Anonymous
2026-09-28 09:29:36
(1 week ago)
denied traffic to a non-approved destination port. destination port 5000.
Port Scan
Anonymous
2026-02-21 10:36:52
(7 months ago)
"GET /.env HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-21 06:38:33
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 193.149.190.184 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 193.149.190.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 21 01:38:28.295382 2026] [security2:error] [pid 19898:tid 19898] [client 193.149.190.184:52014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.jesushijomodelo.com"] [uri "/.git/config"] [unique_id "aZlS5DPKcG-Ff9QB12tiKgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-20 21:00:10
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 193.149.190.184 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 193.149.190.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 20 16:00:04.173927 2026] [security2:error] [pid 15220:tid 15234] [client 193.149.190.184:48670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kerrfamilyassociation.com"] [uri "/.git/config"] [unique_id "aZjLVP9oJXEouPLJ63aUwgAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2024-12-07 11:52:31
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities - 13
Exploited Host
Web App Attack
๐บ๐ธ
Database.red
2024-12-07 11:49:08
(1 year ago)
[2024-12-07 06:49:08] Exploit probing - /.env
Hacking
Brute-Force
Web App Attack
Anonymous
2024-12-07 11:22:15
(1 year ago)
$f2bV_matches
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-12-07 09:13:03
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.149.190.184 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 193.149.190.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 07 04:12:55.630860 2024] [security2:error] [pid 13910:tid 13910] [client 193.149.190.184:52186] [client 193.149.190.184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bookofraphael.com"] [uri "/.env"] [unique_id "Z1QRl9U1yd9jHtEioLZeBgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ณ
Starburst SysOp Team
2024-12-07 09:08:44
(1 year ago)
(mod_security-custom) mod_security (id:210492) triggered by 193.149.190.184 (GB/United Kingdom/-): 1 ...
show more
(mod_security-custom) mod_security (id:210492) triggered by 193.149.190.184 (GB/United Kingdom/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [Sat Dec 07 09:08:40.213505 2024] [:error] [pid 4091506:tid 4091529] [client 193.149.190.184:45668] [client 193.149.190.184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/usr/local/apache/modsecurity-cwaf/rules/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bom2-1.starburstserver.net"] [uri "/.env"] [unique_id "Z1QQmPe5Tj_VorS2US1b3QAAAlU"]
show less
Hacking
๐ฉ๐ช
jasperedv.de
2024-12-07 08:10:11
(1 year ago)
Apache Login - Brutforcing
Brute-Force
Web App Attack
๐บ๐ธ
beehivesafety
2024-12-07 07:22:58
(1 year ago)
Malicious activity detected from 399629 BLNWX towards host beehive.systems (GET HTTP/1.1) @ 2024-12 ...
show more
Malicious activity detected from 399629 BLNWX towards host beehive.systems (GET HTTP/1.1) @ 2024-12-07T07:22:58Z
show less
Open Proxy
VPN IP
Port Scan
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐ณ๐ฑ
MortimerCat
2024-12-07 07:07:04
(1 year ago)
Attempting to download environment file
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-06 23:49:21
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.149.190.184 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 193.149.190.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 06 18:49:14.274225 2024] [security2:error] [pid 2826:tid 2826] [client 193.149.190.184:56200] [client 193.149.190.184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "azme.info"] [uri "/.env"] [unique_id "Z1ONesUpACAYZ2qGvqtsmQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
rakkor
2024-12-06 23:22:48
(1 year ago)
2024/12/06 13:06:00 [error] 4274#4274: *420099 open() "/var/services/web/.env" failed (2: No such fi ...
show more
2024/12/06 13:06:00 [error] 4274#4274: *420099 open() "/var/services/web/.env" failed (2: No such file or directory), client: 193.149.190.184, server: , request: "GET /.env HTTP/1.1", host: "calibre.rakkor.uk"
2024/12/06 23:22:47 [error] 4277#4277: *449552 open() "/usr/syno/synoman/.env" failed (2: No such file or directory), client: 193.149.190.184, server: audio.rakkor.uk, request: "GET /.env HTTP/1.1", host: "audio.rakkor.uk"
...
show less
Hacking
Brute-Force
Web App Attack
๐ฎ๐น
Progetto1
2024-12-06 22:55:02
(1 year ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack