πΊπΈ
johnkarlhill
2026-09-10 13:59:33
(17 hours ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
π«π·
dynamix
2026-08-21 13:12:54
(2 weeks ago)
Multiple WAF Violations
Web App Attack
π«π·
dynamix
2026-07-28 11:43:14
(1 month ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-09 04:18:11
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 09 00:18:07.070495 2026] [security2:error] [pid 2234343:tid 2234343] [client 172.70.230.43:11368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.celebritybikinigossip.com"] [uri "/.env.docker"] [unique_id "adcof9rHPw5UPr_9dF2KBQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 18:17:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 14:17:23.001987 2026] [security2:error] [pid 24879:tid 24879] [client 172.70.230.43:11242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.tracytappan.net"] [uri "/.git/refs/heads/master"] [unique_id "adFVs2VBeRYCehYvcK92sgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-27 18:25:15
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 14:25:11.599739 2026] [security2:error] [pid 18170:tid 18170] [client 172.70.230.43:9255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.dreamingofatlantis.com"] [uri "/.env.development"] [unique_id "acbLh96Tm6A-iyV6X27cHwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-27 12:39:12
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 08:39:08.441555 2026] [security2:error] [pid 30438:tid 30438] [client 172.70.230.43:10791] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.fitnessgearmagazine.com"] [uri "/.env.local"] [unique_id "acZ6bGU3KHwkxJDqJh1aUAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-27 11:13:48
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 07:13:43.664523 2026] [security2:error] [pid 25923:tid 25923] [client 172.70.230.43:11893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.7bsuperfruit.com"] [uri "/config/.env"] [unique_id "acZmZy-gv8PYGCyz84mnBQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-26 23:22:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 19:22:16.884569 2026] [security2:error] [pid 3566:tid 3566] [client 172.70.230.43:11268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bayoutown.com"] [uri "/admin/.env"] [unique_id "acW_qAsXZ0Qewf3NUH_4qwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-26 18:02:15
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 14:02:10.776808 2026] [security2:error] [pid 2010:tid 2010] [client 172.70.230.43:11911] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.alarmnummer.com"] [uri "/.env.test"] [unique_id "acV0oqF9ewTcybqqcz8DugAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-26 08:03:56
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 04:03:49.836059 2026] [security2:error] [pid 28002:tid 28002] [client 172.70.230.43:11297] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.my1611.com"] [uri "/public/.env"] [unique_id "acToZWNISeV_kUapIwYwfwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-26 03:19:14
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 23:18:59.020155 2026] [security2:error] [pid 16463:tid 16463] [client 172.70.230.43:14078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.love-n-promises.com"] [uri "/.env.save"] [unique_id "acSlo18tq_hudnDEZUtWhQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-26 00:00:23
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 20:00:09.096618 2026] [security2:error] [pid 2634:tid 2634] [client 172.70.230.43:11173] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vetline.eu"] [uri "/.env.bak"] [unique_id "acR3CePjmZOeOqX5CKFx6QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-25 22:09:01
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 18:08:54.976405 2026] [security2:error] [pid 22364:tid 22364] [client 172.70.230.43:13668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.nwsci.net"] [uri "/.env.prod"] [unique_id "acRc9nk_Eam3PP-9K5IfDgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-25 17:37:35
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.43 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 13:37:29.895999 2026] [security2:error] [pid 22009:tid 22009] [client 172.70.230.43:14335] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.crescentcitycafe.org"] [uri "/.env"] [unique_id "acQdWQp3qg7F6_x-S38AVwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack