🇩🇪
tsZero
2026-09-05 20:54:28
(1 week ago)
Scan example: path=/..;/env.dev.js status=404
Hacking
🇫🇷
Teufel100
2026-09-04 02:40:22
(1 week ago)
ModSecurity rejected a query
Brute-Force
Hacking
Web App Attack
🇧🇪
delabiemedia.be
2026-09-03 08:22:40
(1 week ago)
45.89.242.111 - - [03/Sep/2026:10:22:39 +0200] "GET /cms/.env HTTP/1.1" 404 564 "-" "Mozilla/5.0 (X1 ...
show more
45.89.242.111 - - [03/Sep/2026:10:22:39 +0200] "GET /cms/.env HTTP/1.1" 404 564 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
45.89.242.111 - - [03/Sep/2026:10:22:39 +0200] "GET /script/.env HTTP/1.1" 404 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:106.0) Gecko/20100101 Firefox/106.0"
...
show less
Web App Attack
🇫🇷
vtchost.com
2026-09-03 00:30:49
(1 week ago)
minux.cc:443 45.89.242.111 - - [03/Sep/2026:02:30:48 +0200] "GET /config/default.json HTTP/1.1" 418 ...
show more
minux.cc:443 45.89.242.111 - - [03/Sep/2026:02:30:48 +0200] "GET /config/default.json HTTP/1.1" 418 4225 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-09-02 16:52:54
(1 week ago)
45.89.242.111 - - [02/Sep/2026:13:52:53 -0300] "GET /__tests__/test-become/.env HTTP/1.1" Dest:Port ...
show more
45.89.242.111 - - [02/Sep/2026:13:52:53 -0300] "GET /__tests__/test-become/.env HTTP/1.1" Dest:Port 443 HTTP_Status: 302
...
show less
Web App Attack
Anonymous
2026-07-23 01:48:15
(1 month ago)
Multiple, malicious web requests detected
Port Scan
Hacking
🇺🇸
Gabriel Camargo
2026-07-23 01:31:36
(1 month ago)
45.89.242.111 - - [22/Jul/2026:20:31:35 -0500] "GET /chosen.php?p= HTTP/1.1" 301 178 "-" "Go-http-cl ...
show more
45.89.242.111 - - [22/Jul/2026:20:31:35 -0500] "GET /chosen.php?p= HTTP/1.1" 301 178 "-" "Go-http-client/1.1"
45.89.242.111 - - [22/Jul/2026:20:31:35 -0500] "GET /file.php HTTP/1.1" 301 178 "-" "Go-http-client/1.1"
45.89.242.111 - - [22/Jul/2026:20:31:35 -0500] "GET /flower.php HTTP/1.1" 301 178 "-" "Go-http-client/1.1"
...
show less
Brute-Force
SSH
🇨🇭
backslash
2026-07-22 14:12:02
(1 month ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
🇺🇸
infra-monitor
2026-07-22 10:00:05
(1 month ago)
Automated ban via infra-monitor: webshell-probe, webshell-high-confidence
Port Scan
Hacking
Web App Attack
🇬🇷
setupgr
2026-07-22 05:18:48
(1 month ago)
(mod_security) mod_security (id:1000001) triggered by 45.89.242.111 (GB/United Kingdom/England/Broml ...
show more
(mod_security) mod_security (id:1000001) triggered by 45.89.242.111 (GB/United Kingdom/England/Bromley/-/[AS62240 CLOUVIDER Clouvider - Global ASN]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Wed Jul 22 08:18:45.359605 2026] [security2:error] [pid 2855695:tid 2856059] [client 45.89.242.111:31203] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/txets.php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "1000001"] [msg "Bad file blocked: /wp-content/themes/txets.php"] [severity "CRITICAL"] [tag "security"] [hostname "ions.gr"] [uri "/wp-content/themes/txets.php"] [unique_id "amBStZ35DvS_KjFXxmOutQAAA40"]
show less
Port Scan
🇺🇸
jcbriar
2026-07-06 14:21:02
(2 months ago)
Searching for vulnerable scripts
Hacking
Web App Attack
🇩🇪
FeG Deutschland
2026-07-06 08:09:37
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack
🇫🇷
rellik
2026-07-05 04:36:00
(2 months ago)
Mass Scanning Critical Files
Hacking
Brute-Force
Web App Attack
🇬🇧
Mendip_Defender
2026-06-30 17:47:13
(2 months ago)
45.89.242.111 - - [30/Jun/2026:18:47:02 +0100] "GET /wp-content/plugins/index.php HTTP/1.1" 403 6319 ...
show more
45.89.242.111 - - [30/Jun/2026:18:47:02 +0100] "GET /wp-content/plugins/index.php HTTP/1.1" 403 6319 "http://4x4response.uk/wp-content/plugins/index.php" "Go-http-client/2.0"
45.89.242.111 - - [30/Jun/2026:18:47:02 +0100] "GET /wp-content/plugins/advanced-llms-txt-generator/assets/css/css_json.php HTTP/1.1" 403 6319 "http://4x4response.uk/wp-content/plugins/advanced-llms-txt-generator/assets/css/css_json.php" "Go-http-client/2.0"
45.89.242.111 - - [30/Jun/2026:18:47:03 +0100] "GET /wp-content/plugins/linkpreview/index.php HTTP/1.1" 403 6319 "http://4x4response.uk/wp-content/plugins/linkpreview/index.php" "Go-http-client/2.0"
...
show less
Hacking
Web App Attack
Anonymous
2026-06-17 18:05:48
(2 months ago)
Web attack
Bad Web Bot
Web App Attack