Anonymous
2023-10-19 18:25:02
(2 years ago)
Configuration snooping (/.env):
5.254.46.74 - - [16/Oct/2023:23:15:59 +0100] "GET /.env HTTP/1.1" 4 ...
show more
Configuration snooping (/.env):
5.254.46.74 - - [16/Oct/2023:23:15:59 +0100] "GET /.env HTTP/1.1" 404 241 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Hacking
Web App Attack
Anonymous
2023-10-19 18:21:48
(2 years ago)
Configuration snooping (/.env):
5.254.46.74 - - [16/Oct/2023:23:01:50 +0100] "GET /.env HTTP/1.1" 4 ...
show more
Configuration snooping (/.env):
5.254.46.74 - - [16/Oct/2023:23:01:50 +0100] "GET /.env HTTP/1.1" 404 242 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Hacking
Web App Attack
๐จ๐ญ
backslash
2023-10-17 11:51:19
(2 years ago)
Bad Web Bot
๐ฌ๐ง
GKS-Webdesign
2023-10-16 07:17:37
(2 years ago)
Request blocked on 2023/10/15 @ 07:42:56 pm:
Blocked Count: 20
Pattern Match: revslider
Request ...
show more
Request blocked on 2023/10/15 @ 07:42:56 pm:
Blocked Count: 20
Pattern Match: revslider
Request URI: /wp-content/themes/IncredibleWP/framework/plugins/revslider/js/rev_admin.js
Protocol: HTTP/1.1
IP Address: 5.254.46.74
User Agent: python-requests/2.11.1
show less
Hacking
Web App Attack
๐บ๐ธ
dtorrer
2023-10-15 06:10:25
(2 years ago)
General vulnerability scan.
Port Scan
๐ฉ๐ช
DAILYKANBAN.COM
2023-10-13 17:00:41
(2 years ago)
(mod_security) mod_security (id:1000001) triggered by 5.254.46.74 (US/United States/-): 2 in the las ...
show more
(mod_security) mod_security (id:1000001) triggered by 5.254.46.74 (US/United States/-): 2 in the last 600 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Fri Oct 13 17:00:34.681889 2023] [security2:error] [pid 880313:tid 22784344565504] [client 5.254.46.74:0] [client 5.254.46.74] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/plugins/formcraft" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "9"] [id "1000001"] [msg "Restricted File Probe"] [data "Matched Data: /wp-content/plugins/formcraft/js/fcmodal.js found within REQUEST_URI"] [severity "CRITICAL"] [tag "paranoia-level/2"] [hostname "magicalmysteryplanttour.group"] [uri "/wp-content/plugins/formcraft/js/fcmodal.js"] [unique_id "ZSl3spwZcW5U1ZQFJTzG7wAAAVY"]
[Fri Oct 13 17:00:36.532833 2023] [security2:error] [pid 743434:tid 22784373982976] [client 5.254.46.74:0] [client 5.254.46.74] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/plugins/cherry-plugin" at R
show less
Web App Attack
๐บ๐ธ
Snowdome
2023-10-13 03:00:07
(2 years ago)
5.254.46.74 [US:3223.0] with UserAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko ...
show more
5.254.46.74 [US:3223.0] with UserAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0 targeting domain: snowplow.io, was dropped by WAF:MIA, DetectionCategory: Version Control - Information Disclosure, ResponseTime: 11ms
show less
Web App Attack
๐จ๐ญ
teamsecure
2023-10-12 23:55:18
(2 years ago)
Banned for trying to access env
Web App Attack
Anonymous
2023-10-12 23:43:57
(2 years ago)
Configuration snooping (/.env):
5.254.46.74 - - [13/Oct/2023:00:43:57 +0100] "GET /.env HTTP/1.1" 2 ...
show more
Configuration snooping (/.env):
5.254.46.74 - - [13/Oct/2023:00:43:57 +0100] "GET /.env HTTP/1.1" 200 234 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
show less
Hacking
Web App Attack
๐ท๐ธ
Smel
2023-10-12 19:37:11
(2 years ago)
HTTP/80/443/8080 Unauthorized Probe, Hack -
Hacking
Web App Attack
Anonymous
2023-10-12 18:14:36
(2 years ago)
Configuration snooping (/.env):
5.254.46.74 - - [12/Oct/2023:19:14:36 +0100] "GET /.env HTTP/1.1" 2 ...
show more
Configuration snooping (/.env):
5.254.46.74 - - [12/Oct/2023:19:14:36 +0100] "GET /.env HTTP/1.1" 200 234 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
show less
Hacking
Web App Attack
Anonymous
2023-10-12 14:59:47
(2 years ago)
Configuration snooping (/.env):
5.254.46.74 - - [12/Oct/2023:15:59:47 +0100] "GET /.env HTTP/1.1" 2 ...
show more
Configuration snooping (/.env):
5.254.46.74 - - [12/Oct/2023:15:59:47 +0100] "GET /.env HTTP/1.1" 200 234 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
show less
Hacking
Web App Attack
๐ท๐บ
ITShelter Security
2023-10-11 13:33:24
(2 years ago)
Restricted File Access Attempt
2023/10/11 16:33:24 +03:00 req: GET /.env HTTP/1.1, host: ***.pro
Bad Web Bot
Web App Attack