Anonymous
2025-12-29 21:53:06
(6 months ago)
"GET /.env HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 13:15:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 159.195.55.224 (v2202511317142411362.happysrv.d ...
show more
(mod_security) mod_security (id:210492) triggered by 159.195.55.224 (v2202511317142411362.happysrv.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 08:14:59.111502 2025] [security2:error] [pid 1698548:tid 1698548] [client 159.195.55.224:58481] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caferutadelaseda.com"] [uri "/.env"] [unique_id "aVJ-00KReRVmxN-PisDIdwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
bcsaba
2025-12-29 13:04:36
(6 months ago)
SQL injection attempt.
159.195.55.224 - - [29/Dec/2025:14:04:34 +0100] "GET /scripts/view.php?Itemid ...
show more
SQL injection attempt.
159.195.55.224 - - [29/Dec/2025:14:04:34 +0100] "GET /scripts/view.php?Itemid=38&id=505&oid=95083482&option=com_content&option=%27&task=view HTTP/1.1" 200 98196 "-" "Mozilla/5.0 (Linux; Android 9; ASUS_I005DA Build/PI; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/133.0.6943.122 Mobile"
show less
SQL Injection
Web App Attack
๐ฉ๐ช
FeG Deutschland
2025-12-29 13:02:54
(6 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฏ๐ต
VXG-NET
2025-12-29 12:46:47
(6 months ago)
port=80, indicator_type=info-leak
Hacking
๐ง๐ช
cmbplf
2025-12-29 12:31:24
(6 months ago)
181 requests with url.path *.env
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-29 12:12:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 159.195.55.224 (v2202511317142411362.happysrv.d ...
show more
(mod_security) mod_security (id:210492) triggered by 159.195.55.224 (v2202511317142411362.happysrv.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 07:12:51.292438 2025] [security2:error] [pid 19134:tid 19134] [client 159.195.55.224:65002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3905ccn.org"] [uri "/.env"] [unique_id "aVJwQ6iTB3_9BvP3oGh-VgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 11:57:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 159.195.55.224 (v2202511317142411362.happysrv.d ...
show more
(mod_security) mod_security (id:210492) triggered by 159.195.55.224 (v2202511317142411362.happysrv.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 06:57:49.836885 2025] [security2:error] [pid 24629:tid 24629] [client 159.195.55.224:55044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "psdinnersready.com"] [uri "/.env"] [unique_id "aVJsvRG3xcgneyMEoapuvAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 11:38:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 159.195.55.224 (v2202511317142411362.happysrv.d ...
show more
(mod_security) mod_security (id:210492) triggered by 159.195.55.224 (v2202511317142411362.happysrv.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 06:38:35.478507 2025] [security2:error] [pid 27281:tid 27281] [client 159.195.55.224:51773] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kountz.org"] [uri "/.env"] [unique_id "aVJoO-jecBi6uYJm7RktOgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-29 11:15:02
(6 months ago)
suspicious request in access.log
Web App Attack
๐จ๐ญ
zynex
2025-12-29 11:00:59
(6 months ago)
URL Probing: /.env
Web App Attack
Anonymous
2025-12-29 11:00:21
(6 months ago)
HTTPS vulnerability scan attempt detected. Port 443.
Hacking
SQL Injection
Web App Attack
๐ต๐น
Information Security
2025-12-29 10:47:54
(6 months ago)
Web App Attack
Web App Attack
๐ฌ๐ง
AvonleaConsulting
2025-12-29 10:37:06
(6 months ago)
Scanning unused Default website or suspicious access to valid sites from IP marked as abusive
Bad Web Bot
Web App Attack
๐ซ๐ท
Phenix Info
2025-12-29 10:32:19
(6 months ago)
SmallGuard.fr/Prestashop Forbidden Ext.
Web App Attack