πΊπΈ
uchat-ai.com
2026-07-25 15:58:11
(7 hours ago)
IP 155.2.191.94 ε¨θΏε»24ε°ζΆε
θΏθ‘δΊ 4 欑ζ»ε»γθ―¦η»δΏ‘ζ―: ζ»ε»η±»ε: Restricted File Access Attempt, ζ»ε»δΏ‘ζ―: No matched data ...
show more
IP 155.2.191.94 ε¨θΏε»24ε°ζΆε
θΏθ‘δΊ 4 欑ζ»ε»γθ―¦η»δΏ‘ζ―: ζ»ε»η±»ε: Restricted File Access Attempt, ζ»ε»δΏ‘ζ―: No matched data found; ζ»ε»η±»ε: Restricted File Access Attempt, ζ»ε»δΏ‘ζ―: No matched data found; ζ»ε»η±»ε: Restricted File Access Attempt, ζ»ε»δΏ‘ζ―: No matched data found; ζ»ε»η±»ε: Restricted File Access Attempt, ζ»ε»δΏ‘ζ―: No matched data found
show less
Web App Attack
π³π±
Savvii
2026-07-25 02:10:33
(21 hours ago)
20 attempts against mh-misbehave-ban on storm
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-25 01:49:45
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 155.2.191.94 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 155.2.191.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 21:49:41.909593 2026] [security2:error] [pid 479911:tid 479911] [client 155.2.191.94:50660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.218"] [uri "/.env.dev"] [unique_id "amQWNYqJpAP1Thv0orDM6AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π΅π±
webadmin
2026-07-25 01:00:19
(22 hours ago)
2026-07-25T03:00:15.557671+02:00 tytan csmpro-api[3056]: [error] client: 155.2.191.94 server: 195.11 ...
show more
2026-07-25T03:00:15.557671+02:00 tytan csmpro-api[3056]: [error] client: 155.2.191.94 server: 195.116.29.58, request: "GET", url: http://195.116.29.58/ [404]: Not Found
2026-07-25T03:00:16.650414+02:00 tytan csmpro-api[3056]: [error] client: 155.2.191.94 server: 195.116.29.58, request: "POST", url: http://195.116.29.58/ [404]: Not Found
2026-07-25T03:00:19.082294+02:00 tytan csmpro-api[3056]: [error] client: 155.2.191.94 server: 195.116.29.58, request: "GET", url: http://195.116.29.58/laravel/.env [404]: Not Found
2026-07-25T03:00:19.082294+02:00 tytan csmpro-api[3056]: [error] client: 155.2.191.94 server: 195.116.29.58, request: "GET", url: http://195.116.29.58/.env.production [404]: Not Found
show less
Web App Attack
π©πͺ
strxmpp
2026-07-24 21:17:47
(1 day ago)
155.2.191.94 - - [24/Jul/2026:23:17:47 +0200] "GET /.git/HEAD HTTP/2.0" 404 409 "-" "Mozilla/5.0 (Wi ...
show more
155.2.191.94 - - [24/Jul/2026:23:17:47 +0200] "GET /.git/HEAD HTTP/2.0" 404 409 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.64 Safari/537.36 Edg/101.0.1210.47"
...
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-07-24 19:53:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 155.2.191.94 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 155.2.191.94 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 15:53:19.324471 2026] [security2:error] [pid 721822:tid 721822] [client 155.2.191.94:57584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.137"] [uri "/.env.dev"] [unique_id "amPCr22inr97YP7GebB7mQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
mail.avx.gr
2026-07-24 19:37:58
(1 day ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 155.2.191.94 - - [24/Jul/202 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 155.2.191.94 - - [24/Jul/2026:22:37:57 +0300] "GET /.env HTTP/1.1" 403 2424 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.64 Safari/537.36 Edg/101.0.1210.47"
show less
Web App Attack
πΊπΈ
n2nguyenn2nguyen
2026-07-24 17:08:44
(1 day ago)
Blocked by YFC Security on https://1904.brixzly.com β type: directory_scan_attempts
Web App Attack
π¦πΊ
2000cn.com.au
2026-07-24 14:27:11
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
π§πΎ
lns.bz
2026-07-24 11:44:30
(1 day ago)
.env scanning [BY]
Web App Attack
π©πͺ
CELOS-SOC
2026-07-12 12:30:55
(1 week ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
π©πͺ
CELOS-SOC
2026-07-11 12:30:50
(2 weeks ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
π©πͺ
CELOS-SOC
2026-07-10 12:30:17
(2 weeks ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
π©πͺ
CELOS-SOC
2026-07-07 20:30:50
(2 weeks ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force
π©πͺ
CELOS-SOC
2026-07-04 04:30:45
(3 weeks ago)
Multiple Unauthorized SSLVPN Login Attempts
Hacking
Brute-Force