๐ซ๐ท
Vaction
2026-10-02 09:36:03
(1 day ago)
46.101.124.143 - - [02/Oct/2026:11:36:03 +0200] "GET /.env HTTP/1.1" 404 381 "-" "Mozilla/5.0 (Windo ...
show more
46.101.124.143 - - [02/Oct/2026:11:36:03 +0200] "GET /.env HTTP/1.1" 404 381 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-10-01 23:24:19
(1 day ago)
trying to access non-authorized port
Port Scan
๐ณ๐ฑ
Alt255
2026-10-01 16:34:48
(2 days ago)
[mx03al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Examp ...
show more
[mx03al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 46.101.124.143 - - [01/Oct/2026:18:34:38 +0200] "GET /.env.bak HTTP/1.1" 404 7823 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 14:58:13
(2 days ago)
(caddyscan) Scanner path probe from 46.101.124.143 (DE/Germany/-): 5 in the last 3600 secs; Ports: * ...
show more
(caddyscan) Scanner path probe from 46.101.124.143 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 207.148.6.135 200 2627 46.101.124.143 - - [01/Oct/2026:14:57:58 +0000] "GET /.env HTTP/1.1"
207.148.6.135 200 2627 46.101.124.143 - - [01/Oct/2026:14:58:00 +0000] "GET /.env.bak HTTP/1.1"
207.148.6.135 200 2627 46.101.124.143 - - [01/Oct/2026:14:58:03 +0000] "GET /.env.backup HTTP/1.1"
207.148.6.135 200 2627 46.101.124.143 - - [01/Oct/2026:14:58:06 +0000] "GET /app/.env HTTP/1.1"
207.148.6.135 200 2627 46.101.124.143 - - [01/Oct/2026:14:58:08 +0000] "GET /.env.production HTTP/1.1"
show less
Port Scan
Anonymous
2026-10-01 13:29:47
(2 days ago)
fail2ban jail apache-secrets-probe: 46.101.124.143 - - [23/Sep/2026:17:54:22 -0700] "GET /.env.bak H ...
show more
fail2ban jail apache-secrets-probe: 46.101.124.143 - - [23/Sep/2026:17:54:22 -0700] "GET /.env.bak HTTP/1.1" 403 441 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Web App Attack
๐ซ๐ฎ
KTSTechnology
2026-10-01 12:39:27
(2 days ago)
Web vulnerability scanning detected by our ISP firewall
Web App Attack
Anonymous
2026-10-01 12:17:23
(2 days ago)
46.101.124.143 - - [01/Oct/2026:12:17:08 +0000] "\x16\x03\x01\x02\x00\x01\x00\x01\xFC\x03\x03\xF3$\x ...
show more
46.101.124.143 - - [01/Oct/2026:12:17:08 +0000] "\x16\x03\x01\x02\x00\x01\x00\x01\xFC\x03\x03\xF3$\xBF\xF2\x066\x88y\xEEs5\x9B\xFB\xCB\xB5w5%\xB7\xAB3C[L'\xF7L\xCD\xFA\xBEA\xC7 \xD0\xA2`\x1D" 400 150 "-" "-"
46.101.124.143 - - [01/Oct/2026:12:17:09 +0000] "\x16\x03\x01\x02\x00\x01\x00\x01\xFC\x03\x03|\xD2\x19\xA4\xEF\xA3W@\x934\xED\x87\xDE\x87\x17H3\xBB\x5C\xEE!$Z/G\xABv]\xAF\x06\x10\xB9 W\xDA\xEF\xB3j\xCE\x1E\x8B\x89\xF93\xBEx\x8FE\xB1\x81l\xE7\x07\xEB\xB8O\x01p~\x7F\x1A\x8E\xBF\xC1f\x00>\x13\x02\x13\x03\x13\x01\xC0,\xC00\x00\x9F\xCC\xA9\xCC\xA8\xCC\xAA\xC0+\xC0/\x00\x9E\xC0$\xC0(\x00k\xC0#\xC0'\x00g\xC0" 400 150 "-" "-"
46.101.124.143 - - [01/Oct/2026:12:17:10 +0000] "\x16\x03\x01\x02\x00\x01\x00\x01\xFC\x03\x03A\xC6\x97" 400 150 "-" "-"
46.101.124.143 - - [01/Oct/2026:12:17:12 +0000] "\x16\x03\x01\x02\x00\x01\x00\x01\xFC\x03\x03s\x992i\x87\x9EI\xED\xEB\x86\xE2\xA5Z\x95@\x04\xF6\xAE\xBB\xF5(q\xB0\x04W\xEB)\xB8\x0E\x8E\xAE\x8E \xD6F\xA8\x88\x1F\x82\xEE\xDF\x91\x9B\xFA\xC6\x1Ck++M\xE9l
...
show less
Web App Attack
๐จ๐ฆ
Roper123
2026-10-01 12:04:10
(2 days ago)
Web exploits
Hacking
Web App Attack
๐ซ๐ท
dwmp
2026-10-01 09:28:19
(2 days ago)
[01/Oct/2026:11:28:18.686422 +0200] ar4nslEuClLxVkc55pWv1gAAAM4 46.101.124.143 56224 38.242.227.117 ...
show more
[01/Oct/2026:11:28:18.686422 +0200] ar4nslEuClLxVkc55pWv1gAAAM4 46.101.124.143 56224 38.242.227.117 7080
[01/Oct/2026:11:28:18.785465 +0200] ar4nslEuClLxVkc55pWv1wAAANE 46.101.124.143 56240 38.242.227.117 7080
[01/Oct/2026:11:28:18.901631 +0200] ar4nslEuClLxVkc55pWv2AAAAMQ 46.101.124.143 56254 38.242.227.117 7080
...
show less
Brute-Force
SSH
๐ซ๐ท
Baking333
2026-10-01 09:22:35
(2 days ago)
[redacted] 46.101.124.143 - - [01/Oct/2026:10:22:30 +0100] "GET /.env HTTP/1.1" 307 379 "-" "Mozilla ...
show more
[redacted] 46.101.124.143 - - [01/Oct/2026:10:22:30 +0100] "GET /.env HTTP/1.1" 307 379 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" [redacted] 46.101.124.143 - - [01/Oct/2026:10:22:33 +0100] "GET /.[redacted] HTTP/1.1" 307 341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-10-01 01:01:01
(2 days ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ซ๐ฎ
Maxetow
2026-10-01 00:39:09
(2 days ago)
Scan port: 443 | 1 total | size=60B
Port Scan
๐น๐ท
Threat.live
2026-10-01 00:15:03
(2 days ago)
Threat.live: Web Scan
Web App Attack
๐ซ๐ฎ
oh.mg
2026-09-30 23:08:43
(2 days ago)
[Thu Oct 01 01:08:42.211748 2026] [security2:error] [pid 3870427:tid 3870447] [client 46.101.124.143 ...
show more
[Thu Oct 01 01:08:42.211748 2026] [security2:error] [pid 3870427:tid 3870447] [client 46.101.124.143:54922] [client 46.101.124.143] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 8)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "95.216.72.247"] [uri "/.env"] [unique_id "ar2Weu0jVNMjm4hbQBGWugAAAJI"]
[Thu Oct 01 01:08:42.877760 2026] [security2:error] [pid 3870427:tid 3870441] [client 46.101.124.143:54922] [client 46.101.124.143] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 13)"] [ver "OWASP_CRS/4.10.0-dev"] [
...
show less
Web App Attack
Bad Web Bot
๐ต๐ฑ
nfsec.pl
2026-09-30 14:28:17
(3 days ago)
Detected: TCP scan on port: 8080 with flags: SYN
Port Scan