๐บ๐ธ
TPI-Abuse
2026-06-07 15:57:06
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 11:57:01.957094 2026] [security2:error] [pid 6794:tid 6794] [client 145.79.210.32:53898] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "astrology7.com"] [uri "/dev/.env"] [unique_id "aiWUzVHuczD-Tk9we7Mf6QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 15:03:05
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 11:03:01.475755 2026] [security2:error] [pid 17996:tid 17996] [client 145.79.210.32:61028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ericgwin.com"] [uri "/core/.env.save"] [unique_id "aiWIJdLTkjmTlbtR8wPTGwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-06-07 14:51:31
(5 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ซ๐ท
masterguru
2026-06-07 14:50:15
(5 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 14:44:36
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 10:44:32.561504 2026] [security2:error] [pid 1571:tid 1571] [client 145.79.210.32:39128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "louiebluemartini.com"] [uri "/core/.env"] [unique_id "aiWD0F4_XLT5kOj_IbfSnQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 14:27:18
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 10:27:13.069325 2026] [security2:error] [pid 14986:tid 14986] [client 145.79.210.32:35906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marketask.com"] [uri "/admin/.env"] [unique_id "aiV_wf-UbMUdz9ZwflPNIgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-07 14:20:02
(6 hours ago)
suspicious request in access.log
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-07 13:52:18
(6 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-07 11:09:21
(9 hours ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 09:36:01
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 05:35:56.864745 2026] [security2:error] [pid 9057:tid 9057] [client 145.79.210.32:27518] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carolinafootprints.com"] [uri "/backend/.env"] [unique_id "aiU7fKDh78f-dLW39UeNKAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-07 08:41:04
(11 hours ago)
Bot / scanning and/or hacking attempts: GET /core/.env.save HTTP/1.1, GET /api/.env.save HTTP/1.1, G ...
show more
Bot / scanning and/or hacking attempts: GET /core/.env.save HTTP/1.1, GET /api/.env.save HTTP/1.1, GET /admin/.env HTTP/1.1, GET /.env HTTP/1.1, GET /laravel/.env HTTP/1.1, GET /api/.env HTTP/1.1, GET /backend/.env HTTP/1.1, GET /core/.env HTTP/1.1, GET /dev/.env HTTP/1.1, GET /.env.save HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 05:57:19
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 01:57:11.789976 2026] [security2:error] [pid 30363:tid 30363] [client 145.79.210.32:29076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brazilianbottom.com"] [uri "/laravel/.env"] [unique_id "aiUIN-QI4YG6bILtqVytWQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Tripwire
2026-06-07 03:30:24
(16 hours ago)
Scanning for exploits - /core/.env.save
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 03:02:32
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 145.79.210.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 23:02:29.417787 2026] [security2:error] [pid 2465:tid 2465] [client 145.79.210.32:38498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taxgroupsd.com"] [uri "/api/.env"] [unique_id "aiTfRYqhfJ8oBhCPVB6bvQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-06-07 01:55:09
(18 hours ago)
Domain : redirect.netenergy.uk
Rule : env
2026-06-07 01:53:57 217.194.210.152 GET /api/.env - 443 - ...
show more
Domain : redirect.netenergy.uk
Rule : env
2026-06-07 01:53:57 217.194.210.152 GET /api/.env - 443 - 145.79.210.32 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36 - westcountrywalks.co.uk 404 0 2 1528 231 250 - -
show less
Hacking
SQL Injection