πΉπ·
crnpekgoz
2026-09-22 15:02:24
(5 hours ago)
Malicious HTTP GET request for '/storage/logs/laravel.log' (HTTP 403) from 172.69.214.169. Threat: W ...
show more
Malicious HTTP GET request for '/storage/logs/laravel.log' (HTTP 403) from 172.69.214.169. Threat: Web Exploit Probe. Blocked by WardenGuard Web Shield.
show less
Web App Attack
π§πͺ
madeit
2026-09-14 14:00:32
(1 week ago)
Web App Attack
π©πͺ
CK_beats
2026-09-04 11:10:52
(2 weeks ago)
Blocked by os-abuseipdb on OPNsense firewall KN-FW01; 5 hits, proto=tcp, ports=443
Port Scan
Hacking
π§πͺ
madeit
2026-08-21 12:29:22
(1 month ago)
Web App Attack
π§πͺ
madeit
2026-08-05 07:29:30
(1 month ago)
Web App Attack
π§π¬
Stoyko Stoykov
2026-08-02 14:17:52
(1 month ago)
172.69.214.169 - - [02/Aug/2026:17:17:51 +0300] "GET /.env.production HTTP/1.1" 301 162 "-" "crusade ...
show more
172.69.214.169 - - [02/Aug/2026:17:17:51 +0300] "GET /.env.production HTTP/1.1" 301 162 "-" "crusader-worker/1.0"
...
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-31 05:39:14
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 01:39:08.601014 2026] [security2:error] [pid 3136:tid 3136] [client 172.69.214.169:11975] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.concentricsteel.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.concentricsteel.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ahvJfAmfJnhYk4BOQC2ongAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
yukon.ca
2026-04-13 14:01:21
(5 months ago)
Web Server Enforcement Violation: HTTP Webshells Activity
Port:80
Hacking
Exploited Host
πΊπΈ
TPI-Abuse
2026-04-05 06:20:43
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 02:20:34.416854 2026] [security2:error] [pid 20951:tid 20951] [client 172.69.214.169:9933] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.noscentpro.com"] [uri "/.env_backup"] [unique_id "adH_Mh12-DhPI4up5xCKIwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 00:40:48
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 20:40:40.053395 2026] [security2:error] [pid 8597:tid 8597] [client 172.69.214.169:12211] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.sykesclan.com"] [uri "/.env.development"] [unique_id "adGviMoa9SOmXlX9YmjoTQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 21:02:53
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 17:02:48.013978 2026] [security2:error] [pid 15638:tid 15638] [client 172.69.214.169:10451] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.noreservationslocations.com"] [uri "/.env.example"] [unique_id "adF8eKgcypekkWxPvZk-DAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 16:44:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 12:44:09.055351 2026] [security2:error] [pid 18094:tid 18094] [client 172.69.214.169:11912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.waynemather.com"] [uri "/.env.dev"] [unique_id "adE_2RNlnVDr1UrsmFIEXQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 15:12:57
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 11:12:51.896183 2026] [security2:error] [pid 3938:tid 3938] [client 172.69.214.169:10870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elpais.mx"] [uri "/docker/.env"] [unique_id "adEqcz-OjdeMKJvMqmgo2wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 10:35:58
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 06:35:50.386327 2026] [security2:error] [pid 28509:tid 28509] [client 172.69.214.169:13943] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.tedharris.com"] [uri "/.env.container"] [unique_id "adDphqSDfQxmzGwEZOxHdwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 07:49:50
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 03:49:38.665005 2026] [security2:error] [pid 32244:tid 32244] [client 172.69.214.169:11411] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cloggersunlimited.com.joshuashands.org"] [uri "/docker/.env.local"] [unique_id "adDCknHwNvSaQu8nRHPigAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack