๐ซ๐ท
masterguru
2026-03-21 02:04:53
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-196)
Hacking
๐บ๐ธ
mnsf
2026-03-21 00:14:37
(2 months ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-03-20 07:02:49
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-193)
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-20 04:59:06
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 00:58:59.052007 2026] [security2:error] [pid 28180:tid 28180] [client 172.70.243.104:9535] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mainefirst.arsenaultartistmanagement.com"] [uri "/.env.production"] [unique_id "abzUE0RZbrr0moeLZHmfTwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 02:54:26
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 22:54:09.504220 2026] [security2:error] [pid 30462:tid 30462] [client 172.70.243.104:13050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.passwordresearch.com"] [uri "/.env.example"] [unique_id "aby20VKpj1iHI_0-ZmUy2gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 01:28:59
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 21:28:52.985140 2026] [security2:error] [pid 32138:tid 32138] [client 172.70.243.104:11445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "reettaanttila.com"] [uri "/.env.development"] [unique_id "abyi1HbltZ2rnmXOgyddHgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 01:06:18
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 21:06:12.941536 2026] [security2:error] [pid 12388:tid 12388] [client 172.70.243.104:10575] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.deal-arabia.com"] [uri "/.env.prod"] [unique_id "abydhFFM00CK3fnJTiKCzAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-19 20:07:09
(2 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐ช๐ธ
masterguru
2026-03-19 14:55:39
(2 months ago)
Attempt to access a backup or working file. Pattern match "\\\\. (920500-122)
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-19 08:11:33
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 04:11:27.662872 2026] [security2:error] [pid 20779:tid 20779] [client 172.70.243.104:12916] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fattoria-rendena.it"] [uri "/.git/logs/HEAD"] [unique_id "abuvr70wdIYAc6e94ZaY5wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-18 16:40:30
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 18 12:40:21.794487 2026] [security2:error] [pid 3564:tid 3564] [client 172.70.243.104:10743] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atlanticcitypartybuses.com"] [uri "/.env"] [unique_id "abrVdS2O_rAS0NSqI79_3AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-18 14:55:30
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 18 10:55:26.263682 2026] [security2:error] [pid 12954:tid 12954] [client 172.70.243.104:10079] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rassehundeverein.com"] [uri "/.git/HEAD"] [unique_id "abq83vqo8BemcyQJqdQCEQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-03-18 13:23:50
(2 months ago)
Try to access /api/.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-18 10:34:05
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.243.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 18 06:33:59.277072 2026] [security2:error] [pid 27625:tid 27625] [client 172.70.243.104:12914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "schonfashion.com"] [uri "/.env.local"] [unique_id "abp_lx2wGwKghzhyVfHaSwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-03-18 04:49:00
(2 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /wp-admin/setup-config.php (Rule ID: 930130) - Restricted File Access Attempt
show less
Web App Attack
Hacking