๐ฉ๐ช
Bedios GmbH
2026-09-21 00:24:54
(1 week ago)
Login credentials theft attempt
Hacking
๐ญ๐ฐ
Anonymous
2026-09-08 19:39:49
(3 weeks ago)
2026-09-08 19:39:48 warning[4255796]: host [45.133.193.39]: unauthorized access attempted: ...
show more
2026-09-08 19:39:48 warning[4255796]: host [45.133.193.39]: unauthorized access attempted: /
show less
Port Scan
Brute-Force
๐ง๐ช
sid3windr
2026-08-13 23:52:47
(1 month ago)
GET /.env (Tarpitted for 1d15h8m35s, wasted 8.06MB)
Web App Attack
Anonymous
2026-08-13 13:56:00
(1 month ago)
AndroxGh0st.Malware
Hacking
Anonymous
2026-08-12 08:57:39
(1 month ago)
Port scan and brute force attack
Port Scan
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-12 08:50:50
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.133.193.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.133.193.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 04:50:40.110247 2026] [security2:error] [pid 768449:tid 768449] [client 45.133.193.39:53511] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mitchellamazing.com"] [uri "/.env"] [unique_id "anwz4OP_pPbETKisS1hwcQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 08:12:58
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.133.193.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.133.193.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 04:12:48.696039 2026] [security2:error] [pid 22864:tid 22864] [client 45.133.193.39:59271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vsecuritysolutions.com"] [uri "/.env"] [unique_id "anwrANt2z-Zdp4Mk51etmgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-08-12 08:04:46
(1 month ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.env
Web App Attack
๐ฑ๐ป
garmtech.com
2026-08-12 08:04:46
(1 month ago)
IM360 WAF: Laravel Apps Leaking Secrets exploit attempt MV:androxgh0st
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 07:52:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.133.193.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.133.193.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 03:52:15.364136 2026] [security2:error] [pid 504163:tid 504163] [client 45.133.193.39:42101] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frame-sa.com"] [uri "/.env"] [unique_id "anwmL8Wavu2JcFOl6SoNiQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
xveil
2026-08-06 02:58:07
(1 month ago)
2026-08-06T09:58:05.510346 mail-honeypot postfix/submission/smtpd[26576]: warning: unknown[45.133.19 ...
show more
2026-08-06T09:58:05.510346 mail-honeypot postfix/submission/smtpd[26576]: warning: unknown[45.133.193.39]: SASL LOGIN authentication failed: authentication failure
...
show less
Brute-Force
๐ญ๐ฐ
Anonymous
2026-07-26 19:39:50
(2 months ago)
2026-07-26 19:39:49 warning[2845276]: host [45.133.193.39]: unauthorized access attempted: ...
show more
2026-07-26 19:39:49 warning[2845276]: host [45.133.193.39]: unauthorized access attempted: /
show less
Port Scan
Brute-Force
๐ง๐ท
Halux
2026-07-22 02:59:08
(2 months ago)
45.133.193.39 Probing protected path or service
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-07-22 02:34:52
(2 months ago)
[Wed Jul 22 12:34:52.004794 2026] [security2:error] [pid 330578] [client 45.133.193.39:37937] [clien ...
show more
[Wed Jul 22 12:34:52.004794 2026] [security2:error] [pid 330578] [client 45.133.193.39:37937] [client 45.133.193.39] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.info"] [uri "/.env"] [unique_id "amAsTJUPESzEywpsA4ZLigAAAA8"], referer: http://paulshipley.info/.env
...
show less
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-07-22 02:33:47
(2 months ago)
Probing websites for vulnerabilities
Web App Attack