Anonymous
2025-05-19 18:01:02
(1 year ago)
Bot / scanning and/or hacking attempts: GET / HTTP/2.0, GET /tinymce/filemanager/dialog.php HTTP/1.1 ...
show more
Bot / scanning and/or hacking attempts: GET / HTTP/2.0, GET /tinymce/filemanager/dialog.php HTTP/1.1, [1/1] done, GET /assets/scripts/filemanager/dialog.php HTTP/1.1, GET /js/tinymce4/plugins/filemanager/dialog.php HTTP/1.1, GET /assets/admin/js/tinymce/plugins/filemanager/dialog.php HTT, GET /admin/filemanager/dialog.php HTTP/1.1, GET /filemanager/filemanager/dialog.php HTTP/1.1, GET /scripts/filemanager/dialog.php HTTP/1.1, HEAD / HTTP/1.1, GET /assets/plugins/kcfinder/upload.php HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
ALSCOยฎ๏ธ
2025-05-18 22:00:31
(1 year ago)
Report By ALSCO Security Team: XSS Injection Attempt Detected
Web App Attack
๐บ๐ธ
Secure Gatewayยฎ๏ธ
2025-05-18 22:00:30
(1 year ago)
Report By Secure Gateway Security Team: Unauthorized Connection Attempt
Web App Attack
๐ง๐ช
taivas.nl
2025-05-18 19:32:14
(1 year ago)
Site scraper
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-18 19:20:30
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 18 15:20:22.490730 2025] [security2:error] [pid 417804:tid 417804] [client 139.59.254.29:59142] [client 139.59.254.29] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alternatievemedia.com"] [uri "/.env"] [unique_id "aCoy9n_KprJr3qVJ8ThspAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-18 18:08:26
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 18 14:08:23.054124 2025] [security2:error] [pid 420512:tid 420512] [client 139.59.254.29:34316] [client 139.59.254.29] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alterationsbylinh.linhsbridal.com"] [uri "/.env"] [unique_id "aCoiF4xIm1GXnm2BpAG9dwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Major Hostility
2025-05-18 17:37:24
(1 year ago)
"GET /kcfinder/upload.php HTTP/1.1" 404
"GET /asset/kcfinder/upload.php HTTP/1.1" 404
"GET /assets/k ...
show more
"GET /kcfinder/upload.php HTTP/1.1" 404
"GET /asset/kcfinder/upload.php HTTP/1.1" 404
"GET /assets/kcfinder/upload.php HTTP/1.1" 404
"GET /js/kcfinder/upload.php HTTP/1.1" 404
"GET /assets/js/kcfinder/upload.php HTTP/1.1" 404
"GET /assets/plugins/kcfinder/upload.php HTTP/1.1" 404
show less
Web App Attack
๐จ๐ญ
zynex
2025-05-18 12:21:48
(1 year ago)
URL Probing: /kcfinder/upload.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-18 12:20:45
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 18 08:20:39.775067 2025] [security2:error] [pid 2199171:tid 2199171] [client 139.59.254.29:47498] [client 139.59.254.29] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alt-tek.org"] [uri "/.env"] [unique_id "aCnQl70uzggK7JfQJvhmswAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Mr-Money
2025-05-18 12:20:39
(1 year ago)
139.59.254.29 - - [18/May/2025:14:20:38 +0200] "GET /.env HTTP/2.0" 404 343 "-" "Mozilla/5.0 (Window ...
show more
139.59.254.29 - - [18/May/2025:14:20:38 +0200] "GET /.env HTTP/2.0" 404 343 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4859.172 Safari/537.36"
...
show less
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐ณ๐ฑ
Site.eu
2025-05-18 11:06:47
(1 year ago)
Excessive multi-domain requests
Brute-Force
๐ท๐บ
OK
2025-05-18 11:01:01
(1 year ago)
HTTP/HTTPS
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-18 09:58:43
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 18 05:58:39.459940 2025] [security2:error] [pid 570541:tid 570541] [client 139.59.254.29:41222] [client 139.59.254.29] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alsetsystems.com"] [uri "/.env"] [unique_id "aCmvT-dkam_I8Ktz0-ZrCwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-18 07:40:15
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 139.59.254.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 18 03:40:11.480131 2025] [security2:error] [pid 2520475:tid 2520523] [client 139.59.254.29:46756] [client 139.59.254.29] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alred.net"] [uri "/.env"] [unique_id "aCmO23ZR_qnu36cqJtefdAAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2025-05-18 04:10:17
(1 year ago)
Probing for application vulnerabilities
Brute-Force
Web App Attack