๐ณ๐ฑ
Eric
2025-09-15 02:08:59
(11 months ago)
Blocked by jail apache-security2
Hacking
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2025-09-14 21:59:10
(11 months ago)
Auto-ban: >500 bad req/min on 2025-09-13
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-09-14 13:07:19
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 51.44.97.115 (ec2-51-44-97-115.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 51.44.97.115 (ec2-51-44-97-115.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 09:07:11.794755 2025] [security2:error] [pid 2208450:tid 2208475] [client 51.44.97.115:49534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xavidominguez.com"] [uri "/.env"] [unique_id "aMa9_16D9IBHQ_5dAWfk9AAAAFc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-09-14 08:40:07
(11 months ago)
Restricted File Access Requests
Hacking
Brute-Force
๐ง๐ช
taivas.nl
2025-09-14 08:02:13
(11 months ago)
Site scraper
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-14 07:58:30
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 51.44.97.115 (ec2-51-44-97-115.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 51.44.97.115 (ec2-51-44-97-115.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 03:58:26.014774 2025] [security2:error] [pid 11937:tid 11937] [client 51.44.97.115:57720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zmgmt.com"] [uri "/.env"] [unique_id "aMZ1oh4kuC5bOHJhB6RFvAAAAAU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2025-09-14 07:21:58
(11 months ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
zorrigas
2025-09-14 06:57:11
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 51.44.97.115 (FR/France/ec2-51-44-97-115.eu-wes ...
show more
(mod_security) mod_security (id:210492) triggered by 51.44.97.115 (FR/France/ec2-51-44-97-115.eu-west-3.compute.amazonaws.com): 5 in the last 3600 secs
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-09-14 06:21:43
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 51.44.97.115 (ec2-51-44-97-115.eu-west-3.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 51.44.97.115 (ec2-51-44-97-115.eu-west-3.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 02:21:40.233884 2025] [security2:error] [pid 19636:tid 19636] [client 51.44.97.115:36918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zavijava.net"] [uri "/.env"] [unique_id "aMZe9PhcDZtcP2cjsNZA3AAAAAQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2025-09-14 06:21:08
(11 months ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
๐ฉ๐ช
McClay
2025-09-14 04:36:37
(11 months ago)
HTTP-404 spam:51.44.97.115 - - [14/Sep/2025:06:36:36 +0200] "GET /.env HTTP/1.1" 404 3876 "https://w ...
show more
HTTP-404 spam:51.44.97.115 - - [14/Sep/2025:06:36:36 +0200] "GET /.env HTTP/1.1" 404 3876 "https://www.google.com/" "Mozilla/5.0 (Linux i386; X11) AppleWebKit/535.23 (KHTML, like Gecko) Version/6.1.7 Safari/535.34"
51.44.97.115 - - [14/Sep/2025:06:36:36 +0200] "GET /.remote HTTP/1.1" 404 1072 "https://www.google.com/" "Mozilla/5.0 (Linux i386; X11) AppleWebKit/535.23 (KHTML, like Gecko) Version/6.1.7 Safari/535.34"
51.44.97.115 - - [14/Sep/2025:06:36:36 +0200] "GET /.local HTTP/1.1" 404 1072 "https://www.google.com/" "Mozilla/5.0 (Linux i386; X11) AppleWebKit/535.23 (KHTML, like Gecko) Version/6.1.7 Safari/535.34"
51.44.97.115 - - [14/Sep/2025:06:36:36 +0200] "GET /.production HTTP/1.1" 404 1072 "https://www.google.com/" "Mozilla/5.0 (Linux i386; X11) AppleWebKit/535.23 (KHTML, like Gecko) Version/6.1.7 Safari/535.34"
51.44.97.115 - - [14/Sep/2025:06:36:36 +0200] "GET /vendor/.env HTTP/1.1" 404 1072 "https://www.google.com/" "Mozilla/5.0 (Linux i386; X11) AppleWebKit/535.23 (KHTML, like Gecko) Versi
...
show less
Web App Attack
Anonymous
2025-09-14 04:16:44
(11 months ago)
(mod_security) mod_security triggered on hostname [redacted] 51.44.97.115 (FR/France/ec2-51-44-97-11 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 51.44.97.115 (FR/France/ec2-51-44-97-115.eu-west-3.compute.amazonaws.com)
show less
SQL Injection
๐ณ๐ฑ
Site.eu
2025-09-14 04:09:25
(11 months ago)
Excessive 404/403 errors
Brute-Force
๐ง๐ช
cmbplf
2025-09-14 01:25:49
(11 months ago)
2.490 requests with url.path *.env
Brute-Force
Bad Web Bot
Anonymous
2025-09-14 00:05:30
(11 months ago)
Blocked: Reason='Vulnerability probing โ PHP scan detected (30/60 min)'; Requests=30
Port Scan