๐ณ๐ฑ
Alt255
2026-09-11 15:41:30
(1 week ago)
136.116.47.244 - - \[06/Sep/2026:04:20:58 +0200\] "GET /.env.dev HTTP/1.1" 404 5833 "-" "crusader-wo ...
show more
136.116.47.244 - - \[06/Sep/2026:04:20:58 +0200\] "GET /.env.dev HTTP/1.1" 404 5833 "-" "crusader-worker/1.0"
136.116.47.244 - - \[06/Sep/2026:04:20:58 +0200\] "GET /.env.backup HTTP/1.1" 404 5833 "-" "crusader-worker/1.0"
136.116.47.244 - - \[06/Sep/2026:04:20:58 +0200\] "GET /.env.bak HTTP/1.1" 404 5833 "-" "crusader-worker/1.0"
136.116.47.244 - - \[06/Sep/2026:04:20:58 +0200\] "GET /.env.example HTTP/1.1" 404 5833 "-" "crusader-worker/1.0"
136.116.47.244 - - \[06/Sep/2026:04:20:58 +0200\] "GET /.env.prod HTTP/1.1" 404 5833 "-" "crusader-worker/1.0"
136.116.47.244 - - \[06/Sep/2026:04:20:58 +0200\] "GET /.env.old HTTP/1.1" 404 5833 "-" "crusader-worker/1.0"
136.116.47.244 - - \[06/Sep/2026:04:20:58 +0200\] "GET /.env.production HTTP/1.1" 404 5833 "-" "crusader-worker/1.0"
136.116.47.244 - - \[06/Sep/2026:04:20:59 +0200\] "GET /.env HTTP/1.1"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-08 07:42:20
(1 week ago)
136.116.47.244 - - [08/Sep/2026:03:42:19 -0400] "GET /.env HTTP/1.1" 403 6288 "-" "crusader-worker/1 ...
show more
136.116.47.244 - - [08/Sep/2026:03:42:19 -0400] "GET /.env HTTP/1.1" 403 6288 "-" "crusader-worker/1.0"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 02:58:09
(1 week ago)
136.116.47.244 - - [08/Sep/2026:02:58:08 +0000] "GET /.env.old HTTP/1.1" 404 35900 "-" "crusader-wor ...
show more
136.116.47.244 - - [08/Sep/2026:02:58:08 +0000] "GET /.env.old HTTP/1.1" 404 35900 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-09-07 13:06:01
(1 week ago)
F2B - Malicious activity detected. URL Probing. -c0423ad6-
Hacking
Web App Attack
๐ฉ๐ช
Skyrider
2026-09-06 06:21:05
(2 weeks ago)
crowdsecurity/http-sensitive-files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-06 03:52:35
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 136.116.47.244 (244.47.116.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.116.47.244 (244.47.116.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:52:27.519930 2026] [security2:error] [pid 9921:tid 9921] [client 136.116.47.244:46530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rharano.org"] [uri "/.env.backup"] [unique_id "apzje0uIcailCohk3edaVwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 03:36:40
(2 weeks ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ณ๐ฑ
MyGlobalFlowers
2026-09-06 03:23:37
(2 weeks ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-06 03:00:16
(2 weeks ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
๐ณ๐ฑ
e.fierstra
2026-09-06 02:28:55
(2 weeks ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-09-06 02:27:54
(2 weeks ago)
crowdsecurity/http-probing detected by CrowdSec
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-06 02:19:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 136.116.47.244 (244.47.116.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.116.47.244 (244.47.116.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:19:10.391491 2026] [security2:error] [pid 10197:tid 10197] [client 136.116.47.244:38850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stephanjonker.com"] [uri "/.env"] [unique_id "apzNni2kYVA065pC35kd5wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-06 02:05:46
(2 weeks ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-06 01:24:42
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 136.116.47.244 (244.47.116.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.116.47.244 (244.47.116.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:24:36.908583 2026] [security2:error] [pid 3561568:tid 3561568] [client 136.116.47.244:42110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thefleetnetwork.com.thesweetfam.com"] [uri "/wp-config.php.swp"] [unique_id "apzA1BNetS5HJJZEwinvSQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-09-06 00:30:08
(2 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 136.116.47.244 (US/United States/244.47 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 136.116.47.244 (US/United States/244.47.116.136.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection