๐บ๐ธ
zwebvigil
2026-08-27 04:53:02
(5 hours ago)
46.202.138.91 [26/Aug/2026:21:53:01 -0700] "GET /.env HTTP/1.1" 404 22 "-" port=31918 "Mozilla/5.0 ...
show more
46.202.138.91 [26/Aug/2026:21:53:01 -0700] "GET /.env HTTP/1.1" 404 22 "-" port=31918 "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36" "-" "-" "<host>" 38994
46.202.138.91 [26/Aug/2026:21:53:01 -0700] "GET /core/.env HTTP/1.1" 404 22 "-" port=31878 "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36" "-" "-" "<host>" 60095
46.202.138.91 [26/Aug/2026:21:53:01 -0700] "GET /app/.env HTTP/1.1" 404 22 "-" port=31948 "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36" "-" "-" "<host>" 63429
46.202.138.91 [26/Aug/2026:21:53:01 -0700] "GET /api/.env HTTP/1.1" 404 22 "-" port=31956 "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36" "-" "-" "<host>" 61028
46.202.
show less
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-26 20:35:01
(14 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐จ๐ฆ
polycoda
2026-08-26 20:16:49
(14 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based)
Hacking
Web App Attack
๐ฉ๐ช
paprika
2026-08-26 19:38:26
(15 hours ago)
Automated report #1: 1 attacks detected. Types: Brute-force (login).
Brute-Force
Email Spam
๐ฉ๐ช
dbmwebdesign
2026-08-26 18:50:04
(15 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
Lee Daniel
2026-08-26 15:46:29
(18 hours ago)
46.202.138.91 - - [26/Aug/2026:11:46:28 -0400] "GET /.env HTTP/1.1" 403 6315 "-" "Mozilla/5.0 (Macin ...
show more
46.202.138.91 - - [26/Aug/2026:11:46:28 -0400] "GET /.env HTTP/1.1" 403 6315 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 14:52:03
(19 hours ago)
Bot / scanning and/or hacking attempts: GET /admin/.env HTTP/1.1, GET /core/.env HTTP/1.1, GET /memb ...
show more
Bot / scanning and/or hacking attempts: GET /admin/.env HTTP/1.1, GET /core/.env HTTP/1.1, GET /member/.env HTTP/1.1, GET /test/.env HTTP/1.1, GET /dev/.env HTTP/1.1, GET /backend/.env HTTP/1.1, GET /backup/.env HTTP/1.1, GET /api/.env HTTP/1.1, GET /app/.env HTTP/1.1, GET /.env HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 11:29:01
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 46.202.138.91 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 46.202.138.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 07:28:56.708802 2026] [security2:error] [pid 25529:tid 25529] [client 46.202.138.91:49738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xirination.com"] [uri "/dev/.env"] [unique_id "ao7N-JSEl_EQa48lK2sEMAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-26 10:00:33
(1 day ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฉ๐ช
SwinT
2026-08-26 09:00:16
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:31:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 46.202.138.91 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 46.202.138.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:31:27.668191 2026] [security2:error] [pid 11239:tid 11239] [client 46.202.138.91:39092] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "icaruscreativearts.com"] [uri "/.env"] [unique_id "ao6IP1bMxcsblyLIwKQhrgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-26 06:21:20
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 04:54:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 46.202.138.91 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 46.202.138.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:54:46.097523 2026] [security2:error] [pid 29021:tid 29021] [client 46.202.138.91:16792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sharawi-gum.com"] [uri "/.env"] [unique_id "ao5xllwOnYCjdvulw4-8HwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ecode hosting
2026-08-26 04:35:06
(1 day ago)
Domain : sunnavturkey.com
Rule : env
2026-08-26 04:33:34 10.100.1.20 GET /app/.env - 443 - 46.202.13 ...
show more
Domain : sunnavturkey.com
Rule : env
2026-08-26 04:33:34 10.100.1.20 GET /app/.env - 443 - 46.202.138.91 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 - sunnavturkey.com 301 0 0 411 225 209 - -
show less
Hacking
SQL Injection
๐จ๐ฟ
SystemAdmin
2026-08-26 03:09:11
(1 day ago)
Doing bad things...
Web App Attack