Anonymous
2026-09-20 15:23:46
(2 days ago)
172.69.130.81 - - [20/Sep/2026:15:23:45 +0000] "GET /.env.save HTTP/2.0" 404 198 "-" "Mozilla/5.0 (X ...
show more
172.69.130.81 - - [20/Sep/2026:15:23:45 +0000] "GET /.env.save HTTP/2.0" 404 198 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.186.198.52"
172.69.130.81 - - [20/Sep/2026:15:23:45 +0000] "GET /.env.sample HTTP/2.0" 404 198 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.186.198.52"
172.69.130.81 - - [20/Sep/2026:15:23:45 +0000] "GET /.env.example HTTP/2.0" 404 198 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.186.198.52"
172.69.130.81 - - [20/Sep/2026:15:23:45 +0000] "GET /.env.dev HTTP/2.0" 404 198 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.186.198.52"
172.69.130.81 - - [20/Sep/2026:15:23:46 +0000] "GET /.env.stage HTTP/2.0" 404 198 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 S
...
show less
Port Scan
Brute-Force
๐ง๐ช
madeit
2026-09-14 14:31:55
(1 week ago)
Web App Attack
๐ง๐ช
madeit
2026-09-01 04:59:22
(3 weeks ago)
Web App Attack
Anonymous
2026-08-28 04:20:06
(3 weeks ago)
| [Dangerous/Israel] Aggressive IP 172.69.130.81 (~30 hits). Type: DoS Defender- Web server 400 erro ...
show more
| [Dangerous/Israel] Aggressive IP 172.69.130.81 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐ต๐ฑ
Jacqb
2026-08-17 10:33:35
(1 month ago)
Adres potencjalnie niebezpieczny
Brute-Force
Web App Attack
Bad Web Bot
๐ง๐ช
madeit
2026-08-06 08:15:05
(1 month ago)
Web App Attack
๐บ๐ธ
mawan
2026-07-31 12:57:22
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 18:05:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 14:05:26.964511 2026] [security2:error] [pid 2803741:tid 2803741] [client 172.69.130.81:9710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eclipseespana.com"] [uri "/.env.production"] [unique_id "adaY5iRDE6C5NJe-TmjbFAAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 09:30:10
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 05:30:06.368632 2026] [security2:error] [pid 1874556:tid 1874556] [client 172.69.130.81:11369] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.h-mod.com"] [uri "/.env.production"] [unique_id "adTOnnccSxr77ymVM83qEwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 07:30:09
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 03:30:00.819076 2026] [security2:error] [pid 839654:tid 839654] [client 172.69.130.81:12280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.slovenia-boat-registration.com"] [uri "/.env.local"] [unique_id "adSyeHP781Wu-DQ-zu-fegAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 04:59:53
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 00:59:49.939082 2026] [security2:error] [pid 695230:tid 695230] [client 172.69.130.81:13941] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.pjv.us"] [uri "/.env.test"] [unique_id "adSPRZaurTcXyb9b1H_tawAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 13:10:53
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 09:10:44.826526 2026] [security2:error] [pid 37817:tid 37817] [client 172.69.130.81:13696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "benchmarkbcs.com"] [uri "/.env"] [unique_id "adOw1A1f_tz-InIn6la7mQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 11:35:42
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 07:35:38.276301 2026] [security2:error] [pid 133726:tid 133726] [client 172.69.130.81:11986] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.xarq.es"] [uri "/core/.env"] [unique_id "adOaiqD-RIZj5MMdknkdFAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 07:22:58
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 03:22:53.906357 2026] [security2:error] [pid 4683:tid 4777] [client 172.69.130.81:13356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greaternorthmiamihistory.org"] [uri "/.git/logs/HEAD"] [unique_id "adNfTY6K1y-XdS_a1MWB0QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 02:47:20
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.130.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 22:47:13.556174 2026] [security2:error] [pid 26118:tid 26118] [client 172.69.130.81:9439] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kln.jp"] [uri "/config/.env.local"] [unique_id "adMesd3d1nGR5Nxw7ApKlwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack