π©πͺ
zUnlegit
2026-09-29 15:35:23
(1 day ago)
Automated web scanner requested sensitive path: /.env.local
Web App Attack
π§πͺ
madeit
2026-09-23 18:41:28
(1 week ago)
Web App Attack
Anonymous
2026-09-22 18:10:09
(1 week ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
π§πͺ
madeit
2026-09-08 18:54:10
(3 weeks ago)
Web App Attack
π§πͺ
madeit
2026-08-30 23:07:24
(4 weeks ago)
Web App Attack
π§πͺ
madeit
2026-08-17 14:18:42
(1 month ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-22 06:28:14
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 02:28:04.123592 2026] [security2:error] [pid 21807:tid 21807] [client 172.70.80.6:10441] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mindchill.net"] [uri "/.env.local"] [unique_id "ajjV9MconCe90-eoM6LHGgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-21 09:16:28
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 05:16:20.212336 2026] [security2:error] [pid 5463:tid 5463] [client 172.70.80.6:13441] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnedwardsconsulting.com.danged.com"] [uri "/.env.backup"] [unique_id "ajer5Mw6QblZ8w9ju7fBFQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-16 06:04:48
(3 months ago)
Aggressive web scan
Web App Attack
π©πͺ
FeG Deutschland
2026-06-04 19:27:02
(3 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-07 00:20:13
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 20:20:05.556167 2026] [security2:error] [pid 780029:tid 780029] [client 172.70.80.6:10564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.thommesen.net"] [uri "/.env.test"] [unique_id "adRNtXM2H0nGP73pvPwg5QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 17:58:40
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 13:58:31.028258 2026] [security2:error] [pid 676894:tid 676894] [client 172.70.80.6:10524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.paintscapeabroad.com"] [uri "/.env.local"] [unique_id "adP0R51ACqttdBxfC8TkxgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 11:49:34
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 07:49:27.174672 2026] [security2:error] [pid 34224:tid 34224] [client 172.70.80.6:14288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sealcoatnj.com"] [uri "/.env.bak"] [unique_id "adOdx53NWsiLl4lMdl683gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 17:49:41
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 13:49:37.267589 2026] [security2:error] [pid 6279:tid 6279] [client 172.70.80.6:11197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.b9k9.com"] [uri "/.env.old"] [unique_id "adKgsT-JHxwMQDdwDJLMbwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 17:00:33
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.80.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 13:00:25.784056 2026] [security2:error] [pid 20670:tid 20670] [client 172.70.80.6:14116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jessemeyersconsulting.jessemeyers.com"] [uri "/.env.development.local"] [unique_id "adKVKbTIaXE1XXYbM_2-KwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack