๐ฎ๐ณ
evicky2002
2026-05-20 04:30:47
(4 months ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
Anonymous
2026-05-14 17:25:09
(4 months ago)
fail2ban: apache-secrets-scan jail (1 hits in 2419200s) on skipper
Web App Attack
Hacking
๐ฉ๐ช
Hugopvigo
2026-05-06 21:28:11
(5 months ago)
"2026-05-06 21:28:10+00:00 82.165.104.50 IP con score alto (100) detectada en el log."
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-05-06 15:25:10
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 82.165.104.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.104.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 11:25:03.394455 2026] [security2:error] [pid 17684:tid 17684] [client 82.165.104.50:61015] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yerevanpress.am"] [uri "/.env"] [unique_id "aftdT7_GS0xCUIZcE4ZcZgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-05-06 15:22:43
(5 months ago)
Cloudflare WAF: Request Path: /.env Request Query: Host: whk.elhacker.net userAgent: python-request ...
show more
Cloudflare WAF: Request Path: /.env Request Query: Host: whk.elhacker.net userAgent: python-requests/2.26.0 Action: block Source: firewallManaged ASN Description: IONOS SE Country: DE Method: GET Timestamp: 2026-05-06T15:22:43Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-06 15:01:41
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 82.165.104.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.104.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 11:01:36.796383 2026] [security2:error] [pid 13327:tid 13327] [client 82.165.104.50:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sportsbookcommission.com"] [uri "/.env"] [unique_id "aftX0E7EaXMZLQEhfQydsgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
lns.bz
2026-05-06 14:52:02
(5 months ago)
Web app attack [PL.Lu]
Exploited Host
Web App Attack
๐ช๐ธ
el-brujo
2026-05-06 14:48:08
(5 months ago)
Cloudflare WAF: Request Path: /.env Request Query: Host: forum.elhacker.net userAgent: python-reque ...
show more
Cloudflare WAF: Request Path: /.env Request Query: Host: forum.elhacker.net userAgent: python-requests/2.26.0 Action: block Source: firewallManaged ASN Description: IONOS SE Country: DE Method: GET Timestamp: 2026-05-06T14:48:08Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
Alvino
2026-05-06 14:43:02
(5 months ago)
Blocked due to using a VPN or data center IP with abuse: 100
Web Spam
VPN IP
๐ณ๐ฑ
knock
2026-05-06 14:35:26
(5 months ago)
Knock-Knock honeypot brute-force: proto8 (2 total hits)
Brute-Force
๐ช๐ธ
el-brujo
2026-05-06 14:25:54
(5 months ago)
Cloudflare WAF: Request Path: /.env Request Query: Host: web.elhacker.net userAgent: python-request ...
show more
Cloudflare WAF: Request Path: /.env Request Query: Host: web.elhacker.net userAgent: python-requests/2.26.0 Action: block Source: firewallManaged ASN Description: IONOS SE Country: DE Method: GET Timestamp: 2026-05-06T14:25:54Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
oralunal
2026-05-06 14:24:25
(5 months ago)
IP banned by Fail2Ban in jail its-suss access.log mvfnds
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-06 14:07:58
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 82.165.104.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.104.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 10:07:54.147418 2026] [security2:error] [pid 1975:tid 1994] [client 82.165.104.50:64186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.okorganicgardening.org"] [uri "/.env"] [unique_id "aftLOkqF2LRy_DzrBs_GjwAAARE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Tripwire
2026-05-06 14:07:18
(5 months ago)
Scanning for exploits - /.env
Web App Attack
๐บ๐ธ
Alvino
2026-05-06 14:05:05
(5 months ago)
Blocked due to using a VPN or data center IP with abuse: 98
Web Spam
VPN IP