🇹🇭
thaizone.com
2026-09-09 07:49:36
(1 hour ago)
Brute Force Attack on a Web Resources (repeated 404) #1
DDoS Attack
Web Spam
Brute-Force
Web App Attack
🇺🇸
rdpguard.com
2026-09-09 07:33:28
(1 hour ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
Anonymous
2026-09-09 05:09:20
(3 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: HK, Attack patterns: Clou ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: HK, Attack patterns: Cloud secrets probing, Malicious User-Agent
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 04:13:01
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 00:12:54.808407 2026] [security2:error] [pid 24649:tid 24649] [client 148.66.59.242:63005] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wmionline.org"] [uri "/.env"] [unique_id "aqDcxrdjfHskeWh9OrXL7QAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-09 03:59:43
(4 hours ago)
Banned by Fail2Ban on server
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 03:04:06
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 23:04:00.826500 2026] [security2:error] [pid 25131:tid 25131] [client 148.66.59.242:55445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.salernospizza.com"] [uri "/.env"] [unique_id "aqDMoFvY9EO2i3zLJE5R0wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Lee Daniel
2026-09-09 02:48:17
(6 hours ago)
148.66.59.242 - - [08/Sep/2026:22:48:17 -0400] "GET /.env HTTP/1.1" 403 6288 "-" "python-requests/2. ...
show more
148.66.59.242 - - [08/Sep/2026:22:48:17 -0400] "GET /.env HTTP/1.1" 403 6288 "-" "python-requests/2.34.2"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
masterguru
2026-09-09 02:06:47
(6 hours ago)
*Port Scan* detected from 148.66.59.242 (HK/Hong Kong/-). 11 hits in the last 75 seconds (0-122)
Port Scan
🇺🇸
TPI-Abuse
2026-09-09 01:21:36
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 21:21:32.734519 2026] [security2:error] [pid 536299:tid 536404] [client 148.66.59.242:56010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.onenessrecords.com"] [uri "/.env"] [unique_id "aqC0nLdqgKcUbA4wGrJNYgAAAUc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 23:01:11
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 19:01:03.342983 2026] [security2:error] [pid 17177:tid 17177] [client 148.66.59.242:63967] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stuartpearson.net"] [uri "/.env"] [unique_id "aqCTrx_PJ74-l9yMChTwgAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
david.houstin
2026-09-08 21:52:41
(10 hours ago)
148.66.59.242 - - [08/Sep/2026:23:51:47 +0200] "GET /actuator/env HTTP/1.1" 404 39806 "-" "python-re ...
show more
148.66.59.242 - - [08/Sep/2026:23:51:47 +0200] "GET /actuator/env HTTP/1.1" 404 39806 "-" "python-requests/2.34.2" 69457 -
148.66.59.242 - - [08/Sep/2026:23:52:32 +0200] "GET /system/actuator/env HTTP/1.1" 404 40437 "-" "python-requests/2.34.2" 49863 -
148.66.59.242 - - [08/Sep/2026:23:52:33 +0200] "GET /app-api/actuator/env HTTP/1.1" 404 40458 "-" "python-requests/2.34.2" 46410 -
148.66.59.242 - - [08/Sep/2026:23:52:34 +0200] "GET /admin-api/actuator/env HTTP/1.1" 404 40055 "-" "python-requests/2.34.2" 49589 -
148.66.59.242 - - [08/Sep/2026:23:52:35 +0200] "GET /stage-api/actuator/env HTTP/1.1" 404 40230 "-" "python-requests/2.34.2" 63838 -
148.66.59.242 - - [08/Sep/2026:23:52:36 +0200] "GET /test-api/actuator/env HTTP/1.1" 404 40542 "-" "python-requests/2.34.2" 45515 -
...
show less
Web App Attack
Bad Web Bot
Anonymous
2026-09-08 20:42:10
(12 hours ago)
"GET /actuator/env HTTP/1.1"
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:21:30
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 148.66.59.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:21:26.742362 2026] [security2:error] [pid 7843:tid 7843] [client 148.66.59.242:50394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thepartyblock.com"] [uri "/.env"] [unique_id "aqBgNk9cIDXf8xcnYKWDdwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇾
Rizzy
2026-09-08 18:57:31
(13 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
Anonymous
2026-09-08 18:27:20
(14 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking