๐ช๐ธ
alferez
2026-08-29 03:03:03
(3 hours ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐จ๐ฆ
polycoda
2026-08-29 02:55:24
(3 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ๏ธ Configuration File Access (Non Decay-Based ...
show more
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ๏ธ Configuration File Access (Non Decay-Based)
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 02:30:01
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.43.46 (46.43.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.43.46 (46.43.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 22:29:57.467263 2026] [security2:error] [pid 7347:tid 11115] [client 34.24.43.46:54672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.unificationalliance.org.nothingwithoutwater.com"] [uri "/.env.backup"] [unique_id "apJEJdbthE4YVp9MK452XwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 02:13:31
(4 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 02:08:25
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.43.46 (46.43.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.43.46 (46.43.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 22:08:19.398273 2026] [security2:error] [pid 31204:tid 31204] [client 34.24.43.46:55564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "styxwetworld.com"] [uri "/.env.old"] [unique_id "apI_E0_HBX8x8uYlrU9MagAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 01:55:12
(4 hours ago)
Bot / seems abusive / Apache connections: 42
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 01:54:25
(4 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 01:31:22
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.43.46 (46.43.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.43.46 (46.43.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:31:15.314722 2026] [security2:error] [pid 22989:tid 22989] [client 34.24.43.46:40462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jamiesbballpool.com"] [uri "/.env.example"] [unique_id "apI2YzSe7ASmTwaoEVWftAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-08-29 01:01:55
(5 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
Anonymous
2026-08-29 01:00:03
(5 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 00:46:05
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.43.46 (46.43.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.43.46 (46.43.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 20:46:00.659322 2026] [security2:error] [pid 22248:tid 22248] [client 34.24.43.46:46116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shadowfree.souldata.com"] [uri "/wp-config.php~"] [unique_id "apIryMfmOSBLBXyrsRSn-gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FD-IX
2026-08-29 00:13:01
(6 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฆ๐บ
secnicholas
2026-08-29 00:05:01
(6 hours ago)
Banned by CrowdSec - scenario: crowdsecurity/http-sensitive-files
Port Scan
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-28 23:15:06
(7 hours ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.24.43.46 (US/United States/46.43. ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.24.43.46 (US/United States/46.43.24.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐ฉ๐ช
LRob
2026-08-28 22:34:46
(8 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /wp-config.php~ (+12 more) | 2026-08-28 22:34 UTC
show less
Hacking
Web App Attack