๐ณ๐ด
jad-abuse
2026-09-13 22:00:14
(6 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Observed by 1 sensor(s); 4 hits.
show less
Brute-Force
Web App Attack
๐ง๐ช
madeit
2026-09-08 02:30:47
(6 days ago)
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-12 02:58:11
(1 month ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Observed by 1 sensor(s); 2 hits.
show less
Brute-Force
Web App Attack
๐บ๐ธ
drewf.ink
2026-05-01 01:53:56
(4 months ago)
[01:53] Port scanning. Port(s) scanned: TCP/8443
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-08 21:43:17
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 17:43:12.755814 2026] [security2:error] [pid 2753836:tid 2753836] [client 141.101.99.163:12523] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "daydar.net"] [uri "/.env"] [unique_id "adbL8MXdjJBsmf6VJOppWAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 21:09:50
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 17:09:37.235474 2026] [security2:error] [pid 131925:tid 131925] [client 141.101.99.163:10849] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lendren.com"] [uri "/.env.production.local"] [unique_id "adbEEefG_BkgAJ-p2E3lNwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 13:20:16
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 09:20:07.533587 2026] [security2:error] [pid 2498001:tid 2498001] [client 141.101.99.163:11471] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.streamlinenz.com"] [uri "/.env_config"] [unique_id "adZWB1e2Q8Jo_1zEVitnHAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 11:29:05
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 07:28:55.524807 2026] [security2:error] [pid 2477785:tid 2477785] [client 141.101.99.163:12752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.digitaltom.net.digitaltom.com"] [uri "/.env.tmp"] [unique_id "adY791RvH-eELuH1RNG9jgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 09:11:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 05:11:28.045154 2026] [security2:error] [pid 2117939:tid 2117939] [client 141.101.99.163:11765] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.skulldump.com"] [uri "/.env.bak"] [unique_id "adYbwBVw8GyBBnqxQ_kIlwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 08:39:27
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 04:39:22.012825 2026] [security2:error] [pid 2622266:tid 2622266] [client 141.101.99.163:12475] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.register-yacht-seychelles.com"] [uri "/private/.env"] [unique_id "adYUOlXcjyqIsYQV5AnM9gAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 08:22:06
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 04:22:02.915224 2026] [security2:error] [pid 3898067:tid 3898067] [client 141.101.99.163:12964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.lastreetsbykarensperling.com"] [uri "/public/.env"] [unique_id "adYQKoKngB60XtGQLVi8fQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 06:03:03
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 02:02:56.972893 2026] [security2:error] [pid 2850746:tid 2850746] [client 141.101.99.163:9944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "prototype.warnock.ws"] [uri "/.env.local"] [unique_id "adXvkC0Ht1lI-JX4cfvfmwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 05:20:13
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 01:20:07.022694 2026] [security2:error] [pid 2532878:tid 2532878] [client 141.101.99.163:10996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.oruguitas.org"] [uri "/.env.orig"] [unique_id "adXlh9TTQqPw0DdOZtdidgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 01:34:14
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 21:34:06.318772 2026] [security2:error] [pid 2778269:tid 2778294] [client 141.101.99.163:11540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aspencommission.aafm.us"] [uri "/api/.env"] [unique_id "adWwjvMciZ9ORbfKvUZ0qgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 12:20:54
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 08:20:46.016139 2026] [security2:error] [pid 1133134:tid 1133134] [client 141.101.99.163:10163] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.picayunity.com"] [uri "/.env.bak"] [unique_id "adT2nq2x07nczo0D4nT-EQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack