๐บ๐ธ
BSG Webmaster
2026-07-20 04:49:27
(1 day ago)
Hacking Attempt using path private on 2026-07-19 13:33:45
Hacking
๐ซ๐ท
dynamix
2026-07-19 23:13:00
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-07-19 22:29:10
(1 day ago)
Brute-Force
Web App Attack
๐ฉ๐ช
macrob
2026-07-19 21:49:31
(1 day ago)
2026/07/19 21:49:22 [error] 1361326#1361326: *390769471 access forbidden by rule, client: 194.127.16 ...
show more
2026/07/19 21:49:22 [error] 1361326#1361326: *390769471 access forbidden by rule, client: 194.127.166.128, server: binixo.mx, request: "GET /.env HTTP/1.1", host: "binixo.mx"
2026/07/19 21:49:26 [error] 1361325#1361325: *390769599 access forbidden by rule, client: 194.127.166.128, server: binixo.mx, request: "GET /.env HTTP/1.1", host: "binixo.mx"
2026/07/19 21:49:29 [error] 1361323#1361323: *390769772 access forbidden by rule, client: 194.127.166.128, server: binixo.mx, request: "GET /binixo.mx/.env HTTP/1.1", host: "binixo.mx"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 20:37:44
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.127.166.128 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 194.127.166.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 16:37:39.159773 2026] [security2:error] [pid 2238120:tid 2238120] [client 194.127.166.128:57378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "liverpoolfootballprogrammes.com"] [uri "/.env"] [unique_id "al01k84pD-X-KkrUyZpYlQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
AGEPCom
2026-07-19 18:45:42
(2 days ago)
Smart-Ban: IP bannie via score AbuseIPDB
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 18:06:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.127.166.128 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 194.127.166.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 14:06:24.930033 2026] [security2:error] [pid 15910:tid 15910] [client 194.127.166.128:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.swarnar.com"] [uri "/.env"] [unique_id "al0SIPfMUQgN07V_AW_qwwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-19 16:30:03
(2 days ago)
CrowdSec decision: crowdsecurity/CVE-2017-9841 (origin: crowdsec)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-19 16:26:46
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.127.166.128 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 194.127.166.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 12:26:37.752749 2026] [security2:error] [pid 30812:tid 30812] [client 194.127.166.128:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nyemdr.com"] [uri "/.env"] [unique_id "alz6vWdfb-OTw9tC-P01-gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-07-19 15:55:17
(2 days ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐ฌ๐ง
Apache
2026-07-19 12:15:55
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.127.166.128 (JP/Japan/-): 5 in the last 300 ...
show more
(mod_security) mod_security (id:210492) triggered by 194.127.166.128 (JP/Japan/-): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
SSH
Web App Attack
๐ซ๐ท
Baking333
2026-07-19 10:34:54
(2 days ago)
[redacted] 194.127.166.128 - - [19/Jul/2026:11:34:51 +0100] "GET /.env HTTP/2.0" 301 290 "-" "Mozill ...
show more
[redacted] 194.127.166.128 - - [19/Jul/2026:11:34:51 +0100] "GET /.env HTTP/2.0" 301 290 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36" [redacted] 194.127.166.128 - - [19/Jul/2026:11:34:52 +0100] "GET /fr/.env/ HTTP/2.0" 404 26605 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
interbiznw.com
2026-07-19 09:08:57
(2 days ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
ipblock.com
2026-07-19 08:58:00
(2 days ago)
IPBlock protected site ID [4055-d][s=07].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-07-19 08:30:04
(2 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack