๐ณ๐ฑ
homeshowdomain.nl
2026-10-02 22:00:22
(3 days ago)
Auto-ban: >3000 req/min op 2026-10-02
Web App Attack
SSH
Hacking
Anonymous
2026-10-02 04:34:33
(4 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-10-02 04:18:54
(4 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ณ๐ฟ
Tripwire
2026-10-02 01:28:02
(4 days ago)
Scanning for exploits - /.env
Web App Attack
๐ฉ๐ช
paissangroup
2026-10-01 23:41:26
(4 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
kosada.com
2026-10-01 23:33:04
(4 days ago)
Repeated requests for suspicious nonexistent URLs, for example: /.env.staging (HTTP/1.1 port 443, us ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /.env.staging (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:13:04
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.10.133 (133.10.230.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.10.133 (133.10.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:12:57.337043 2026] [security2:error] [pid 19543:tid 19543] [client 8.230.10.133:43156] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medioskreativos.com"] [uri "/.env"] [unique_id "aqnfCfJnavUP5hkL4yTgrQAAAAA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-09-15 23:02:14
(2 weeks ago)
[redacted] 8.230.10.133 - - [15/Sep/2026:22:23:58 +0100] "GET //lib/.env HTTP/1.1" 302 1539 0/72476 ...
show more
[redacted] 8.230.10.133 - - [15/Sep/2026:22:23:58 +0100] "GET //lib/.env HTTP/1.1" 302 1539 0/72476 "https://[redacted]/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_2_0) Gecko/20041007 Firefox/17.0" 443 [redacted] 8.230.10.133 - - [15/Sep/2026:22:23:59 +0100] "GET //lab/.env HTTP/1.1" 302 1539 0/51363 "https://[redacted]/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_2_0) Gecko/20041007 Firefox/17.0" 443
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-09-15 21:23:59
(2 weeks ago)
[redacted] 8.230.10.133 - - [15/Sep/2026:22:23:54 +0100] "GET /.env HTTP/1.1" 302 6758 0/68936 "http ...
show more
[redacted] 8.230.10.133 - - [15/Sep/2026:22:23:54 +0100] "GET /.env HTTP/1.1" 302 6758 0/68936 "https://[redacted]/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_2_0) Gecko/20041007 Firefox/17.0" 443 [redacted] 8.230.10.133 - - [15/Sep/2026:22:23:57 +0100] "GET //vendor/.env HTTP/1.1" 302 1539 0/98164 "https://[redacted]/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_2_0) Gecko/20041007 Firefox/17.0" 443
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
ambor
2026-09-15 21:12:25
(2 weeks ago)
Honeypot triggered: /.env on ifebridge.com. User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_3_ ...
show more
Honeypot triggered: /.env on ifebridge.com. User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_3_0) AppleWebKit/537.33 (KHTML, like Gecko) Chrome/10.0.125.18 Safari/536.7. Method: GET
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 16:55:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.10.133 (133.10.230.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.10.133 (133.10.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:55:35.454491 2026] [security2:error] [pid 6936:tid 7017] [client 8.230.10.133:55402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "exede-sales.com"] [uri "/.env"] [unique_id "aql4h81NscYoYyVnNXQNIwAAAgc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:49:03
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.230.10.133 (133.10.230.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.10.133 (133.10.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:48:58.704891 2026] [security2:error] [pid 31934:tid 31934] [client 8.230.10.133:41580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hodgalil.org"] [uri "/.env"] [unique_id "aqkwqjKDpLGisxqquHnCOgAAAAg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 04:56:21
(3 weeks ago)
Multiple WAF Violations
Web App Attack