๐ฎ๐ฑ
spd.co.il
2026-10-09 19:01:47
(11 hours ago)
Web application attack detected
Hacking
Web App Attack
๐ง๐ช
boxed-it
2026-10-09 11:27:38
(19 hours ago)
GET /config/environment (Tarpitted for 1d15h8m28s, wasted 8.06MB)
Web App Attack
๐ง๐ช
boxed-it
2026-10-09 03:24:57
(1 day ago)
GET /.env (Tarpitted for 4m20s, wasted 15.35kB)
Web App Attack
Anonymous
2026-10-09 02:25:11
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐ซ๐ท
โจ
2026-10-09 02:20:10
(1 day ago)
Domain : pleskcontrolpanel
Rule : hack
2026-10-09 02:18:34 W3SVC2 PLESK76 217.194.212.77 GET /secret ...
show more
Domain : pleskcontrolpanel
Rule : hack
2026-10-09 02:18:34 W3SVC2 PLESK76 217.194.212.77 GET /secrets.json - 8880 - 209.159.159.31 HTTP/1.1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 - - 217.194.212.77:8880 404 0 2 1316 307 62 - -
show less
Hacking
SQL Injection
Brute-Force
๐ฉ๐ช
Vegascosmetics
2026-10-09 00:10:28
(1 day ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB repu ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB reputation policy (no URL signature). Evidence: Suspicion-Ban (Score 81>=65, Abuse 93, NonEU, first-seen)
show less
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 00:04:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.159.159.31 (vps3597178.trouble-free.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 209.159.159.31 (vps3597178.trouble-free.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 20:04:44.315786 2026] [security2:error] [pid 10057:tid 10057] [client 209.159.159.31:59946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jambmaster.com"] [uri "/api/v1/.env"] [unique_id "asgvnFvp0qN66UbLSTqcFwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 23:47:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.159.159.31 (vps3597178.trouble-free.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 209.159.159.31 (vps3597178.trouble-free.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 19:47:29.369840 2026] [security2:error] [pid 19532:tid 19538] [client 209.159.159.31:37408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coloradosellers.com"] [uri "/blogs/.env"] [unique_id "asgrkVqhOYsUemBtzuEdDwAAAIQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-08 23:47:10
(1 day ago)
[ti-10al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-10al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 209.159.159.31 - - [09/Oct/2026:01:47:02 +0200] "GET /root/.env HTTP/1.1" 403 482 "-" "Go-http-client/1.1"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-10-08 22:50:07
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 21:04:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.159.159.31 (vps3597178.trouble-free.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 209.159.159.31 (vps3597178.trouble-free.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 17:04:14.437915 2026] [security2:error] [pid 17619:tid 17619] [client 209.159.159.31:41578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ppichardocigars.com"] [uri "/develop/.env"] [unique_id "asgFTp0QLRzqdX53a0XrKwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 20:42:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 209.159.159.31 (vps3597178.trouble-free.net): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 209.159.159.31 (vps3597178.trouble-free.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 16:42:00.721338 2026] [security2:error] [pid 12513:tid 12513] [client 209.159.159.31:54526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michleen-collins.com"] [uri "/api/.environment"] [unique_id "asgAGPf7Yg5njgKC4VxyxgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-10-08 12:15:33
(1 day ago)
csagent: score 24.6: 404 noise floor x5, php 404 x3, secrets grab x2; 1 domain(s) in 58s
Web App Attack
๐ซ๐ท
GabrielJST
2026-10-08 02:01:54
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 209.159.159.31 (US/United States/vps359 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 209.159.159.31 (US/United States/vps3597178.trouble-free.net): (CF_ENABLE)
show less
SQL Injection
๐ฉ๐ช
LRob
2026-10-08 01:48:07
(2 days ago)
Not following 301 redirects โ wasted requests | method: GET | path: / | ua: Mozilla/5.0 (Windows NT ...
show more
Not following 301 redirects โ wasted requests | method: GET | path: / | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36
show less
Bad Web Bot