๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:16
(14 hours ago)
Auto-ban: >3000 req/min op 2026-06-15
Web App Attack
SSH
Hacking
๐ซ๐ท
masterguru
2026-06-15 10:16:40
(1 day ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:54:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.229.130.188 (188.130.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.130.188 (188.130.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:54:12.654560 2026] [security2:error] [pid 22579:tid 22579] [client 8.229.130.188:36820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "solporpoise.com"] [uri "/.env.development"] [unique_id "ai-ThEBDn3QYpXAOHMQx5wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-15 04:06:01
(1 day ago)
Abuse Detected (49)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:49:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.229.130.188 (188.130.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.130.188 (188.130.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:49:17.715109 2026] [security2:error] [pid 14329:tid 14329] [client 8.229.130.188:44492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "k0cgy.net"] [uri "/.env.old"] [unique_id "ai9oLfqXRtzuoS_STjngPwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
pscriptos
2026-06-15 02:25:08
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-06-15 01:08:37
(1 day ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:51:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.229.130.188 (188.130.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.130.188 (188.130.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:51:37.082745 2026] [security2:error] [pid 24878:tid 24878] [client 8.229.130.188:55006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.madburylibrary.org"] [uri "/.env.production"] [unique_id "ai9MmYIricu1FDNuzrFrPwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-14 19:20:01
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
gadix
2026-06-14 11:45:18
(2 days ago)
[14/Jun/2026:13:45:13.529811 +0200] ai6USXBHAN4dLqRC7mnCTwAAARM 8.229.130.188 40440 127.0.0.1 7081
[ ...
show more
[14/Jun/2026:13:45:13.529811 +0200] ai6USXBHAN4dLqRC7mnCTwAAARM 8.229.130.188 40440 127.0.0.1 7081
[14/Jun/2026:13:45:13.531868 +0200] ai6USZVrpyBnZqDJwzyc5QAAAM8 8.229.130.188 40442 127.0.0.1 7081
[14/Jun/2026:13:45:13.535671 +0200] ai6USZVrpyBnZqDJwzyc5gAAANQ 8.229.130.188 40458 127.0.0.1 7081
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 06:22:45
(2 days ago)
(mod_security) mod_security (id:949110) triggered by 8.229.130.188 (188.130.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 8.229.130.188 (188.130.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 02:22:41.956335 2026] [security2:error] [pid 29752:tid 29752] [client 8.229.130.188:58860] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "akistech.com"] [uri "/.env.development.local"] [unique_id "ai5IsWYl84KdbWxaY9mUggAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-06-14 05:05:03
(2 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
Anonymous
2026-06-14 03:20:04
(2 days ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
๐ณ๐ฑ
homeshowdomain.nl
2026-03-23 23:01:01
(2 months ago)
Auto-ban: 272 malicious requests on 2026-03-22 (e.g., env/backup probes, brute-force, or error burst ...
show more
Auto-ban: 272 malicious requests on 2026-03-22 (e.g., env/backup probes, brute-force, or error bursts).
show less
Web App Attack
SSH
Hacking
๐ง๐ช
cmbplf
2026-03-22 15:14:59
(2 months ago)
800 requests with url.path */wp-includes/wlwmanifest.xml
Brute-Force
Bad Web Bot