Anonymous
2024-11-19 19:56:33
(1 year ago)
Bot / scanning and/or hacking attempts: GET /.env HTTP/1.1
Hacking
Web App Attack
๐ฌ๐ง
SecondEdge
2024-11-19 19:37:30
(1 year ago)
A web attack was detected from 45.61.136.47 (United States / California / Los Angeles) against hf.se ...
show more
A web attack was detected from 45.61.136.47 (United States / California / Los Angeles) against hf.second-edge.com (Git Variable Scan).
show less
Web App Attack
๐ฉ๐ช
sverson
2024-11-19 18:46:06
(1 year ago)
Automated report / Wordpress Attack Attempt
Hacking
Web App Attack
๐ซ๐ท
GoodOldTOS
2024-11-19 13:02:23
(1 year ago)
Bad keywords detected in request: /.env
Web App Attack
๐ต๐ฑ
sefinek.net
2024-11-19 09:08:48
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 399629 (BLNWX)
Protocol: ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 399629 (BLNWX)
Protocol: HTTP/1.1 (GET method)
Zone: genshin.sefinek.net
Endpoint: /.env
Timestamp: 2024-11-19T07:08:42Z
Ray ID: 8e4e5edf992d0d58
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:132.0) Gecko/20100101 Firefox/132.0
Report generated by Cloudflare-WAF-To-AbuseIPDB:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
himanshu LNU
2024-11-19 08:44:02
(1 year ago)
Domain : globalgetconnect.com
Rule : env
2024-11-19 08:42:44 ***hidden-privacy*** GET /.env - 443 - ...
show more
Domain : globalgetconnect.com
Rule : env
2024-11-19 08:42:44 ***hidden-privacy*** GET /.env - 443 - 45.61.136.47 HTTP/1.1 Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:132.0) Gecko/20100101 Firefox/132.0 - globalgetconnect.com 404 0 2 12712 213 258 - -
show less
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2024-11-19 01:43:01
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.61.136.47 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.61.136.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 18 20:42:57.419022 2024] [security2:error] [pid 26083:tid 26083] [client 45.61.136.47:44718] [client 45.61.136.47] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fruitacpa.com.rooksfamily.com"] [uri "/.env"] [unique_id "ZzvtId9upxmVWIPKfRKHRAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2024-11-18 22:07:29
(1 year ago)
Bot webscan: 1 attempts were recorded from 45.61.136.47
45.61.136.47 "GET /.env HTTP/1.1" 404 3265 " ...
show more
Bot webscan: 1 attempts were recorded from 45.61.136.47
45.61.136.47 "GET /.env HTTP/1.1" 404 3265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:132.0) Gecko/20100101 Firefox/132.0"
show less
Port Scan
๐ฌ๐ง
SecondEdge
2024-11-18 18:02:30
(1 year ago)
A web attack was detected from 45.61.136.47 (United States / California / Los Angeles) against lifeo ...
show more
A web attack was detected from 45.61.136.47 (United States / California / Los Angeles) against lifeofstu.co.uk (Git Variable Scan).
show less
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2024-11-18 17:12:17
(1 year ago)
(mod_security-custom) mod_security (id:210492) triggered by 45.61.136.47 (US/United States/-): 1 in ...
show more
(mod_security-custom) mod_security (id:210492) triggered by 45.61.136.47 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [Mon Nov 18 17:12:14.466371 2024] [:error] [pid 3850301:tid 3850330] [client 45.61.136.47:57514] [client 45.61.136.47] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/usr/local/apache/modsecurity-cwaf/rules/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lga2-1.starburstserver.net"] [uri "/.env"] [unique_id "Zzt1bgJdrNHvnrOWEIScRAAAAMI"]
show less
Brute-Force
๐ซ๐ท
lindi
2024-11-18 15:46:51
(1 year ago)
trying to access .env file
...
Hacking
Web App Attack
Anonymous
2024-11-18 13:38:22
(1 year ago)
2024/11/18 14:38:21 [error] 1427#1427: *10654814 access forbidden by rule, client: 45.61.136.47, ser ...
show more
2024/11/18 14:38:21 [error] 1427#1427: *10654814 access forbidden by rule, client: 45.61.136.47, server: aide.bobelweb.eu, request: "GET /.env HTTP/1.1", host: "ld.stage.livedata.fr"
show less
Brute-Force
Web App Attack
๐บ๐ธ
jcbriar
2024-11-18 08:35:12
(1 year ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐บ๐ธ
smallbottle
2024-11-18 08:12:15
(1 year ago)
The IP has triggered Cloudflare WAF. action: block source: firewallCustom clientAsn: 399629 clientAS ...
show more
The IP has triggered Cloudflare WAF. action: block source: firewallCustom clientAsn: 399629 clientASNDescription: BLNWX clientCountryName: US clientIP: 45.61.136.47 clientRequestHTTPMethodName: POST clientRequestHTTPProtocol: HTTP/1.1 clientRequestPath: / clientRequestQuery: datetime: 2024-11-17T22:38:10Z rayName: 8e4335a40ad52ae0 ruleId: 4989f24696b94676961cd00c29a049bb userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:132.0) Gecko/20100101 Firefox/132.0. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Web Spam
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2024-11-18 08:07:31
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities - 13
Exploited Host
Web App Attack