Anonymous
2025-09-13 16:30:53
(1 year ago)
Failed login attempt detected by Fail2Ban in recidive jail
Brute-Force
๐ซ๐ท
โจ
2025-08-30 01:08:08
(1 year ago)
Domain : subastame.net
Rule : env
2025-08-30 01:07:10 152.53.103.155 GET /.env - 80 - 104.23.166.71 ...
show more
Domain : subastame.net
Rule : env
2025-08-30 01:07:10 152.53.103.155 GET /.env - 80 - 104.23.166.71 HTTP/1.1 python-requests/2.28.1 - subastame.net 200 0 0 10680 337 1519 - 2.58.113.133
show less
Hacking
SQL Injection
๐ฌ๐ง
Swiptly
2025-08-30 00:55:50
(1 year ago)
Bot scanning for environment files .env .env/\*
...
Web App Attack
๐ฉ๐ช
Ba-Yu
2025-08-29 22:23:14
(1 year ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
dynamix
2025-08-29 21:42:35
(1 year ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
hbrks
2025-08-29 12:19:08
(1 year ago)
1 attack(s) detected since 2025-08-29T12:05:17.208Z, such as these: {"event":"nginx_block","ip":"2.5 ...
show more
1 attack(s) detected since 2025-08-29T12:05:17.208Z, such as these: {"event":"nginx_block","ip":"2.58.113.133","host":"185.207.107.155","request":"GET /.env HTTP/1.1","user_agent":"python-requests/2.28.1","reason":"uri:env_file","timestamp":"2025-08-29T12:05:17 00:00"} More Details: https://p4u.xyz/GKLGSKUJY6P/1
show less
Web Spam
Hacking
Bad Web Bot
๐ซ๐ท
Rat_Crusher
2025-08-27 22:11:03
(1 year ago)
Searching for: GET /.env
Bad Web Bot
๐บ๐ธ
myagent.site
2025-08-26 20:41:02
(1 year ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐ฌ๐ง
essinghigh
2025-08-26 16:43:20
(1 year ago)
IPS Detection: 2.58.113.133 -> DPT: 80
Port Scan
๐ช๐ธ
el-brujo
2025-08-25 22:03:42
(1 year ago)
26/Aug/2025:00:03:42.109217 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
26/Aug/2025:00:03:42.109217 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 2.58.113.133] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "91.126.217.153"] [uri "/.env"] [unique_id "aKzdviFS6XB2nhM7NVDaVwAABaU"]
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
exxos
2025-08-25 22:03:01
(1 year ago)
web exploit attacks
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-25 21:57:20
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2.58.113.133 (tube-server.com): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210492) triggered by 2.58.113.133 (tube-server.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 25 17:57:15.098612 2025] [security2:error] [pid 1642:tid 1642] [client 2.58.113.133:63866] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.202"] [uri "/.env"] [unique_id "aKzcOx5OzzVQxni-BVHdRgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2025-08-25 21:40:24
(1 year ago)
2.58.113.133 - - [26/Aug/2025:00:40:17 +0300] "GET /.env HTTP/1.1" 404 494 "-" "python-requests/2.28 ...
show more
2.58.113.133 - - [26/Aug/2025:00:40:17 +0300] "GET /.env HTTP/1.1" 404 494 "-" "python-requests/2.28.1"
2.58.113.133 - - [26/Aug/2025:00:40:24 +0300] "GET /.env HTTP/1.1" 404 3092 "-" "python-requests/2.28.1"
...
show less
Web App Attack
๐ฏ๐ต
VXG-NET
2025-08-25 21:37:37
(1 year ago)
port=80, indicator_type=info-leak
Hacking
๐บ๐ธ
TPI-Abuse
2025-08-25 21:31:43
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2.58.113.133 (tube-server.com): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210492) triggered by 2.58.113.133 (tube-server.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 25 17:31:38.008249 2025] [security2:error] [pid 22982:tid 22982] [client 2.58.113.133:49891] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.244"] [uri "/.env"] [unique_id "aKzWOtH4kiHnuk4ffKplfAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack