๐ฉ๐ช
FeG Deutschland
2026-05-30 18:54:06
(3 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-05-30 16:32:05
(3 months ago)
COMODO WAF: URL file extension is restricted by policy. Match of "pmFromFile userdata_wl_extensions" ...
show more
COMODO WAF: URL file extension is restricted by policy. Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. (210730-srv1)
show less
Hacking
๐ฌ๐ง
Axel
2026-05-30 09:20:02
(3 months ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /wp-config.ph ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /wp-config.php.bak Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-05-30 06:42:18
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 31.76.244.72 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 31.76.244.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 02:42:12.781983 2026] [security2:error] [pid 5507:tid 5507] [client 31.76.244.72:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||perissos.mx.kevinfranz.com|F|2"] [data ".bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "perissos.mx.kevinfranz.com"] [uri "/perissos.bak"] [unique_id "ahqGxFkqe23b8Zy7G3z51gAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-05-30 04:30:16
(3 months ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐ฌ๐ง
Oakley
2026-05-30 03:42:00
(3 months ago)
(confirmed_bot_sig) Confirmed bot
Hacking
Anonymous
2026-05-30 02:40:01
(3 months ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 20:26:15
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 31.76.244.72 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 31.76.244.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 16:26:11.789806 2026] [security2:error] [pid 22963:tid 22963] [client 31.76.244.72:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "directnic-support.rocks"] [uri "/.env.production"] [unique_id "ahn2Y5_f9Yai3BiOOaR6GwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 19:10:26
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 31.76.244.72 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 31.76.244.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 15:10:19.434275 2026] [security2:error] [pid 31479:tid 31495] [client 31.76.244.72:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ygfconcierge.eatdrinkgroove.com"] [uri "/.env.old"] [unique_id "ahnkmxT2MOkKxwR0cus3egAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-29 16:30:07
(3 months ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-05-29 13:05:59
(3 months ago)
Abuse Detected (3)
Brute-Force
Web App Attack
๐ฉ๐ช
Lino Project
2026-05-28 13:01:32
(3 months ago)
31.76.244.72 - - [28/May/2026:15:01:28 +0200] "GET /.env.local HTTP/2.0" 403 253 "-" "Mozilla/5.0 (M ...
show more
31.76.244.72 - - [28/May/2026:15:01:28 +0200] "GET /.env.local HTTP/2.0" 403 253 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.4.1 Safari/605.1.15"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
mk-dizajn.hr
2026-05-27 18:32:38
(4 months ago)
$f2bV_matches
Bad Web Bot
๐ฉ๐ช
Lino Project
2026-05-27 09:10:14
(4 months ago)
31.76.244.72 - - [27/May/2026:11:10:10 +0200] "GET /.env HTTP/2.0" 403 253 "-" "Mozilla/5.0 (ZZ; Lin ...
show more
31.76.244.72 - - [27/May/2026:11:10:10 +0200] "GET /.env HTTP/2.0" 403 253 "-" "Mozilla/5.0 (ZZ; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-05-26 23:53:34
(4 months ago)
31.76.244.72 - - [27/May/2026:01:53:30 +0200] "GET /backup.sql HTTP/2.0" 403 253 "-" "Mozilla/5.0 (X ...
show more
31.76.244.72 - - [27/May/2026:01:53:30 +0200] "GET /backup.sql HTTP/2.0" 403 253 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack