Anonymous
2026-10-10 19:35:03
(7 minutes ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
dot.mg
2026-10-10 19:35:03
(7 minutes ago)
Bad behaviour
Web Spam
๐บ๐ธ
Mundo Bueno
2026-10-10 19:27:06
(15 minutes ago)
[ISILIA Protection v2.3] Tentative d'accรจs: /@fs/src/.env [RATE LIMITED - 1800s quarantine] | Pays: ...
show more
[ISILIA Protection v2.3] Tentative d'accรจs: /@fs/src/.env [RATE LIMITED - 1800s quarantine] | Pays: JP | UA: Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 19:22:51
(20 minutes ago)
(mod_security) mod_security (id:210492) triggered by 136.110.78.216 (216.78.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.78.216 (216.78.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 15:22:44.096000 2026] [security2:error] [pid 20290:tid 20315] [client 136.110.78.216:57230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atdotorg.org"] [uri "/js../.env"] [unique_id "asqQhEpQFcWy7_3k0AZi9wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-10-10 19:20:41
(22 minutes ago)
Aggressive web search of vulnerable pages: /data/.env /.env /.env.local /api/.env /admin/.env ...
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-10-10 19:15:38
(27 minutes ago)
136.110.78.216 - - [10/Oct/2026:20:15:38 +0100] "GET /6s8j0d83gkfntpt4hyjz HTTP/1.1" 301 5684 "-" "M ...
show more
136.110.78.216 - - [10/Oct/2026:20:15:38 +0100] "GET /6s8j0d83gkfntpt4hyjz HTTP/1.1" 301 5684 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )"
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-10 19:03:30
(39 minutes ago)
(mod_security) mod_security (id:210492) triggered by 136.110.78.216 (216.78.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.78.216 (216.78.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 15:03:25.220636 2026] [security2:error] [pid 12504:tid 12504] [client 136.110.78.216:53890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arborterra.org"] [uri "/@fs/var/task/.env"] [unique_id "asqL_ZXtgjztgjYTYXchwwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-10-10 18:56:54
(46 minutes ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
kosada.com
2026-10-10 18:50:04
(52 minutes ago)
Repeated exploit attempts, for example: /@fs/src/.env?raw?? /.env (HTTP/2.0 port 443, user agent: "M ...
show more
Repeated exploit attempts, for example: /@fs/src/.env?raw?? /.env (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (compatible; Meta-WebIndexer/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)")
show less
Web App Attack
๐ธ๐ฌ
naveeddaros
2026-10-10 18:48:21
(54 minutes ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-10 18:48:02
(54 minutes ago)
(mod_security) mod_security (id:210730) triggered by 136.110.78.216 (216.78.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 136.110.78.216 (216.78.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 14:47:56.937887 2026] [security2:error] [pid 29037:tid 29037] [client 136.110.78.216:56388] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||andy-blakk.org|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "andy-blakk.org"] [uri "/rclone.conf"] [unique_id "asqIXMakWnHWEpfimTurSwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-10-10 18:15:03
(1 hour ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ช๐ธ
robotstxt
2026-10-10 18:08:08
(1 hour ago)
136.110.78.216 - - [10/Oct/2026:18:07:05 +0000] "GET /manifest.json HTTP/2.0" 403 10959 "-" "Mozilla ...
show more
136.110.78.216 - - [10/Oct/2026:18:07:05 +0000] "GET /manifest.json HTTP/2.0" 403 10959 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36" "-" edge="136.110.78.216"
136.110.78.216 - - [10/Oct/2026:18:07:06 +0000] "GET /assets/manifest.json HTTP/2.0" 403 10959 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36" "-" edge="136.110.78.216"
136.110.78.216 - - [10/Oct/2026:18:07:06 +0000] "GET /webpack-stats.json HTTP/2.0" 403 10959 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36" "-" edge="136.110.78.216"
136.110.78.216 - - [10/Oct/2026:18:07:06 +0000] "GET /z9x8c7v6b5-debug-trigger-agrogreensudoe.org HTTP/2.0" 403 11257 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)" "-" edge="136.110.78.216"
136.110.78.216 - - [10/Oct/2026:
...
show less
Web App Attack
๐ซ๐ท
dynamix
2026-10-10 18:06:29
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 18:00:41
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.110.78.216 (216.78.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.78.216 (216.78.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 14:00:35.470339 2026] [security2:error] [pid 15789:tid 15789] [client 136.110.78.216:56558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "afjm.org"] [uri "/%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env"] [unique_id "asp9Q1mSW7nlSCLjfkBM4wAAAD0"]
show less
Brute-Force
Bad Web Bot
Web App Attack