๐จ๐ญ
๐จ๐ญ Hosting
2026-08-29 05:10:17
(1 hour ago)
Automated WAF report: 175-200 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-08-28 13:22:21
(17 hours ago)
Automatically blocked due to distributed attack
Hacking
๐ฉ๐ช
Bedios GmbH
2026-08-28 11:25:07
(19 hours ago)
Login credentials theft attempt
Hacking
๐ฎ๐ฉ
origrata
2026-08-28 09:44:11
(20 hours ago)
[OGWAF] path_traversal attack blocked | severity: high | GET /@fs/src/.env?raw?? | UA: Mozilla/5.0 ( ...
show more
[OGWAF] path_traversal attack blocked | severity: high | GET /@fs/src/.env?raw?? | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.4925.2
show less
Hacking
Web App Attack
Anonymous
2026-08-28 08:48:58
(21 hours ago)
35.243.191.49 - - [28/Aug/2026:10:48:54 +0200] "GET /@fs/../../.env?raw?? HTTP/1.1" 400 763 "-" "Moz ...
show more
35.243.191.49 - - [28/Aug/2026:10:48:54 +0200] "GET /@fs/../../.env?raw?? HTTP/1.1" 400 763 "-" "Mozilla/5.0 (compatible; LinkedInBot/1.0; +http://www.linkedin.com)"
35.243.191.49 - - [28/Aug/2026:10:48:58 +0200] "GET /@fs/..%2f..%2f..%2f..%2f..%2froot/.env?raw?? HTTP/1.1" 404 712 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; Discordbot/2.0; +https://discordapp.com) Chrome/133.0.4795.238 Safari/537.36"
35.243.191.49 - - [28/Aug/2026:10:48:58 +0200] "GET /@fs/../../../../../app/.env?raw?? HTTP/1.1" 400 763 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )"
35.243.191.49 - - [28/Aug/2026:10:48:58 +0200] "GET /@fs/..%2f..%2f..%2f..%2f..%2fapp/.env?raw?? HTTP/1.1" 404 712 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko; compatible; meta-externalagent/1.1; +https://developers.facebook.com/docs/sharing/webmasters/crawler) Chrome/130.0.1
...
show less
Brute-Force
SSH
๐บ๐ฆ
URAN Publishing Service
2026-08-28 06:10:19
(1 day ago)
[28/Aug/2026:09:10:18 +0300] -- 35.243.191.49 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET / ...
show more
[28/Aug/2026:09:10:18 +0300] -- 35.243.191.49 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /@fs/../../.env?raw?? HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-28 05:35:15
(1 day ago)
Restricted File Access Attempt. Matched phrase "/@fs/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐จ๐ญ
๐จ๐ญ Hosting
2026-08-28 05:10:47
(1 day ago)
Automated WAF report: 150-175 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 05:09:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.243.191.49 (49.191.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.191.49 (49.191.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:09:48.932842 2026] [security2:error] [pid 330:tid 330] [client 35.243.191.49:13898] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bobfaw.com"] [uri "/@fs/.env"] [unique_id "apEYHA8_6Gyr_n8TKvGz2wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 04:38:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.243.191.49 (49.191.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.191.49 (49.191.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 00:38:25.125141 2026] [security2:error] [pid 20882:tid 20882] [client 35.243.191.49:64698] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.watongalodging.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "apEQweVMEnRe6xAijWUAOgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 04:36:30
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
mnsf
2026-08-28 04:05:10
(1 day ago)
Scanning/Probing (26)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 04:03:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.243.191.49 (49.191.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.191.49 (49.191.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 00:03:37.028100 2026] [security2:error] [pid 31139:tid 31139] [client 35.243.191.49:4234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.gaeltv.com"] [uri "/@fs/app/.env"] [unique_id "apEImQLFpo-bjPe6oVGTNwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-28 03:55:56
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.243.191.49 (US/United States/49.19 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.243.191.49 (US/United States/49.191.243.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
Anonymous
2026-08-28 02:50:05
(1 day ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection