๐ณ๐ฑ
homeshowdomain.nl
2026-08-26 21:59:41
(1 day ago)
Auto-ban: >3000 req/min op 2026-08-26
Web App Attack
SSH
Hacking
๐ซ๐ท
dynamix
2026-08-26 18:39:51
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-26 14:20:20
(1 day ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-26 14:05:50
(1 day ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:User-Agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:User-Agent. (1100000-195)
show less
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-08-26 13:01:37
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
ConsulHosting
2026-08-26 12:12:21
(1 day ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-08-26 11:51:01
(1 day ago)
2026-08-26 13:48:37 GET /static../.env [404] && 2026-08-26 13:48:37 GET /@fs/proc/1/environ?raw?? [4 ...
show more
2026-08-26 13:48:37 GET /static../.env [404] && 2026-08-26 13:48:37 GET /@fs/proc/1/environ?raw?? [404] && 2026-08-26 13:48:37 GET /@fs/etc/passwd?import&raw?? [404] && 154 more within 20 minutes
show less
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-08-26 10:51:05
(1 day ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after matched multi-pattern attack signatur ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after matched multi-pattern attack signature. Evidence: AttackPattern: /etc/passwd (Match: /etc/passwd)
show less
Hacking
Web App Attack
Anonymous
2026-08-26 09:45:02
(1 day ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
grassau.com
2026-08-26 09:07:46
(1 day ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 207.175.37.58 (BE/Be ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 207.175.37.58 (BE/Belgium/Brussels Capital/Brussels/58.37.175.207.bc.googleusercontent.com)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-26 09:07:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 207.175.37.58 (58.37.175.207.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 207.175.37.58 (58.37.175.207.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 05:07:25.866781 2026] [security2:error] [pid 18078:tid 18078] [client 207.175.37.58:46434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.equinechallengesupplements.com"] [uri "/media../.env"] [unique_id "ao6szQSz1qnZeyY3v1vPhwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-26 08:58:38
(1 day ago)
Restricted File Access Attempt. Matched phrase ".aws/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-08-26 07:36:34
(1 day ago)
2026/08/26 08:36:32 [error] 380594#380594: *639172 access forbidden by rule, client: 207.175.37.58, ...
show more
2026/08/26 08:36:32 [error] 380594#380594: *639172 access forbidden by rule, client: 207.175.37.58, server: gwynethllewelyn.net, request: "GET /static../.env HTTP/2.0", host: "gwynethllewelyn.net"
2026/08/26 08:36:32 [error] 380594#380594: *639182 access forbidden by rule, client: 207.175.37.58, server: gwynethllewelyn.net, request: "GET /media../.env HTTP/2.0", host: "gwynethllewelyn.net"
2026/08/26 08:36:33 [error] 380594#380594: *639192 access forbidden by rule, client: 207.175.37.58, server: gwynethllewelyn.net, request: "GET /.env HTTP/2.0", host: "gwynethllewelyn.net"
show less
Brute-Force
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-26 07:04:51
(1 day ago)
[Wed Aug 26 17:04:50.229373 2026] [security2:error] [pid 348669] [client 207.175.37.58:2524] [client ...
show more
[Wed Aug 26 17:04:50.229373 2026] [security2:error] [pid 348669] [client 207.175.37.58:2524] [client 207.175.37.58] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "balcomberetreat.com.au"] [uri "/@fs/root/.aws/credentials"] [unique_id "ao6QEm9W8WQ4D0EzMiezAgAAAAM"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:33:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 207.175.37.58 (58.37.175.207.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 207.175.37.58 (58.37.175.207.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:33:25.555670 2026] [security2:error] [pid 16834:tid 16834] [client 207.175.37.58:18640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agapeaccountingllc.com"] [uri "/static../.env"] [unique_id "ao6ItYThWoKOUb6qYsC-FQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack