Anonymous
2026-07-03 09:35:39
(3 hours ago)
Port scan / connection attempts on port 8023/UDP to unused IP
Port Scan
Anonymous
2026-06-30 08:06:06
(3 days ago)
Trying to access config files
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-30 07:14:01
(3 days ago)
IM360 WAF: Laravel Apps Leaking Secrets exploit attempt MV:androxgh0st
Web App Attack
๐ฟ๐ฆ
hostsec_za
2026-06-30 06:55:00
(3 days ago)
cPanel Auth Attack. 13 failed logins in 1 hour.
Brute-Force
๐บ๐ธ
kosada.com
2026-06-29 10:03:54
(4 days ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ณ๐ฑ
BlueWire Hosting
2026-03-30 10:48:12
(3 months ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
[email protected]
2026-03-30 01:04:03
(3 months ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-03-30T01:04:02Z
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-03-30 00:39:56
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 20:39:49.497023 2026] [security2:error] [pid 11251:tid 11251] [client 202.133.66.246:61313] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "protonmultimedia.com"] [uri "/.env"] [unique_id "acnGVb6gHsGz_yqSjqZRJgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 13:11:18
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 09:11:13.301397 2026] [security2:error] [pid 21461:tid 21531] [client 202.133.66.246:62466] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "crowns.org"] [uri "/.env"] [unique_id "ackk8Y-0TCEcYlC1mRm3nQAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-03-29 03:48:52
(3 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.env (Rule ID: 930130) - Restricted File Access Attempt [Suspicious: .env found within REQUEST_FILENAME: /.env]
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-29 01:34:56
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 28 21:34:48.121196 2026] [security2:error] [pid 27101:tid 27101] [client 202.133.66.246:61127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fritsknuf.com"] [uri "/.env"] [unique_id "aciBuM7qF0jdYoV04EVcowAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 13:46:38
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 09:46:29.790776 2026] [security2:error] [pid 31623:tid 31715] [client 202.133.66.246:49670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hdtv55.com"] [uri "/.env"] [unique_id "acaKNcPfiQ_mat__UjpGTwAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 02:08:18
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 22:08:10.147911 2026] [security2:error] [pid 29286:tid 29286] [client 202.133.66.246:63379] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "toppress.ca"] [uri "/.env"] [unique_id "acXmiiRshc9qeYe1cWzuiQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 16:56:56
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 12:56:49.559822 2026] [security2:error] [pid 10659:tid 10659] [client 202.133.66.246:55912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alexetjeremy.com"] [uri "/.env"] [unique_id "acVlUQO0I223-avwtOXVuAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 04:33:39
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 202.133.66.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 00:33:32.246649 2026] [security2:error] [pid 32027:tid 32027] [client 202.133.66.246:53622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "raystransmission.com"] [uri "/.env"] [unique_id "acS3HCID7tLH7dJsfpJcWAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack