๐บ๐ธ
TPI-Abuse
2026-10-08 17:09:23
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 13:09:20.182346 2026] [security2:error] [pid 27595:tid 27595] [client 142.93.247.102:44012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "curriergallery.com"] [uri "/.env"] [unique_id "asfOQInAQn62F_Nw_LVCXwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-08 16:20:55
(3 hours ago)
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 142.93.247.102 - - [08/Oct/2026:18:20:34 +0200] "GET /.env HTTP/1.1" 301 6351 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-10-08 16:06:00
(3 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-10-08 15:06:28
(4 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ช๐ธ
bohl-aiG5aef
2026-10-08 14:05:30
(5 hours ago)
Suricata Alert [SID:2031502] ET INFO Request to Hidden Environment File - Inbound
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-08 07:36:24
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 03:36:18.788372 2026] [security2:error] [pid 19882:tid 19882] [client 142.93.247.102:35520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cozydesignae.com"] [uri "/.env"] [unique_id "asdH8t1N7haoHt6B7VEPgQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 03:06:18
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 23:06:13.174846 2026] [security2:error] [pid 15670:tid 15670] [client 142.93.247.102:33056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cottrellfamily.com.cottrel.com"] [uri "/.env"] [unique_id "ascIpbGbX13P9aMWE5uIUQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 00:20:11
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 20:20:03.330202 2026] [security2:error] [pid 25096:tid 25096] [client 142.93.247.102:49280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "comicpreservation.com"] [uri "/.env"] [unique_id "asbhs9EACTMjf4BLAZku9wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 22:02:52
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 18:02:49.295264 2026] [security2:error] [pid 26069:tid 26069] [client 142.93.247.102:48434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "colorwize.com"] [uri "/.env"] [unique_id "asbBidwcGmpAEddVv_opjgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-07 22:01:55
(21 hours ago)
Auto-ban: >3000 req/min op 2026-10-07
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 21:28:41
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 17:28:35.902099 2026] [security2:error] [pid 25202:tid 25208] [client 142.93.247.102:35274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coloradosellers.com"] [uri "/.env"] [unique_id "asa5g73QtO2XMYcgzoSREQAAAQQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-10-07 17:26:15
(1 day ago)
Web shell probe | method: GET | path: /_profiler/phpinfo | ua: Mozilla/5.0 (Windows NT 10.0; Win64; ...
show more
Web shell probe | method: GET | path: /_profiler/phpinfo | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36
show less
Hacking
Web App Attack
๐ท๐บ
mysh38
2026-10-07 17:05:09
(1 day ago)
fail2ban: nginx-bots jail ban
Web App Attack
Anonymous
2026-10-07 16:45:31
(1 day ago)
Http Port:80 (http_status:404) - Agent:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 ...
show more
Http Port:80 (http_status:404) - Agent:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 15:59:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.247.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 11:59:21.899488 2026] [security2:error] [pid 17771:tid 17771] [client 142.93.247.102:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cloudex.link"] [uri "/.env"] [unique_id "asZsWY5D9427M4WMa8VnqAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack