๐ฎ๐ฉ
securejdprop
2026-08-24 23:38:51
(5 days ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐ง๐ช
madeit
2026-08-20 18:46:36
(1 week ago)
Web App Attack
๐บ๐ธ
mw
2026-04-04 00:40:15
(4 months ago)
GET /.env2 HTTP/1.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 01:40:07
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 21:40:03.443481 2026] [security2:error] [pid 8214:tid 8214] [client 172.70.230.46:12930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bikinipageone.com"] [uri "/.env1"] [unique_id "ac3I89w4SMkEWqPyPQOl2AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-01 17:08:28
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 13:08:22.638112 2026] [security2:error] [pid 24837:tid 24837] [client 172.70.230.46:10591] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cerrovictoria.com"] [uri "/.env.local.backup"] [unique_id "ac1RBpiWgh4fZE9am51MfgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 09:28:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 05:28:12.489594 2026] [security2:error] [pid 10653:tid 10653] [client 172.70.230.46:11587] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mtl.microkerneltechnologies.com"] [uri "/.env.old"] [unique_id "acZNrMDuavHTaeMYoNnV9QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 09:06:04
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 05:05:57.316368 2026] [security2:error] [pid 14739:tid 14739] [client 172.70.230.46:14333] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.broneksuchanek.com"] [uri "/config/.env"] [unique_id "acZIdZC5162alIXL-yYZ3wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 01:33:39
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 21:33:18.637825 2026] [security2:error] [pid 17775:tid 17775] [client 172.70.230.46:9840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.southsideaccountingservices.com"] [uri "/.env.save"] [unique_id "acSM3rYc2WQ_6ShDqqeuiQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 18:09:49
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 14:09:42.469309 2026] [security2:error] [pid 6085:tid 6085] [client 172.70.230.46:11450] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.amgtr.com"] [uri "/.env.staging"] [unique_id "acQk5hGpJHgRjkFBvJe17QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 17:31:11
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 13:31:07.679261 2026] [security2:error] [pid 12062:tid 12062] [client 172.70.230.46:12223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.colbygrenier.com"] [uri "/.env2"] [unique_id "acQb26gxjPl_-2uToDkLxgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 14:24:31
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 10:24:20.737593 2026] [security2:error] [pid 7721:tid 7721] [client 172.70.230.46:10782] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "804websolutions.com"] [uri "/.env.local"] [unique_id "acPwFCjv7uS5QOV_0qloxQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 10:13:34
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 06:13:20.751316 2026] [security2:error] [pid 2574:tid 2574] [client 172.70.230.46:9370] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "airintakesonline.com"] [uri "/.git/logs/HEAD"] [unique_id "acO1QOWFUj_rpC23JeHFMQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 00:52:08
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 20:52:02.521522 2026] [security2:error] [pid 27813:tid 27813] [client 172.70.230.46:9948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.professionalpianomoversinc.com.anthonyanimalclinic.net"] [uri "/.env.old"] [unique_id "acMxskz5iUa09EiphDLn7gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-24 23:49:47
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 19:49:36.585053 2026] [security2:error] [pid 14173:tid 14173] [client 172.70.230.46:13873] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tomorrowsdust.net"] [uri "/.env.bak"] [unique_id "acMjEF8svgXpbKLUHp0S-QAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-24 23:01:40
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 19:01:29.005867 2026] [security2:error] [pid 31227:tid 31227] [client 172.70.230.46:9689] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.snotrocketgames.com"] [uri "/.env.tmp"] [unique_id "acMXyei5aqEnwzWrwcxv0gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack