๐ฎ๐น
IRT@Unisi
2026-07-30 18:52:56
(2 hours ago)
Multiple web server 400 error codes from same source ip.
Bad Web Bot
๐ช๐ธ
masterguru
2026-07-30 16:38:40
(5 hours ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-30 16:32:42
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 12:32:34.576417 2026] [security2:error] [pid 1444249:tid 1444249] [client 2002:90ac:5bec::90ac:5bec:51276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.crazypencil.com"] [uri "/.env"] [unique_id "amt8ogAfOn4a1Whu0nHIyAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-07-30 16:27:04
(5 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 15:11:55
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 11:11:49.691583 2026] [security2:error] [pid 1446230:tid 1446246] [client 2002:90ac:5bec::90ac:5bec:56154] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafminstitute.com"] [uri "/.env"] [unique_id "amtptWdSXrBTFkriBFCmmQAAAQ4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-07-30 14:44:16
(7 hours ago)
(c5_sensitive_scan) Custom5 Sensitive File Exploit Blocked 144.172.91.236 (US/United States/236.91.1 ...
show more
(c5_sensitive_scan) Custom5 Sensitive File Exploit Blocked 144.172.91.236 (US/United States/236.91.172.144.static.cloudzy.com): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: default:80 144.172.91.236 - - [30/Jul/2026:17:44:14 +0300] "GET /mix-manifest.json HTTP/1.1" 404 404 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-30 14:35:28
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 10:35:19.784812 2026] [security2:error] [pid 2884921:tid 2884921] [client 2002:90ac:5bec::90ac:5bec:57852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tonyvillanueva.com"] [uri "/.env"] [unique_id "amthJyoRgqmlUWY1OZjV_wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dwmp
2026-07-30 14:21:43
(7 hours ago)
Url probing: /sanctum/csrf-cookie
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 14:07:59
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 10:07:54.972384 2026] [security2:error] [pid 2238973:tid 2238973] [client 2002:90ac:5bec::90ac:5bec:57709] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "crochetdoilies.com"] [uri "/.env"] [unique_id "amtauvA34HrBMa3yE4H2qwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-30 14:03:06
(7 hours ago)
Try to access /brandpreventie/.env
Web App Attack
๐ง๐ช
cmbplf
2026-07-30 13:33:11
(8 hours ago)
938 requests with url.path *.env
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-30 13:28:45
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2002:90ac:5bec::90ac:5bec (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 09:28:40.801086 2026] [security2:error] [pid 1302930:tid 1302930] [client 2002:90ac:5bec::90ac:5bec:49835] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "techspertnet.com"] [uri "/.env"] [unique_id "amtRiENdr9zKUGaLBkq3vAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 13:07:21
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 144.172.91.236 (236.91.172.144.static.cloudzy.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.172.91.236 (236.91.172.144.static.cloudzy.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 09:07:13.104581 2026] [security2:error] [pid 2269497:tid 2269497] [client 144.172.91.236:52481] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "good4sound.com"] [uri "/.env"] [unique_id "amtMgfy5twq5cYC5izi-wgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-07-30 13:05:31
(8 hours ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-07-30 12:51:54
(8 hours ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack