๐จ๐ญ
๐จ๐ญ Hosting
2026-09-09 05:10:22
(2 days ago)
Automated WAF report: 400-500 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐ง๐ท
Pingtoping
2026-09-08 18:37:00
(2 days ago)
Generic.Path.Traversal.Detection, Web.Server.Password.File.Access
Bad Web Bot
Exploited Host
Web App Attack
Hacking
๐ต๐ฑ
Woytass
2026-09-08 12:55:09
(3 days ago)
CSF permanent block; ports=*; (mod_security) mod_security (id:949110) triggered by 34.125.19.40 (US/ ...
show more
CSF permanent block; ports=*; (mod_security) mod_security (id:949110) triggered by 34.125.19.40 (US/United States/40.19.125.34.bc.googleusercontent.com): 5 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-08 11:20:11
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.125.19.40 (40.19.125.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.19.40 (40.19.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 07:20:05.575525 2026] [security2:error] [pid 32256:tid 32256] [client 34.125.19.40:20594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.107"] [uri "/static../.env"] [unique_id "ap_vZVOswGZaAcPP0UI5qwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 10:14:23
(3 days ago)
Directory Traversal.
Web App Attack
๐น๐ท
Threat.live
2026-09-08 08:40:02
(3 days ago)
Threat.live: Web Scan
Web App Attack
Anonymous
2026-09-08 08:05:02
(3 days ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ฉ๐ช
Balthasar Morpheus Jรถrmundur (JKweb Service)
2026-09-08 07:58:28
(3 days ago)
JKweb Security: Severe and dangerous web attack detected. Vulnerability Wordpress Scanning, Director ...
show more
JKweb Security: Severe and dangerous web attack detected. Vulnerability Wordpress Scanning, Directory Brute-Forcing / Content Discovery, Predictable Resource Location / Forced Browsing, Scan for administration and debugging interfaces of modern frameworks, Scan for Spring Boot Actuator Leaks, Scan for Cloud & Infrastructure Credentials, Scan for Database & Backup Dumps, Scan for IDE- und Editor-Configurations, Scan for CI/CD Pipelines & GitHub Workflows etc. The Attacker is permanently banned by Fail2Ban, configurate by JKweb Security a brand of JKweb Service.
show less
Port Scan
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-08 06:17:09
(3 days ago)
20 attempts against mh-misbehave-ban on moon
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-08 05:26:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.125.19.40 (40.19.125.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.19.40 (40.19.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 01:26:22.819403 2026] [security2:error] [pid 11882:tid 11882] [client 34.125.19.40:18898] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.144"] [uri "/static../.env"] [unique_id "ap-cfnIXKxKkhLEjP-nHWAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
VXG-NET
2026-09-08 02:40:47
(3 days ago)
port=80, indicator_type=info-leak
Hacking
๐ง๐พ
lns.bz
2026-09-08 02:30:30
(3 days ago)
.env scanning [BY]
Web App Attack
๐ณ๐ฑ
ipoac.nl
2026-09-08 00:20:29
(3 days ago)
[Tue Sep 08 02:20:26.702291 2026] [core:error] [pid 3259952:tid 3260312] [client 34.125.19.40:29676] ...
show more
[Tue Sep 08 02:20:26.702291 2026] [core:error] [pid 3259952:tid 3260312] [client 34.125.19.40:29676] AH10244: invalid URI path (/assets../../../etc/passwd)
show less
Hacking
๐ฌ๐ง
rooster
2026-09-08 00:05:53
(3 days ago)
[08/Sep/2026:01:05:51 +0100] 404 - GET http 141.147.73.25 "/__aws_leak_probe_a24fdd27__" [Client 34. ...
show more
[08/Sep/2026:01:05:51 +0100] 404 - GET http 141.147.73.25 "/__aws_leak_probe_a24fdd27__" [Client 34.125.19.40] [Length 183] [Gzip 3.21] "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/537.36 (KHTML, like Gecko; compatible; meta-externalagent/1.1; +https://developers.facebook.com/docs/sharing/webmasters/crawler) Chrome/85.0.9041.231 Safari/537.36 Edg/85.0.9041.231" "-"
[08/Sep/2026:01:05:52 +0100] 404 - GET http 141.147.73.25 "/static../.env" [Client 34.125.19.40] [Length 183] [Gzip 3.21] "Mozilla/5.0 (iPhone; CPU iPhone OS 17_0 like Mac OS X) AppleWebKit/537.36 (KHTML, like Gecko; compatible; Bytespider; +https://zhanzhang.toutiao.com/) Chrome/109.0.4157.25 Mobile Safari/537.36" "-"
[08/Sep/2026:01:05:52 +0100] 404 - GET http 141.147.73.25 "/media../.env" [Client 34.125.19.40] [Length 183] [Gzip 3.21] "Mozilla/5.0 (Windows NT 11.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; ChatGPT-User/1.0; +https://openai.com/bot) Chrome/114.0.7611.184 Safari/537.36" "-"
...
show less
Hacking
Web App Attack
๐ซ๐ฎ
pixiekat
2026-09-07 23:52:20
(3 days ago)
[Tue Sep 08 00:52:18.831945 2026] [authz_core:error] [pid 1794020:tid 1794130] [client 34.125.19.40: ...
show more
[Tue Sep 08 00:52:18.831945 2026] [authz_core:error] [pid 1794020:tid 1794130] [client 34.125.19.40:13596] AH01630: client denied by server configuration: /var/www/html/
[Tue Sep 08 00:52:19.144992 2026] [authz_core:error] [pid 1794020:tid 1794132] [client 34.125.19.40:13596] AH01630: client denied by server configuration: /var/www/html/__aws_leak_probe_6f486715__
[Tue Sep 08 00:52:19.733444 2026] [authz_core:error] [pid 1794020:tid 1794134] [client 34.125.19.40:13596] AH01630: client denied by server configuration: /var/www/html/static..
[Tue Sep 08 00:52:20.024753 2026] [authz_core:error] [pid 1794020:tid 1794133] [client 34.125.19.40:13596] AH01630: client denied by server configuration: /var/www/html/media..
[Tue Sep 08 00:52:20.342257 2026] [authz_core:error] [pid 1794020:tid 1794136] [client 34.125.19.40:13760] AH01630: client denied by server configuration: /var/www/html/.env
...
show less
Brute-Force