๐บ๐ธ
c y
2026-07-19 09:02:36
(4 weeks ago)
Security Monitor detected: sensitive_path_access
Port Scan
๐ธ๐ช
Per-Erik Runebert
2026-07-13 08:39:17
(1 month ago)
Excessive unauthorized requests
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-12 09:51:34
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 05:51:20.867608 2026] [security2:error] [pid 13668:tid 13668] [client 45.148.10.124:52372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.portraitartisans.vittariadesign.com"] [uri "/.env"] [unique_id "alNjmNT4g91utLH8cBjhmgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-12 07:47:28
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 03:47:11.624962 2026] [security2:error] [pid 29138:tid 29138] [client 45.148.10.124:39290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "crittergetterpestcontrol.com"] [uri "/.env"] [unique_id "alNGf1252RtiFImykpI0qgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-07-12 07:35:42
(1 month ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ธ๐ฌ
serverutama
2026-07-12 06:58:39
(1 month ago)
[fail2ban nginx-444] Scanner/bot: request berulang diblok nginx (444) โ probe path sensitif (.env/.g ...
show more
[fail2ban nginx-444] Scanner/bot: request berulang diblok nginx (444) โ probe path sensitif (.env/.git/wp/cgi) | bukti: 45.148.10.124 - - [12/Jul/2026:06:58:38 +0000] "GET /.env HTTP/1.1" 444 0 "-" "Python/3.12 aiohttp/3.14.1" "-"
45.148.10.124 - - [12/Jul/2026:06:58:38 +0000] "GET /debug/vars HTTP/1.1" 444 0 "-" "Python/3.12 aiohttp/3.14.1" "-"
45.148.10.124 - - [12/Jul/2026:06:58:38 +0000] "GET /plugin/CloneSite/cloneClient.json.php HTTP/1.1" 444 0 "-" "Python/3.12 aiohttp/3.14.1" "-"
45.148.10.124 - - [12/Jul/2026:06:58:38 +0000] "OPTIONS /api/inngest HTTP/1.1" 444 0 "-" "Python/3.12 aiohttp/3.14.1" "-"
45.148.10.124 - - [12/Jul/2026:06:58:38 +0000] "GET /v1/onboarding/config?token= HTTP/1.1" 444 0 "-" "Python/3.12 aiohttp/3.14.1" "-"
45.148.10.124 - - [12/Jul/2026:06:58:38 +0000] "GET /api/templates HTTP/1.1" 444 0 "-" "Python/3.12 aiohttp/3.14.1" "-"
show less
Port Scan
Bad Web Bot
Web App Attack
๐จ๐ฟ
kronos
2026-07-12 06:54:50
(1 month ago)
IDS: ET DROP Dshield Block Listed Source group 1 | SID:2402000
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-12 06:46:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 02:46:20.813485 2026] [security2:error] [pid 28970:tid 28970] [client 45.148.10.124:51622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aics.alitcogroup.com"] [uri "/.env"] [unique_id "alM4PM4GcC6NNHtKJehquwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-12 06:08:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 02:08:04.915527 2026] [security2:error] [pid 4635:tid 4635] [client 45.148.10.124:33702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "naghmehfarahmand.com"] [uri "/.env"] [unique_id "alMvRFmb4VP5iu91EFnevgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Artelis
2026-07-12 06:07:29
(1 month ago)
45.148.10.124 - - [12/Jul/2026:06:07:28 +0000] "GET /.env HTTP/1.1" 404 146 "-" "Python/3.12 aiohttp ...
show more
45.148.10.124 - - [12/Jul/2026:06:07:28 +0000] "GET /.env HTTP/1.1" 404 146 "-" "Python/3.12 aiohttp/3.14.1"
...
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-12 05:11:43
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐ฉ๐ช
Carsten
2026-07-12 04:36:09
(1 month ago)
GET [.env]
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-12 02:19:38
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 11 22:19:23.445266 2026] [security2:error] [pid 23162:tid 23190] [client 45.148.10.124:37758] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "toastandfigs.com"] [uri "/.env"] [unique_id "alL5q81VETm8xH6VGCaPlwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-12 02:03:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.10.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 11 22:03:12.133330 2026] [security2:error] [pid 25718:tid 25718] [client 45.148.10.124:36622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.mumawvickers.com"] [uri "/.env"] [unique_id "alL14AJEI2bHvb8Lp-tN9QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
kranem
2026-07-12 00:00:14
(1 month ago)
Triggered Cloudflare WAF from NL.
Action taken: BLOCK
ASN: 48090 (TECHOFF SRV LIMITED)
Protocol: HTT ...
show more
Triggered Cloudflare WAF from NL.
Action taken: BLOCK
ASN: 48090 (TECHOFF SRV LIMITED)
Protocol: HTTP/1.1 (GET method)
Endpoint: /debug/vars
Timestamp: 2026-07-11T23:46:32Z
User-Agent: Python/3.12 aiohttp/3.14.1
show less
Bad Web Bot