🇨🇭
backslash
2026-09-08 20:51:02
(11 hours ago)
block ruleset 51D5331ECDCF70C2C6410C0D0EEB5F69B17B5F56
Bad Web Bot
🇦🇺
RedBear IT
2026-03-26 10:00:37
(5 months ago)
"DDoS against public endpoint"
DDoS Attack
🇺🇸
mnsf
2026-02-16 00:05:38
(6 months ago)
Scanning/Probing (26)
Brute-Force
Web App Attack
🇬🇧
consul.to
2026-02-15 12:50:44
(6 months ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 12:14:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 07:13:54.528341 2026] [security2:error] [pid 531:tid 531] [client 104.207.62.81:24679] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "timjbutler.com"] [uri "/.env.staging"] [unique_id "aZG4ghk_31NsR0gwfX4_8wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 11:17:39
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 06:17:35.924019 2026] [security2:error] [pid 25822:tid 25822] [client 104.207.62.81:50145] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thetallships.com"] [uri "/wp/.git/config"] [unique_id "aZGrT4KCr7ybMpiz_PDd6AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 05:51:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 00:51:10.893158 2026] [security2:error] [pid 353233:tid 353233] [client 104.207.62.81:54031] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "swetzer.net"] [uri "/.env.save"] [unique_id "aZFezthHJES6R4iHMSuGBgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 05:33:53
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 00:33:49.568925 2026] [security2:error] [pid 17753:tid 17753] [client 104.207.62.81:44465] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "susansambou.org"] [uri "/.env"] [unique_id "aZFavchzwKClJCJd7PAMJAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
ParaBug
2026-02-15 02:31:24
(6 months ago)
104.207.62.81 - - [15/Feb/2026:03:31:23 +0100] "GET /.env.staging HTTP/1.1" 301 533 "-" "Mozilla/5.0 ...
show more
104.207.62.81 - - [15/Feb/2026:03:31:23 +0100] "GET /.env.staging HTTP/1.1" 301 533 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 01:40:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:40:15.841895 2026] [security2:error] [pid 23545:tid 23545] [client 104.207.62.81:29259] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mwrn.com"] [uri "/.git/config"] [unique_id "aZEj_9ZlopkP2u1pTClhHQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 01:20:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:20:14.006601 2026] [security2:error] [pid 25301:tid 25301] [client 104.207.62.81:64955] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lyounglaw.com"] [uri "/api/.env"] [unique_id "aZEfTtZ1yAZ3LXSa17eOcgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-15 00:50:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 19:49:58.722805 2026] [security2:error] [pid 28789:tid 28789] [client 104.207.62.81:36801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrbss.com"] [uri "/backend/.env"] [unique_id "aZEYNtLKo4eo3vi2CamkOQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-02-14 23:05:49
(6 months ago)
Scanning/Probing (25)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-02-14 23:00:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 18:00:36.812003 2026] [security2:error] [pid 31018:tid 31034] [client 104.207.62.81:40635] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lisabees.net"] [uri "/app/.env"] [unique_id "aZD-lFgJ4XndBVAcAYIaDgAAAQ4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-14 22:44:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.62.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:43:35.009511 2026] [security2:error] [pid 15612:tid 15612] [client 104.207.62.81:42505] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "limobuswichita.com"] [uri "/test/.git/config"] [unique_id "aZD6lxggEt2F-Ph81w6eNAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack