๐ต๐น
PT
2026-07-20 13:06:00
(5 days ago)
web app attack
Brute-Force
Web App Attack
๐ฎ๐ฑ
spd.co.il
2026-07-08 19:01:40
(2 weeks ago)
Web application attack detected
Hacking
Web App Attack
Anonymous
2026-07-07 06:09:12
(2 weeks ago)
Querying for PHP services on a non-PHP site (/plugins/system/cdscriptegrator/libraries/highslide/js/ ...
show more
Querying for PHP services on a non-PHP site (/plugins/system/cdscriptegrator/libraries/highslide/js/jsloader.php)
show less
Web App Attack
๐ต๐น
Information Security
2026-07-06 17:35:12
(2 weeks ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-06 10:27:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 06 06:27:34.433696 2026] [security2:error] [pid 20127:tid 20127] [client 170.124.32.150:33799] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fiyaplatform.com"] [uri "/.env.prod"] [unique_id "akuDFrdw231CfLhg-2kuwQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
RidgeStar
2026-07-06 00:46:59
(2 weeks ago)
Port Scan
Hacking
๐ซ๐ท
conseilgouz
2026-07-06 00:25:15
(2 weeks ago)
upe-7 : Trying access unauthorized files/dir=>/wp-content/plugins/index.php
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-05 23:06:07
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 19:05:41.321734 2026] [security2:error] [pid 26978:tid 26978] [client 170.124.32.150:35507] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cs-mall.com"] [uri "/.env.prod.local"] [unique_id "akrjRW24zi3t13oazkE2QAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-05 22:37:08
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 18:36:57.402402 2026] [security2:error] [pid 17075:tid 17075] [client 170.124.32.150:57171] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hanabritgermanshepherds.com"] [uri "/.env"] [unique_id "akrciSCL0KW12IYuVG9AMwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-05 21:56:53
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 17:56:49.505266 2026] [security2:error] [pid 12104:tid 12104] [client 170.124.32.150:58909] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingscruff.com"] [uri "/.env.dev.local"] [unique_id "akrTIWZfxw72IMa3eTG0KgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-05 21:18:42
(2 weeks ago)
(mod_security) mod_security (id:212620) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:212620) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 17:18:37.503774 2026] [security2:error] [pid 13009:tid 13009] [client 170.124.32.150:49765] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||verenacastle.com|F|2"] [data "Matched Data: <script found within REQUEST_URI: /g12cartcontents.php?fromwhere=g12generic.php'\\x22><script>alert(68752)</script>&fromwhat=itemdetail&itemid=100"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "verenacastle.com"] [uri "/g12cartcontents.php"] [unique_id "akrKLVR7wX0VyonMZrdPrwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
danskefilm.dk
2026-07-05 21:00:01
(2 weeks ago)
wordpress login attempts
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-05 20:48:51
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-07-05 20:39:47
(2 weeks ago)
CMS/framework probe: 170.124.32.150 - - [05/Jul/2026:22:39:46 +0200] "GET /.env.prod.local HTTP/2.0" ...
show more
CMS/framework probe: 170.124.32.150 - - [05/Jul/2026:22:39:46 +0200] "GET /.env.prod.local HTTP/2.0" 404 10595 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36" asn=6079 org="RCN" country=US
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-05 20:35:56
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.124.32.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 16:35:39.690737 2026] [security2:error] [pid 15794:tid 15794] [client 170.124.32.150:33901] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "watermarks.info"] [uri "/.env.prod"] [unique_id "akrAG7C3o38BqVCNoNLkQgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack