๐ฉ๐ช
Holger
2026-06-11 09:27:12
(2 days ago)
Bruteforce WebAttack
Brute-Force
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-06-08 11:50:33
(4 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-08 10:52:44
(4 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 08:49:29
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 145.79.14.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.14.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 04:49:22.960140 2026] [security2:error] [pid 20576:tid 20576] [client 145.79.14.133:36264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "siedersoft.com.ar"] [uri "/app/.env"] [unique_id "aiaCEt5G7fCIHVGGgPZyWgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
vtchost.com
2026-06-08 07:56:54
(5 days ago)
vtchost.com:443 145.79.14.133 - - [08/Jun/2026:09:56:54 +0200] "GET /laravel/.env HTTP/1.1" 418 2775 ...
show more
vtchost.com:443 145.79.14.133 - - [08/Jun/2026:09:56:54 +0200] "GET /laravel/.env HTTP/1.1" 418 2775 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36"
...
show less
Web App Attack
๐ซ๐ท
masterguru
2026-06-08 07:28:14
(5 days ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 07:27:55
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 145.79.14.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.14.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 03:27:51.348258 2026] [security2:error] [pid 19090:tid 19090] [client 145.79.14.133:19856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "javierreinoso.com"] [uri "/laravel/.env"] [unique_id "aiZu9ymZEoocJNh4itiwJAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 06:39:27
(5 days ago)
145.79.14.133 - - [08/Jun/2026:08:39:26 +0200] "GET /members/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 ...
show more
145.79.14.133 - - [08/Jun/2026:08:39:26 +0200] "GET /members/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 05:29:19
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 145.79.14.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.14.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 01:29:15.115268 2026] [security2:error] [pid 7772:tid 7772] [client 145.79.14.133:38542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deserttrails.net"] [uri "/laravel/.env"] [unique_id "aiZTK4Kgv6JgZb0bkSeD_QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-08 04:09:45
(5 days ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ท๐บ
DZBOT
2026-06-08 02:56:01
(5 days ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ณ๐ฟ
Tripwire
2026-06-08 02:50:12
(5 days ago)
Scanning for exploits - /dev/.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 23:53:58
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 145.79.14.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.14.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 19:53:53.442039 2026] [security2:error] [pid 9356:tid 9356] [client 145.79.14.133:53374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thomasgardner.com"] [uri "/api/.env"] [unique_id "aiYEkfoosyWDz-UDVtaPpwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-07 23:44:52
(5 days ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
NL/Netherlands/-
Web App Attack
๐ฉ๐ช
Holger
2026-06-07 23:38:18
(5 days ago)
Bruteforce WebAttack
Brute-Force
Web App Attack