πΊπΈ
TPI-Abuse
2026-08-29 09:48:19
(24 minutes ago)
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 05:48:11.223640 2026] [security2:error] [pid 5618:tid 5618] [client 102.209.31.152:56215] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.windisfun.com"] [uri "/.env"] [unique_id "apKq2-jn5Co0QWyeDP3yxgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 09:21:29
(51 minutes ago)
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 05:21:21.548416 2026] [security2:error] [pid 28541:tid 28541] [client 102.209.31.152:59404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bodybuildbid.com"] [uri "/.env"] [unique_id "apKkkV9MgXI7klwt0i0dfgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 08:38:33
(1 hour ago)
102.209.31.152 - - [29/Aug/2026:08:38:33 +0000] "GET /.env HTTP/1.1" 404 7055 "-" "Mozilla/5.0 (Wind ...
show more
102.209.31.152 - - [29/Aug/2026:08:38:33 +0000] "GET /.env HTTP/1.1" 404 7055 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 08:31:52
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 04:31:46.492793 2026] [security2:error] [pid 2015:tid 2015] [client 102.209.31.152:57960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paulshorrock.com"] [uri "/.env"] [unique_id "apKY8r7CoQcgoVoTfKZ7JAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 08:15:19
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 04:15:13.746487 2026] [security2:error] [pid 30183:tid 30183] [client 102.209.31.152:53116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kemela.com"] [uri "/.env"] [unique_id "apKVEcAHLDJ2VDYnDhOipQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-08-29 07:05:14
(3 hours ago)
Abuse Detected (14)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 06:46:56
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:46:51.177179 2026] [security2:error] [pid 21849:tid 21877] [client 102.209.31.152:65316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.quantumgaze.com"] [uri "/.env"] [unique_id "apKAW9GITn1Ap5RhMVnYNAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 06:27:26
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:27:19.449644 2026] [security2:error] [pid 1864:tid 1864] [client 102.209.31.152:50701] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pleaseaddbacon.com"] [uri "/.env"] [unique_id "apJ7x7xs2k_EBQAbSo1TlgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπ¦
URAN Publishing Service
2026-08-29 06:18:58
(3 hours ago)
[29/Aug/2026:09:18:57 +0300] -- 102.209.31.152 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET ...
show more
[29/Aug/2026:09:18:57 +0300] -- 102.209.31.152 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /.env HTTP/1.1
show less
Bad Web Bot
Web App Attack
π§πͺ
voormedia
2026-08-29 05:48:53
(4 hours ago)
Accessed trap at '/.env'
Web App Attack
πΊπΈ
nationaleventpros.com
2026-08-29 05:23:39
(4 hours ago)
vulnerability scan
Web App Attack
π«π·
dynamix
2026-08-29 05:12:46
(4 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-08-29 04:50:01
(5 hours ago)
suspicious request in access.log
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 04:43:48
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.209.31.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:43:44.647452 2026] [security2:error] [pid 282146:tid 282160] [client 102.209.31.152:59385] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jofdt.com"] [uri "/.env"] [unique_id "apJjgANfDYkvhC1rmnqijAAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 04:26:43
(5 hours ago)
apache vulnerability scan
Web App Attack