๐ณ๐ฑ
homeshowdomain.nl
2026-08-01 21:59:09
(2 hours ago)
Auto-ban: >3000 req/min op 2026-08-01
Web App Attack
SSH
Hacking
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-01 17:29:02
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-01 17:12:43
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.222.244 (244.222.201.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.222.244 (244.222.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 13:12:39.354444 2026] [security2:error] [pid 388329:tid 388351] [client 35.201.222.244:37252] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seasonsgreeter.lightsondisplay.com"] [uri "/.env.local"] [unique_id "am4pB6_ZX0Ma0o1LUa_UnwAAAM0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-01 17:01:35
(7 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-08-01 16:24:34
(8 hours ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐จ๐ฆ
polycoda
2026-08-01 16:22:17
(8 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based)
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-01 16:01:23
(8 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 15:49:37
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.222.244 (244.222.201.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.222.244 (244.222.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 11:49:31.781319 2026] [security2:error] [pid 31540:tid 31585] [client 35.201.222.244:52800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "digital4z.com"] [uri "/.env.old"] [unique_id "am4Vi7z4mjtVBa1nUaRvNAAAAc4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-08-01 14:52:11
(9 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 14:44:40
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.222.244 (244.222.201.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.222.244 (244.222.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 10:44:32.812041 2026] [security2:error] [pid 1872799:tid 1872799] [client 35.201.222.244:37482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thecharlesmadu.com"] [uri "/.env.local"] [unique_id "am4GUEWbHEUauAvfV6Cw_AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Lee Daniel
2026-08-01 14:30:14
(9 hours ago)
35.201.222.244 - - [01/Aug/2026:10:30:13 -0400] "GET /.env HTTP/1.1" 403 6331 "-" "crusader-worker/1 ...
show more
35.201.222.244 - - [01/Aug/2026:10:30:13 -0400] "GET /.env HTTP/1.1" 403 6331 "-" "crusader-worker/1.0"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-01 14:06:59
(10 hours ago)
CrowdSec: crowdsecurity/http-sensitive-files | req: /.env.save | 5 distinct paths | UA: crusader-wor ...
show more
CrowdSec: crowdsecurity/http-sensitive-files | req: /.env.save | 5 distinct paths | UA: crusader-worker/1.0
show less
Hacking
๐ณ๐ฑ
e.fierstra
2026-08-01 14:04:03
(10 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 13:29:58
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.222.244 (244.222.201.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.222.244 (244.222.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 09:29:52.426577 2026] [security2:error] [pid 772681:tid 772681] [client 35.201.222.244:40860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "avanyupublishing.com"] [uri "/.env.prod"] [unique_id "am300DCwhF5UlHiWppD_VgAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-01 13:10:16
(11 hours ago)
Web attack/malicious scanning detected
Web App Attack