๐ณ๐ฑ
wlt-blocker
2026-06-08 13:51:10
(32 minutes ago)
Unauthorized access to webpage admin
Web App Attack
๐ฉ๐ช
paissangroup
2026-06-08 13:33:22
(49 minutes ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-08 12:39:59
(1 hour ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-06-08 12:12:02
(2 hours ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 06:52:20
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 02:52:16.155951 2026] [security2:error] [pid 14600:tid 14614] [client 147.93.38.201:25786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oswgr.com"] [uri "/core/.env.save"] [unique_id "aiZmoITh3_i-q_i0x0E0NQAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 04:57:34
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 00:57:26.743309 2026] [security2:error] [pid 2568:tid 2568] [client 147.93.38.201:41852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "therealseska.com"] [uri "/members/.env"] [unique_id "aiZLtjfwJD7qpyPPhVPUSwAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-06-08 04:39:46
(9 hours ago)
147.93.38.201 - - [08/Jun/2026:06:39:44 +0200] "GET /.env.save HTTP/1.1" 403 5518 "-" "Mozilla/5.0 ( ...
show more
147.93.38.201 - - [08/Jun/2026:06:39:44 +0200] "GET /.env.save HTTP/1.1" 403 5518 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36"
147.93.38.201 - - [08/Jun/2026:06:39:45 +0200] "GET /admin/.env HTTP/1.1" 403 5518 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36"
147.93.38.201 - - [08/Jun/2026:06:39:45 +0200] "GET /.env HTTP/1.1" 403 5518 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 01:32:21
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 21:32:15.996991 2026] [security2:error] [pid 30606:tid 30606] [client 147.93.38.201:51576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kriske.com"] [uri "/laravel/.env"] [unique_id "aiYbn0EY0T6lHiEZjr4WFQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 00:53:21
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 20:53:12.994808 2026] [security2:error] [pid 1350:tid 1350] [client 147.93.38.201:63404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "encoreporchfest.info"] [uri "/admin/.env"] [unique_id "aiYSeP23Uc9njosd1O6SxgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
stinpriza
2026-06-08 00:03:38
(14 hours ago)
Web App Attack
Web App Attack
Anonymous
2026-06-07 23:41:03
(14 hours ago)
Bot / scanning and/or hacking attempts: GET /backend/.env HTTP/1.1, GET /admin/.env HTTP/1.1, GET /a ...
show more
Bot / scanning and/or hacking attempts: GET /backend/.env HTTP/1.1, GET /admin/.env HTTP/1.1, GET /api/.env HTTP/1.1, GET /core/.env.save HTTP/1.1
show less
Hacking
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-07 23:19:32
(15 hours ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
BE/Belgium/-
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 23:00:17
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 19:00:13.336965 2026] [security2:error] [pid 24703:tid 24703] [client 147.93.38.201:30538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adm-sal.com"] [uri "/backend/.env"] [unique_id "aiX3_fqds4bp4WUHvJmGcQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
loadsoporte
2026-06-07 22:22:10
(16 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-07 21:52:04
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 147.93.38.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 17:52:00.033101 2026] [security2:error] [pid 13476:tid 13476] [client 147.93.38.201:56994] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "linzylyne.com"] [uri "/core/.env"] [unique_id "aiXoAKDAVOfQ6ia1mz-ziAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack