π©πͺ
FeG Deutschland
2026-06-02 11:05:43
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
π§π·
Halux
2026-06-02 10:58:33
(1 day ago)
74.50.84.246 Probing protected path or service
Web App Attack
π©πͺ
HandyTreff.de
2026-06-02 09:05:13
(1 day ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -66.548 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -66.548 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Sa
show less
Web App Attack
Bad Web Bot
π©π°
Leif Neland
2026-06-02 09:00:03
(1 day ago)
Detected by CrowdSec on slim
Brute-Force
π«π·
IRISIO
2026-06-02 08:32:03
(1 day ago)
scans/SQL injection/spam posts : 20 queries
Web App Attack
SQL Injection
π³π±
e.fierstra
2026-06-02 08:18:44
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πͺπΈ
yvoictra
2026-06-02 08:10:01
(1 day ago)
74.50.84.246 - - [02/Jun/2026:10:09:59 +0200] "GET /.env HTTP/1.1" 404 14 "-" "Mozilla/5.0 (Windows ...
show more
74.50.84.246 - - [02/Jun/2026:10:09:59 +0200] "GET /.env HTTP/1.1" 404 14 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
74.50.84.246 - - [02/Jun/2026:10:09:59 +0200] "POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 404 14 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
74.50.84.246 - - [02/Jun/2026:10:10:00 +0200] "GET /vendor/laravel-filemanager/js/script.js HTTP/1.1" 404 14 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
74.50.84.246 - - [02/Jun/2026:10:10:00 +0200] "GET /public/vendor/laravel-filemanager/js/script.js HTTP/1.1" 404 14 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
74.50.84.246 - - [02/Jun/2026:10:10:00 +0200] "GET /livewire/preview-file/123 HTTP/1.1" 404 14 "-" "Mozilla/
...
show less
Brute-Force
Web App Attack
Anonymous
2026-06-02 08:08:02
(1 day ago)
Sensitive file access attempt
Hacking
π¦πΊ
2000cn.com.au
2026-06-02 06:09:29
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-06-02 05:21:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.50.84.246 (vps3409975.trouble-free.net): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 74.50.84.246 (vps3409975.trouble-free.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 01:21:47.070814 2026] [security2:error] [pid 23048:tid 23048] [client 74.50.84.246:35358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gurneysbottleshop.com"] [uri "/.env"] [unique_id "ah5oa5x_iOOYskvJic9-LgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
openstrike.co.uk
2026-06-02 05:13:52
(1 day ago)
4 attacks on Laravel URLs, VC URLs, env grabbing URLs, PHP URLs:
GET /_ignition/execute-solution HTT ...
show more
4 attacks on Laravel URLs, VC URLs, env grabbing URLs, PHP URLs:
GET /_ignition/execute-solution HTTP/1.1
GET /.git/config HTTP/1.1
GET /.env HTTP/1.1
POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
show less
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-06-02 04:33:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.50.84.246 (vps3409975.trouble-free.net): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 74.50.84.246 (vps3409975.trouble-free.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 00:33:13.737904 2026] [security2:error] [pid 10831:tid 10831] [client 74.50.84.246:26206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "guitarsouth.com"] [uri "/.env"] [unique_id "ah5dCWbeZJ2NUZAJYyg_HQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-06-02 04:25:19
(1 day ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
Anonymous
2026-06-02 04:01:43
(1 day ago)
74.50.84.246 - - [02/Jun/2026:01:01:41 -0300] "GET /.env HTTP/1.1" 403 829 "https://guiadovarejo.com ...
show more
74.50.84.246 - - [02/Jun/2026:01:01:41 -0300] "GET /.env HTTP/1.1" 403 829 "https://guiadovarejo.com.br/.env" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
74.50.84.246 - - [02/Jun/2026:01:01:41 -0300] "GET /.git/config HTTP/1.1" 403 829 "https://guiadovarejo.com.br/.git/config" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Port Scan
πͺπΈ
XiDeRo
2026-06-02 03:47:01
(1 day ago)
IP bloqueada por puntuaciΓ³n de karma acumulada (Guardian Web v2).
Port Scan
Web App Attack