๐ฉ๐ช
FeG Deutschland
2026-09-18 22:01:48
(19 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
masterguru
2026-09-04 09:48:21
(2 weeks ago)
Host header is a numeric IP address. Pattern match "^ (920350-165)
Hacking
Bad Web Bot
๐ฆ๐บ
2000cn.com.au
2026-04-20 17:22:25
(4 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
myagent.site
2026-02-09 22:10:57
(7 months ago)
Blocking for trying to access an exploit file: /app/.git/config
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-09 17:59:35
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 12:59:23.966936 2026] [security2:error] [pid 850999:tid 850999] [client 45.3.33.10:45247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "furfriend-z.com"] [uri "/wp/.git/config"] [unique_id "aYoge3DQ6GvF-lmdiOiIjAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 17:35:45
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 12:35:37.629868 2026] [security2:error] [pid 28952:tid 28952] [client 45.3.33.10:10037] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fundingworkingcapital.com"] [uri "/.env.staging"] [unique_id "aYoa6QYr3E01_Ko4yYbYkQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 17:17:06
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 12:16:57.568714 2026] [security2:error] [pid 1240:tid 1240] [client 45.3.33.10:40653] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fullyevil.com"] [uri "/.env.production"] [unique_id "aYoWidPW2gfByJ4z8PpuOQAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 12:26:12
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 07:26:07.184609 2026] [security2:error] [pid 19339:tid 19460] [client 45.3.33.10:44035] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gamecrazy.us"] [uri "/frontend/.env"] [unique_id "aYnSX4gSOxwRKbWl7oL5kQAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 10:19:58
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.33.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 05:19:55.503867 2026] [security2:error] [pid 26556:tid 26556] [client 45.3.33.10:24931] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gacstoday.com"] [uri "/api/.env"] [unique_id "aYm0ywGnL8N3W0DxO8WL1wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-11 13:12:06
(8 months ago)
wordpress-trap
Web App Attack
๐บ๐ธ
island-freaks.com
2026-01-10 09:03:20
(8 months ago)
Attack Type: WordPress Exploit Bot attempt on /wp-login.php | DNS 45.3.33.10 | Agent: Mozilla/5.0 (W ...
show more
Attack Type: WordPress Exploit Bot attempt on /wp-login.php | DNS 45.3.33.10 | Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
show less
Port Scan
Hacking
Bad Web Bot
Exploited Host
Web App Attack
๐ฎ๐น
VHosting
2025-12-23 10:47:51
(8 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
Anonymous
2025-12-03 13:46:09
(9 months ago)
botnet
DDoS Attack
Anonymous
2025-11-27 09:59:54
(9 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.27 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.27 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-16 08:21:59
(10 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.16 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.16 is noted in report timestamp
show less
Hacking
Brute-Force