Anonymous
2026-09-02 15:51:02
(1 hour ago)
Bot / scanning and/or hacking attempts: GET /notify/.env HTTP/1.1, GET /administrator/.env HTTP/1.1, ...
show more
Bot / scanning and/or hacking attempts: GET /notify/.env HTTP/1.1, GET /administrator/.env HTTP/1.1, GET /notifications/.env HTTP/1.1, GET /mailer/.env HTTP/1.1, GET /cache/.env HTTP/1.1, GET /ses/.env HTTP/1.1, GET /email/.env HTTP/1.1, GET /mail/.env HTTP/1.1, GET /.env.backup2 HTTP/1.1, GET /sender/.env HTTP/1.1, GET /newsletter/.env HTTP/1.1, GET /mailing/.env HTTP/1.1, GET /sitemaps/.env HTTP/1.1, GET /.env.backup1 HTTP/1.1, GET /smtp/.env HTTP/1.1, GET /exapi/.env HTTP/1.1, GET /logs/.env HTTP/1.1, GET /psnlink/.env HTTP/1.1, GET /campaign/.env HTTP/1.1
show less
Hacking
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-02 14:38:43
(2 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB repu ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB reputation policy (no URL signature). Evidence: Suspicion-Ban (Score 84>=65, Abuse 98, NonEU, first-seen)
show less
Hacking
Exploited Host
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 13:42:08
(3 hours ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ท
Hippoline
2026-09-02 12:31:27
(4 hours ago)
[Wed Sep 02 14:30:58.947630 2026] [authz_core:error] [pid 9120] [client 35.187.248.26:39570] AH01630 ...
show more
[Wed Sep 02 14:30:58.947630 2026] [authz_core:error] [pid 9120] [client 35.187.248.26:39570] AH01630: client denied by server configuration: /var/www/beaufort-online.lu/web/cakephp
[Wed Sep 02 14:31:26.491972 2026] [authz_core:error] [pid 13163] [client 35.187.248.26:50868] AH01630: client denied by server configuration: /var/www/beaufort-online.lu/web/phpinfo.php
[Wed Sep 02 14:31:26.694102 2026] [authz_core:error] [pid 13163] [client 35.187.248.26:50868] AH01630: client denied by server configuration: /var/www/beaufort-online.lu/web/info.php
[Wed Sep 02 14:31:26.894962 2026] [authz_core:error] [pid 13163] [client 35.187.248.26:50868] AH01630: client denied by server configuration: /var/www/beaufort-online.lu/web/php.php
[Wed Sep 02 14:31:27.098981 2026] [authz_core:error] [pid 13163] [client 35.187.248.26:50868] AH01630: client denied by server configuration: /var/www/beaufort-online.lu/web/i.php
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 11:46:10
(5 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ซ๐ท
Octopuce
2026-09-02 11:26:22
(5 hours ago)
Aggressive web search of vulnerable pages: / /.env /.env.local /app/.env /apps/.env ...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 11:18:47
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.187.248.26 (26.248.187.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.187.248.26 (26.248.187.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 07:18:43.717272 2026] [security2:error] [pid 21804:tid 21804] [client 35.187.248.26:41676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.beatleloversdream.com.juliansongs.com"] [uri "/.git/config"] [unique_id "apgGE1j2QNW3WaMnCwxEywAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-09-02 08:16:47
(9 hours ago)
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 35.187.248 ...
show more
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 35.187.248.26 (SG/Singapore/[REDACTED_DOMAIN]): 20 in the last 3600 secs | UA: (apache_probe) Failed Access (403/404) 35.187.248.26 (SG/Singapore/26.248.187.35.bc.googleusercontent.com): 20 in the last 3600 secs
show less
Brute-Force
Web App Attack
Anonymous
2026-09-02 08:13:27
(9 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 07:43:01
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.187.248.26 (26.248.187.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.187.248.26 (26.248.187.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:42:54.002306 2026] [security2:error] [pid 26885:tid 26885] [client 35.187.248.26:53340] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.beambags.us.book-arts.com"] [uri "/.git/config"] [unique_id "apfTfhv-7dDd38hooXHbVAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 07:14:05
(10 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-02 05:51:15
(11 hours ago)
35.187.248.26 - - [02/Sep/2026:01:51:14 -0400] "GET /.env HTTP/1.1" 403 6302 "-" "Mozilla/5.0 (X11; ...
show more
35.187.248.26 - - [02/Sep/2026:01:51:14 -0400] "GET /.env HTTP/1.1" 403 6302 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-02 05:32:51
(11 hours ago)
20 attempts against mh-misbehave-ban on sedna
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
๐จ๐ญ Hosting
2026-09-02 05:10:19
(12 hours ago)
Automated WAF report: 400-500 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:36:09
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.187.248.26 (26.248.187.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.187.248.26 (26.248.187.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:36:03.070615 2026] [security2:error] [pid 14834:tid 14850] [client 35.187.248.26:40582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.be.peoplecomeup.net"] [uri "/.git/config"] [unique_id "apenszMmYRHBUHEk4ZoHDwAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack