Anonymous
2026-09-05 10:48:13
(3 hours ago)
[Sat Sep 05 12:48:12.158702 2026] [access_compat:error] [pid 3208027:tid 131379534743232] [client 13 ...
show more
[Sat Sep 05 12:48:12.158702 2026] [access_compat:error] [pid 3208027:tid 131379534743232] [client 136.66.228.181:51236] AH01797: client denied by server configuration: /var/www/html/.git
[Sat Sep 05 12:48:12.161951 2026] [access_compat:error] [pid 3203580:tid 131380793026240] [client 136.66.228.181:51246] AH01797: client denied by server configuration: /var/www/html/app
[Sat Sep 05 12:48:12.164755 2026] [access_compat:error] [pid 3203579:tid 131379694139072] [client 136.66.228.181:51252] AH01797: client denied by server configuration: /var/www/html/src
[Sat Sep 05 12:48:12.166248 2026] [access_compat:error] [pid 3208027:tid 131379517957824] [client 136.66.228.181:51260] AH01797: client denied by server configuration: /var/www/html/backend
[Sat Sep 05 12:48:12.167759 2026] [access_compat:error] [pid 3203580:tid 131380465874624] [client 136.66.228.181:51268] AH01797: client denied by server configuration: /var/www/html/api
[Sat Sep 05 12:48:12.171312 2026] [access_compat:error] [pid 3203
...
show less
Brute-Force
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-05 10:43:37
(3 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇧🇾
lns.bz
2026-09-05 07:08:29
(7 hours ago)
Too many 404 requests [BY]
Web App Attack
🇬🇧
openstrike.co.uk
2026-09-05 05:14:31
(9 hours ago)
13 attacks on env grabbing URLs, PHP URLs:
GET /.env.old HTTP/1.1
GET /wp-config.php.bak HTTP/1.1
Hacking
Web App Attack
🇫🇷
SpaceHost-Server
2026-09-04 22:15:25
(16 hours ago)
Brute-Force
Web App Attack
🇳🇱
oisecnet
2026-09-04 21:02:33
(17 hours ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-09-04. 621 requests from this ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-09-04. 621 requests from this IP.
show less
Port Scan
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 15:18:31
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.228.181 (181.228.66.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.228.181 (181.228.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 11:18:26.435946 2026] [security2:error] [pid 30026:tid 30026] [client 136.66.228.181:43098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.unaweep.com"] [uri "/.env"] [unique_id "aprhQszsl9DeDdMnqpDWygAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
LoneRider
2026-09-04 14:53:46
(23 hours ago)
[04/Sep/2026:16:53:46.648063 +0200] aprbeka084FX9PAD4GwAWAAAAAA 136.66.228.181 49550 127.0.0.1 7081
...
show more
[04/Sep/2026:16:53:46.648063 +0200] aprbeka084FX9PAD4GwAWAAAAAA 136.66.228.181 49550 127.0.0.1 7081
[04/Sep/2026:16:53:46.648521 +0200] aprbetN-BIdiw4HU_YlnzwAAAAU 136.66.228.181 49562 127.0.0.1 7081
[04/Sep/2026:16:53:46.653531 +0200] aprbeqjzAHEZPN_p1pGMKQAAAAI 136.66.228.181 49582 127.0.0.1 7081
...
show less
Hacking
🇺🇸
MatCat
2026-09-04 14:05:14
(1 day ago)
Banned by fail2ban: apache-webprobe
Port Scan
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-04 14:02:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.66.228.181 (181.228.66.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.228.181 (181.228.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:02:17.190357 2026] [security2:error] [pid 5466:tid 5466] [client 136.66.228.181:35510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "passy.us"] [uri "/.env"] [unique_id "aprPaRRkyWr7MYKo23YoHQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-04 13:45:12
(1 day ago)
Web App Attack
Anonymous
2026-09-04 13:32:58
(1 day ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
🇩🇪
netclix.gr
2026-09-04 13:26:31
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 136.66.228.181 (US/United States/181.22 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 136.66.228.181 (US/United States/181.228.66.136.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
🇳🇱
e.fierstra
2026-09-04 13:03:03
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 12:54:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.66.228.181 (181.228.66.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.228.181 (181.228.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:54:18.819144 2026] [security2:error] [pid 6625:tid 6625] [client 136.66.228.181:51542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medioskreativos.com.spyasociados.com"] [uri "/.env"] [unique_id "apq_egjZY77d80Sjo0SizQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack