdomain.nl
2026-09-01 21:59:16
(17 hours ago)
Auto-ban: >3000 req/min op 2026-09-01
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 13:57:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.110.48.45 (45.48.110.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.48.45 (45.48.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:57:47.024407 2026] [security2:error] [pid 7954:tid 7954] [client 136.110.48.45:49788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.travelswithfriends.com"] [uri "/wp-config.php~"] [unique_id "apbZ23tm4xYFrL_YhH7fsgAAAGk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2026-09-01 12:43:42
(1 day ago)
Suspicious malicious activity
Hacking
๐ซ๐ท
masterguru
2026-09-01 12:37:22
(1 day ago)
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .back/ .b ...
show more
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .back/ .backup/ .bak/ .bck/ .bk/ .bkp/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .cnf/ .com/ .compositefont/ .config/ .conf/ .copy/ .crt/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dist/ .dll/ .dos/ .dpkg-dist/ .drv/ .gadget/ .hta/ .htr/ .htw/ .ida/ .idc/ .idq/ .inc/ .inf/ .ini/ .jks/ .jse/ .key/ .licx/ .lnk/ .log/ .mdb/ .msc/ .ocx/ .old/ .pass/ .pdb/ .pfx/ .pif/ .pem/ .pol/ .prf/ .printer/ .pwd/ .rdb/ .rdp/ .reg/ .resources/ .resx/ .sav/ .save/ .scr/ .sct/ .sh/ .shs/ .sql/ .sqlite/ .sqlite3/ .swap/ .swo/ .swp/ .sys/ .temp/ .tfstate/ .tlb/ .tmp/ .vb/ .vbe/ .vbs/ .vbproj/ .vsdisco/ .vxd/ .webinfo/ .ws/ .wsc/ .wsf/ .wsh/ .xsd/ .xsx/" at TX:extension. (920440-193)
show less
Hacking
๐ฉ๐ช
Bedios GmbH
2026-09-01 12:15:40
(1 day ago)
Login credentials theft attempt
Hacking
Anonymous
2026-09-01 11:11:01
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-01 11:02:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.110.48.45 (45.48.110.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.48.45 (45.48.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:02:47.518008 2026] [security2:error] [pid 2721:tid 2721] [client 136.110.48.45:37058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.photokarine.com"] [uri "/.env.old"] [unique_id "apaw17RRUzO4Il99AT68jQAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 09:39:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.110.48.45 (45.48.110.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.48.45 (45.48.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:38:54.692280 2026] [security2:error] [pid 20082:tid 20152] [client 136.110.48.45:48988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smtp.absurdotron.com"] [uri "/.env"] [unique_id "apadLkzo3XFLOK5zIgB4NgAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-01 09:16:44
(1 day ago)
csagent: score 20.0: wp-config backup grab x2; 1 domain(s) in 0s
Web App Attack
๐ฉ๐ช
dom4k
2026-09-01 08:19:24
(1 day ago)
136.110.48.45 - - [01/Sep/2026:08:19:23 +0000] "GET /.env.dev HTTP/1.1" 444 0 "-" "crusader-worker/1 ...
show more
136.110.48.45 - - [01/Sep/2026:08:19:23 +0000] "GET /.env.dev HTTP/1.1" 444 0 "-" "crusader-worker/1.0"
...
show less
Web Spam
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 08:16:05
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-01 07:46:51
(1 day ago)
[01/Sep/2026:10:46:51 +0300] -- 136.110.48.45 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env ...
show more
[01/Sep/2026:10:46:51 +0300] -- 136.110.48.45 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.prod HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:50:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.110.48.45 (45.48.110.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.48.45 (45.48.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:50:09.138403 2026] [security2:error] [pid 10124:tid 10124] [client 136.110.48.45:52748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tigerchess.club"] [uri "/.env.dev"] [unique_id "apZ1oUgBXSgRXNOpboYvzwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-09-01 06:43:21
(1 day ago)
URL Probing: /wp-config.php.bak
Web App Attack
๐ธ๐ช
SkyDancer
2026-09-01 05:15:50
(1 day ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH