🇪🇸
librebit
2026-08-12 03:11:33
(2 weeks ago)
Brute force
Brute-Force
🇩🇪
FeG Deutschland
2026-06-01 11:21:25
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇮🇹
[email protected]
2026-05-22 22:13:27
(3 months ago)
[Sat May 23 00:13:26.919468 2026] [authz_core:error] [pid 239699:tid 239801] [client 104.207.58.51:1 ...
show more
[Sat May 23 00:13:26.919468 2026] [authz_core:error] [pid 239699:tid 239801] [client 104.207.58.51:14535] AH01630: client denied by server configuration: /var/www/html/MyWeb/Wordpress_www/.wp-config.php.swp
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 12:04:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 07:04:49.382236 2026] [security2:error] [pid 19791:tid 19860] [client 104.207.58.51:22881] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tigerresource.com"] [uri "/frontend/.env"] [unique_id "aZG2YRKq6u_YnrIXroFjDgAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-02-15 11:37:13
(6 months ago)
Try to access /dev/.git/config
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 06:05:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 01:05:42.434551 2026] [security2:error] [pid 23286:tid 23312] [client 104.207.58.51:10831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sylvestconsulting.com"] [uri "/.env"] [unique_id "aZFiNpO6c80OtUPzKnPHggAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
myagent.site
2026-02-15 05:35:17
(6 months ago)
Blocking for trying to access an exploit file: /new/.git/config
Hacking
🇺🇸
TPI-Abuse
2026-02-15 04:53:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 23:53:05.804874 2026] [security2:error] [pid 9529:tid 9529] [client 104.207.58.51:13765] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "suffolksystems.com"] [uri "/app/.env"] [unique_id "aZFRMdYVWM5tj0U5JrrAnQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 03:01:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:01:19.733176 2026] [security2:error] [pid 22783:tid 22783] [client 104.207.58.51:39717] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ssl-grp.com"] [uri "/.env.local"] [unique_id "aZE2_9WgNo9FYdD4kFzRLgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
masterguru
2026-02-15 02:58:27
(6 months ago)
. Matched phrase "/.env" at REQUEST_URI. (210492-123)
Web App Attack
🇩🇪
gadix
2026-02-15 02:52:52
(6 months ago)
[15/Feb/2026:03:52:51.420775 +0100] aZE1A7qd8Xs_tkFeKNEY3AAAAE0 104.207.58.51 37736 127.0.0.1 7081
[ ...
show more
[15/Feb/2026:03:52:51.420775 +0100] aZE1A7qd8Xs_tkFeKNEY3AAAAE0 104.207.58.51 37736 127.0.0.1 7081
[15/Feb/2026:03:52:51.521173 +0100] aZE1A7qd8Xs_tkFeKNEY3QAAAEc 104.207.58.51 37744 127.0.0.1 7081
[15/Feb/2026:03:52:51.719032 +0100] aZE1A7qd8Xs_tkFeKNEY3gAAAEM 104.207.58.51 37746 127.0.0.1 7081
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 02:44:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:44:07.937938 2026] [security2:error] [pid 21196:tid 21196] [client 104.207.58.51:22275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spotsysanta.com"] [uri "/backend/.env"] [unique_id "aZEy949ClZke88IdYY0nuwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 01:27:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:26:54.787319 2026] [security2:error] [pid 15017:tid 15017] [client 104.207.58.51:21087] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "m2pg.net"] [uri "/frontend/.env"] [unique_id "aZEg3rfEDTSDtvCwA5gFLQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-02-15 01:05:23
(6 months ago)
Scanning/Probing (26)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 00:58:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.58.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 19:58:21.582563 2026] [security2:error] [pid 4346:tid 4346] [client 104.207.58.51:12637] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lunginjurylaw.com"] [uri "/admin/.env"] [unique_id "aZEaLY5ycW5HPBz4mOEwXwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack