๐ต๐น
rnl
2026-06-24 23:27:34
(2 days ago)
2026/06/25 00:27:33 [error] 5469#0: *150298842 open() "/var/www/host/htdocs/mailer/.env" failed (2: ...
show more
2026/06/25 00:27:33 [error] 5469#0: *150298842 open() "/var/www/host/htdocs/mailer/.env" failed (2: No such file or directory), client: 34.92.57.243, server: host.[munged], request: "GET /mailer/.env HTTP/1.1", host: "host.[munged]"
2026/06/25 00:27:33 [error] 5469#0: *150298842 open() "/var/www/host/htdocs/mail/.env" failed (2: No such file or directory), client: 34.92.57.243, server: host.[munged], request: "GET /mail/.env HTTP/1.1", host: "host.rnl.tecnico.
...
show less
Web App Attack
Anonymous
2026-06-24 20:39:37
(2 days ago)
Aggressive web scan
Web App Attack
๐ซ๐ท
COMAITE
2026-06-24 16:09:16
(2 days ago)
Suspicious URL access.
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-24 04:10:59
(2 days ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ฆ๐บ
AWW-Admin
2026-06-24 01:29:06
(3 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.92.57.243 (HK/Hong Kong/243.57.92.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.92.57.243 (HK/Hong Kong/243.57.92.34.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ท
Octopuce
2026-06-23 22:46:34
(3 days ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-23 22:02:50
(3 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-22.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-23 21:44:38
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.92.57.243 (243.57.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.57.243 (243.57.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 17:44:33.518572 2026] [security2:error] [pid 20918:tid 20932] [client 34.92.57.243:57490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.accreditedprojectmanager.com.aafm.us"] [uri "/.git/config"] [unique_id "ajr-QSPltR0U9NugMwuOuwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-23 17:45:46
(3 days ago)
34.92.57.243 - - [23/Jun/2026:19:45:42 +0200] "GET / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows N ...
show more
34.92.57.243 - - [23/Jun/2026:19:45:42 +0200] "GET / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.92.57.243 - - [23/Jun/2026:19:45:42 +0200] "POST / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.92.57.243 - - [23/Jun/2026:19:45:42 +0200] "POST / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.92.57.243 - - [23/Jun/2026:19:45:42 +0200] "POST / HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.92.57.243 - - [23/Jun/2026:19:45:43 +0200] "GET /.git/config HTTP/1.1" 403 12583 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.92.57.243 - - [23/Jun/2026:1
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-23 12:14:45
(3 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-23 10:36:01
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.92.57.243 (243.57.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.57.243 (243.57.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 06:35:52.865785 2026] [security2:error] [pid 29999:tid 30043] [client 34.92.57.243:35778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.absurdotron.atdotorg.org"] [uri "/.git/config"] [unique_id "ajphiCcWBJw6unDDJ-kHoQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-06-23 08:37:58
(3 days ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 04:22:10
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.92.57.243 (243.57.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.57.243 (243.57.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 00:22:07.361860 2026] [security2:error] [pid 3067:tid 3151] [client 34.92.57.243:49880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blastfuturepress.com"] [uri "/.git/config"] [unique_id "ajoJ7yIrGodCV4Ku3-yShQAAAcs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-06-23 03:58:26
(3 days ago)
URL Probing: /server/.env
Web App Attack
๐ง๐ช
cmbplf
2026-06-22 14:41:49
(4 days ago)
195 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot