๐ธ๐ช
SkyDancer
2026-09-01 10:27:36
(2 hours ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
๐ซ๐ท
dwmp
2026-09-01 10:25:30
(2 hours ago)
[01/Sep/2026:12:25:30.078728 +0200] apaoGq7alaEScLdgWxvcUQAAAEg 35.205.148.70 52870 38.242.227.117 7 ...
show more
[01/Sep/2026:12:25:30.078728 +0200] apaoGq7alaEScLdgWxvcUQAAAEg 35.205.148.70 52870 38.242.227.117 7081
[01/Sep/2026:12:25:30.079049 +0200] apaoGs-2chacAtoJHPj1WgAAAIk 35.205.148.70 52832 38.242.227.117 7081
[01/Sep/2026:12:25:30.080200 +0200] apaoGs-2chacAtoJHPj1WwAAAI8 35.205.148.70 52914 38.242.227.117 7081
...
show less
Brute-Force
SSH
๐จ๐ฆ
polycoda
2026-09-01 10:24:59
(2 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ๏ธ Configuration File Access (Non Decay-Based ...
show more
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ๏ธ Configuration File Access (Non Decay-Based) - โ Excessive 40X Errors (Decay-Based)
show less
Hacking
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-01 10:03:35
(3 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:01:27
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:01:22.050941 2026] [security2:error] [pid 6628:tid 6628] [client 35.205.148.70:36810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fastquizmaker.com"] [uri "/.env.local"] [unique_id "apaicsUHqtMvKl5DpttLMQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-09-01 09:51:07
(3 hours ago)
URL Probing: /.env
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 09:25:01
(3 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 08:21:56
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 04:21:50.616193 2026] [security2:error] [pid 31854:tid 31854] [client 35.205.148.70:33326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "martinez-morera.com"] [uri "/.env.production"] [unique_id "apaLHqR-0vZgKE-GHNNYfwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 07:56:15
(5 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-09-01 07:49:15
(5 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-01 07:46:32
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:46:27.636672 2026] [security2:error] [pid 12344:tid 12344] [client 35.205.148.70:52672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.thegattrells.com"] [uri "/.env"] [unique_id "apaC06tyU69t38-VI4eu-QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-01 07:21:22
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ฐ
swrlly
2026-09-01 06:43:17
(6 hours ago)
1 unauthorized webserver connection
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 05:25:56
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:25:52.237594 2026] [security2:error] [pid 5041:tid 5041] [client 35.205.148.70:55882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scrollingelements.fernfieldbrooks.com"] [uri "/.env"] [unique_id "apZh4F6aGI6hDCArV40djQAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 05:08:17
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.205.148.70 (70.148.205.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:08:14.051720 2026] [security2:error] [pid 23603:tid 23603] [client 35.205.148.70:43758] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coyotebytes.com"] [uri "/.env.old"] [unique_id "apZdvhOjQMhkv9eRQrPwsgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack