🇳🇱
homeshowdomain.nl
2026-09-07 21:59:40
(23 hours ago)
Auto-ban: >3000 req/min op 2026-09-07
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-07 20:16:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:16:22.102671 2026] [security2:error] [pid 5606:tid 5729] [client 136.85.144.151:45814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advometric.com"] [uri "/@fs/../../.env"] [unique_id "ap8blo0gfJArdkKpZ3QLOQAAAIQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-07 19:58:19
(1 day ago)
624 requests with url.path *.aws/*
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 19:48:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:48:21.462090 2026] [security2:error] [pid 28906:tid 28906] [client 136.85.144.151:44592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "copiershickory.com"] [uri "/@fs/src/.env"] [unique_id "ap8VBdlQxLWRoo6qFyYQYgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:25:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:25:16.993652 2026] [security2:error] [pid 30603:tid 30603] [client 136.85.144.151:36316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bigkevsperformance.com"] [uri "/@fs/.env"] [unique_id "ap8PnExzZbPGbv8tIVP8pAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇾
Rizzy
2026-09-07 19:22:10
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 18:52:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:52:37.735114 2026] [security2:error] [pid 19629:tid 19629] [client 136.85.144.151:55934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.thehappywillow.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "ap8H9VZxvy5ZwRJr6eVQaQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-07 18:35:12
(1 day ago)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 18:21:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:20:55.053363 2026] [security2:error] [pid 24211:tid 24211] [client 136.85.144.151:7494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.eclipsesoftware.biz"] [uri "/@fs/.env.development"] [unique_id "ap8Ah4-X3orAS8xEGunabAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
4server
2026-09-07 18:05:42
(1 day ago)
[MonSep0720:05:36.5209652026][security2:error][pid2184485:tid2184635][client136.85.144.151:0]ModSecu ...
show more
[MonSep0720:05:36.5209652026][security2:error][pid2184485:tid2184635][client136.85.144.151:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"xn--walter-wrndli-pmb.ch\"][uri\"/@fs/.env.local\"][unique_id\"ap788LViNc3LmwdswfDoXQAAAEo\"]
show less
Hacking
Web App Attack
🇫🇷
dynamix
2026-09-07 17:56:37
(1 day ago)
Multiple WAF Violations
Web App Attack
🇩🇪
dpsbs
2026-09-07 17:45:51
(1 day ago)
multiple ips intrustions detected
Hacking
Anonymous
2026-09-07 17:41:19
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 17:34:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.85.144.151 (151.144.85.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:34:00.538523 2026] [security2:error] [pid 25447:tid 25447] [client 136.85.144.151:16404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.rx-art.com"] [uri "/@fs/.env.development"] [unique_id "ap71iIG0fuEbU3gNHIJHVQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-07 16:49:08
(1 day ago)
Web attack/malicious scanning detected
Web App Attack