๐ซ๐ท
masterguru
2026-05-20 00:45:59
(2 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 207.241.173.59 (US/United States/-): ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 207.241.173.59 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ง๐ฌ
Stoyko Stoykov
2026-05-20 00:37:35
(2 weeks ago)
207.241.173.59 - - [20/May/2026:03:37:34 +0300] "GET /.env HTTP/1.1" 404 0 "-" "Mozilla/5.0 (X11; Li ...
show more
207.241.173.59 - - [20/May/2026:03:37:34 +0300] "GET /.env HTTP/1.1" 404 0 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:150.0) Gecko/20100101 Firefox/150.0"
...
show less
Hacking
Web App Attack
๐ฉ๐ช
pigro
2026-05-20 00:35:21
(2 weeks ago)
207.241.173.59 - - [20/May/2026:02:35:21 +0200] "GET /.env HTTP/1.1" 404 188 "-" "Mozilla/5.0 (X11; ...
show more
207.241.173.59 - - [20/May/2026:02:35:21 +0200] "GET /.env HTTP/1.1" 404 188 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
207.241.173.59 - - [20/May/2026:02:35:21 +0200] "GET /backend/.env HTTP/1.1" 404 188 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ง๐ท
SOC PR
2026-05-20 00:21:57
(2 weeks ago)
IPS: Web Server Enforcement Violation.
Hacking
Anonymous
2026-05-20 00:05:16
(2 weeks ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐ฎ๐น
[email protected]
2026-05-19 22:11:28
(2 weeks ago)
[Wed May 20 00:11:27.589783 2026] [authz_core:error] [pid 2604405:tid 2604510] [client 207.241.173.5 ...
show more
[Wed May 20 00:11:27.589783 2026] [authz_core:error] [pid 2604405:tid 2604510] [client 207.241.173.59:23674] AH01630: client denied by server configuration: /var/www/html/MyWeb/Secure_www/.aws
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
todix
2026-05-19 19:20:43
(2 weeks ago)
Web App Attack Exploid from 207.241.173.59
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-19 19:11:44
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐ซ๐ท
LRob.fr
2026-05-19 18:00:05
(2 weeks ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ซ๐ฎ
mnazibo
2026-05-19 17:00:20
(2 weeks ago)
Date: 19/May/2026 19:43:00 | Reported IP: 207.241.173.59 mod_security | id: 930130 | US/group.my_dom ...
show more
Date: 19/May/2026 19:43:00 | Reported IP: 207.241.173.59 mod_security | id: 930130 | US/group.my_domain/- | Connections: 4 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /core/js/lib_head.js.php?lang=en_GB&layout=phone&version=23.0.2; /.env; /.env.local; /.env.production | Logs: Restricted File Access Attempt
show less
SQL Injection
Brute-Force
Bad Web Bot
๐ซ๐ฎ
as211431.net
2026-05-19 16:58:37
(2 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.env.local~
UA: Mozilla/5.0 (X11; Linux x86_64; rv:150.0) Gecko/20100101 Firefox/150.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐น๐ท
Threat.live
2026-05-19 16:50:03
(2 weeks ago)
Suspicious Connection Attempts
Brute-Force
๐ซ๐ฎ
mnazibo
2026-05-19 13:00:13
(2 weeks ago)
Date: 19/May/2026 15:14:00 | Reported IP: 207.241.173.59 mod_security | id: 930130 | US/group.my_dom ...
show more
Date: 19/May/2026 15:14:00 | Reported IP: 207.241.173.59 mod_security | id: 930130 | US/group.my_domain/- | Connections: 36 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /api/.env; /app/.env; /.aws/credentials; /backend/.env; /credentials.json; /.env~; /.env.backup; /.env.bak; /.env.copy; /.env.local~; /.env.local.backup; /.env.local.bak; /.env.local.copy; /.env.local.old; /.env.local.orig; /.env.local.save; /.env.local.swp; /.env.old; /.env.orig; /.env.production~; /.env.production.backup; /.env.production.bak; /.env.production.copy; /.env.production.old; /.env.production.orig; /.env.production.save; /.env.production.swp; /.env.save; /.env.swp; /.git/config; /.git/FETCH_HEAD; /.git/HEAD; /.git/logs/HEAD; /.git/refs/heads/main; /.git/refs/heads/master; /secrets.json | Logs: Restricted File Access Attempt
show less
SQL Injection
Brute-Force
Bad Web Bot
๐ฉ๐ช
Bedios GmbH
2026-05-19 11:53:37
(2 weeks ago)
Login credentials theft attempt
Hacking
๐ฒ๐พ
Rizzy
2026-05-19 11:37:40
(2 weeks ago)
Multiple WAF Violations
Brute-Force
Web App Attack