๐บ๐ธ
mnsf
2026-06-04 08:07:21
(5 hours ago)
Abuse Detected (3)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-03 18:05:28
(19 hours ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-03 14:05:21
(23 hours ago)
Abuse Detected (2)
Brute-Force
Web App Attack
๐ณ๐ฑ
COMPLEX
2026-05-29 00:44:51
(6 days ago)
Unsolicited TCP traffic | Action: DROP | Port 443
Phishing
๐บ๐ธ
TPI-Abuse
2026-05-28 17:51:41
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 13:51:33.641902 2026] [security2:error] [pid 3394:tid 3394] [client 172.69.130.141:11418] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.technesa.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.technesa.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ahiApWWSwm71JtE3N14gVAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-27 13:47:17
(1 week ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-05-10 11:47:42
(3 weeks ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-05-01 00:17:11
(1 month ago)
Web App Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 07:18:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 03:18:01.869975 2026] [security2:error] [pid 1223470:tid 1223470] [client 172.69.130.141:9953] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.gregdember.com"] [uri "/.env.old"] [unique_id "adSvqWimYw9hosTi54bplgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 06:31:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 02:31:12.941191 2026] [security2:error] [pid 1082942:tid 1082942] [client 172.69.130.141:13824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.deckmasterscompany.com"] [uri "/.env.production"] [unique_id "adSksAUFAqX5hH2QugGkSAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 08:02:25
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 04:02:17.344885 2026] [security2:error] [pid 31548:tid 31548] [client 172.69.130.141:12808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.intolifeproductions.com"] [uri "/.env.development"] [unique_id "adNoiR4GWN4GvS2j6ZAOLgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 04:15:25
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 00:15:20.782387 2026] [security2:error] [pid 1724:tid 1724] [client 172.69.130.141:9514] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.versahealthcare.com"] [uri "/.env_secret"] [unique_id "adMzWG0ZqKCL-9_4SpL5zQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 11:51:25
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 07:51:18.913278 2026] [security2:error] [pid 30921:tid 30921] [client 172.69.130.141:14331] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.conveyorizedovens.com"] [uri "/.env~"] [unique_id "adJMtjgtHXSajWeMrm1_SgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 21:39:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 17:39:19.488974 2026] [security2:error] [pid 883:tid 883] [client 172.69.130.141:12975] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stenbot.com"] [uri "/.env.old"] [unique_id "adGFByEHGG9L_HQSS-aTdAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 20:31:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 16:31:30.604730 2026] [security2:error] [pid 30475:tid 30475] [client 172.69.130.141:9958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smoothiessoupssalads.com"] [uri "/docker/.env"] [unique_id "adF1ItLIiqEz7P0HIiTT0QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack