๐บ๐ธ
LARL-Stompro-2024
2026-05-31 16:48:08
(3 weeks ago)
Evergreen ILS - Mylist Bot Abuse - HTTP Port 443 - Fake UserAgent. Requests:1
Bad Web Bot
๐ณ๐ฑ
BlueWire Hosting
2026-03-05 21:55:37
(3 months ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 21:07:52
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.16 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 16:07:46.794350 2026] [security2:error] [pid 30788:tid 30788] [client 102.129.234.16:8336] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "t9teamsportinggoods.com"] [uri "/.env"] [unique_id "aanwonZIKC8WZ13VTnFGWQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-03-05 21:04:54
(3 months ago)
path attack /.env
Web App Attack
๐บ๐ธ
S.O.B.A. Dev.
2026-03-05 20:46:30
(3 months ago)
Threat Blocked by BeeHive from (ASN:174) (Network:COGENT-174 - Cogent Communications, LLC) (Host:sob ...
show more
Threat Blocked by BeeHive from (ASN:174) (Network:COGENT-174 - Cogent Communications, LLC) (Host:soba.dev) (Method:GET) (Protocol:HTTP/1.1) (Timestamp:2026-03-05T20:46:30Z)
show less
Brute-Force
Web Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 20:42:25
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.16 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 15:42:18.733492 2026] [security2:error] [pid 2538:tid 2538] [client 102.129.234.16:22803] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conquesticon.org"] [uri "/.env"] [unique_id "aanqqq_xi0GS4MVE9eUCUwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-03-05 20:25:21
(3 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 20:01:50
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.16 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 15:01:45.675905 2026] [security2:error] [pid 2375:tid 2375] [client 102.129.234.16:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sportsbookcommission.com"] [uri "/.env"] [unique_id "aanhKXc0cjFoM_NHIWKAQwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
conseilgouz
2026-03-05 19:53:10
(3 months ago)
sle-17 : Block hidden directories=>/.env(/)
Hacking
๐บ๐ธ
myagent.site
2026-03-05 17:43:12
(3 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐จ๐ญ
teamsecure
2026-03-05 17:38:24
(3 months ago)
Banned for trying to access env
Web App Attack
๐ช๐ธ
el-brujo
2026-03-05 17:32:53
(3 months ago)
Cloudflare WAF: Request Path: /.env Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Macin ...
show more
Cloudflare WAF: Request Path: /.env Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0 Action: block Source: firewallManaged ASN Description: COGENT-174 - Cogent Communications, LLC Country: US Method: GET Timestamp: 2026-03-05T17:32:53Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-05 17:21:29
(3 months ago)
IM360 WAF: Laravel .env file access
Web App Attack
๐ซ๐ท
dynamix
2026-03-05 17:21:20
(3 months ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ฎ
as211431.net
2026-03-05 17:13:14
(3 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.env
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot