|
๐บ๐ธ
myagent.site
|
|
Blocking for trying to access an exploit file: /.env
|
Hacking
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 00:14:05.424466 2025] [security2:error] [pid 16775:tid 16775] [client 151.115.57.161:52660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bitcointoolfair.com"] [uri "/.env"] [unique_id "aRVpHXqc8cslSNxFsbcwCAAAACY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 12 23:58:31.786827 2025] [security2:error] [pid 2491:tid 2514] [client 151.115.57.161:57874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lasertagandgames.com"] [uri "/.env"] [unique_id "aRVld5417cYANjAwadHQ4gAAARQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 12 22:52:37.490409 2025] [security2:error] [pid 3166:tid 3183] [client 151.115.57.161:38524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "credit-protector.com"] [uri "/.env"] [unique_id "aRVWBaPZwHe4hm2WdFMiVAAAAM8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 04 10:41:42.502307 2025] [security2:error] [pid 15283:tid 15283] [client 151.115.57.161:50890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fundingangelinvestors.com"] [uri "/.env"] [unique_id "aOEyJoeHaCxPW8ieA0v2LQAAABk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): ...
show more
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.rev.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 04 10:25:49.208599 2025] [security2:error] [pid 1294508:tid 1294508] [client 151.115.57.161:49254] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.brbcoin.com"] [uri "/.env"] [unique_id "aOEubYcE5CGbVtWeSCPIJgAAAA4"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
151.115.57.161 - - [04/Oct/2025:16:16:39 +0200] "HEAD / HTTP/1.1" 403 4549 "-" "-"
...
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:218420) triggered by 151.115.57.161 (161-57-115-151.instances.scw.cl ...
show more
(mod_security) mod_security (id:218420) triggered by 151.115.57.161 (161-57-115-151.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 17 17:08:59.150490 2025] [security2:error] [pid 3846908:tid 3846908] [client 151.115.57.161:40346] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i)php://(std(in|out|err)|(in|out)put|fd|memory|temp|filter)" at ARGS:auto_prepend_file. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/21_PHP_PHPGen.conf"] [line "22"] [id "218420"] [rev "2"] [msg "COMODO WAF: PHP Injection Attack: I/O Stream Found||embeddedtrade.com|F|2"] [data "Matched Data: php://input found within ARGS:auto_prepend_file: php://input"] [severity "CRITICAL"] [tag "CWAF"] [tag "PHPGen"] [hostname "embeddedtrade.com"] [uri "/index.php"] [unique_id "aFHZa9r2m1WZnJylSGdanQAAAAg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฎ๐น
VHosting
|
|
Detected attack by Imunify360
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 151.115.57.161 (161-57-115-151.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 17 16:46:11.718214 2025] [security2:error] [pid 3443148:tid 3443148] [client 151.115.57.161:38544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.brbcoin.com"] [uri "/.env"] [unique_id "aFHUE4kzzfiO7heRRXnAZgAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
NetworkOperationsTeam
|
|
SMS Bombing. Trying to authenticate. API Abuse rate limit exceeded
|
Hacking
Brute-Force
Web App Attack
|
|