π©πͺ
tall1oN
2026-06-27 05:51:42
(15 minutes ago)
178.16.53.101 - - [27/Jun/2026:07:48:16 +0200] "GET /.env HTTP/2.0" 200 1098900 "-" "Mozilla/5.0 (Ma ...
show more
178.16.53.101 - - [27/Jun/2026:07:48:16 +0200] "GET /.env HTTP/2.0" 200 1098900 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" "diamondliferp.cc"
178.16.53.101 - - [27/Jun/2026:07:51:42 +0200] "GET /api/.env HTTP/2.0" 200 205700 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" "diamondliferp.cc"
...
show less
Web App Attack
Port Scan
Hacking
π¬π§
Aetherweb Ark
2026-06-27 05:36:14
(30 minutes ago)
(mod_security) mod_security (id:949110) triggered by 178.16.53.101 (-): N in the last X secs
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-27 04:34:32
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 178.16.53.101 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 178.16.53.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 00:34:28.795081 2026] [security2:error] [pid 11483:tid 11483] [client 178.16.53.101:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antitribu.com"] [uri "/.env"] [unique_id "aj9S1JuL5_rHwFKz_RNMtAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Baking333
2026-06-27 02:18:26
(3 hours ago)
[redacted] 178.16.53.101 - - [27/Jun/2026:03:18:05 +0100] "GET /.env HTTP/1.1" 302 6763 0/96221 "-" ...
show more
[redacted] 178.16.53.101 - - [27/Jun/2026:03:18:05 +0100] "GET /.env HTTP/1.1" 302 6763 0/96221 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" [redacted] 178.16.53.101 - - [27/Jun/2026:03:18:25 +0100] "GET /api/.env HTTP/1.1" 302 6795 0/121016 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
show less
Bad Web Bot
Web App Attack
π«π·
ELYAZ
2026-06-27 02:04:10
(4 hours ago)
(y3) Failed access -byebye- from 178.16.53.101 (-): (CF_ENABLE)
Hacking
πΊπΈ
Alvino
2026-06-27 01:02:54
(5 hours ago)
Blocked due to abuseScore: 82
Web Spam
Hacking
Web App Attack
Anonymous
2026-06-27 00:31:23
(5 hours ago)
178.16.53.101 - - [27/Jun/2026:08:31:22 +0800] "GET /.env HTTP/1.1" 200 19012 "-" "Mozilla/5.0 (Maci ...
show more
178.16.53.101 - - [27/Jun/2026:08:31:22 +0800] "GET /.env HTTP/1.1" 200 19012 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-27 00:29:43
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 178.16.53.101 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 178.16.53.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 20:29:38.918874 2026] [security2:error] [pid 22292:tid 22292] [client 178.16.53.101:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "forsaleincr.com"] [uri "/.env"] [unique_id "aj8Zcttx4fm78NMS4FFITQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
Anytech
2026-06-26 23:50:52
(6 hours ago)
Blocked by Conn-Monitor: Web scanning activity
Hacking
Web App Attack
πΊπΈ
ambor
2026-06-26 19:21:27
(10 hours ago)
Honeypot triggered: /.env on ifebridge.com. User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15 ...
show more
Honeypot triggered: /.env on ifebridge.com. User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0. Method: GET
show less
Web App Attack
π§πͺ
cmbplf
2026-06-26 17:36:27
(12 hours ago)
108 requests with url.path *.env
Brute-Force
Bad Web Bot
π¦πΊ
nzhost.co.nz
2026-06-26 16:19:09
(13 hours ago)
$f2bV_matches
Hacking
Brute-Force
π«π·
dynamix
2026-06-26 15:15:10
(14 hours ago)
Multiple WAF Violations
Web App Attack
ππΊ
kranem
2026-06-26 15:01:37
(15 hours ago)
Triggered Cloudflare WAF from NL.
Action taken: BLOCK
ASN: 202412 (Omegatech LTD)
Protocol: HTTP/1.1 ...
show more
Triggered Cloudflare WAF from NL.
Action taken: BLOCK
ASN: 202412 (Omegatech LTD)
Protocol: HTTP/1.1 (GET method)
Endpoint: /laravel/.env
Timestamp: 2026-06-26T13:07:18Z
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0
show less
Bad Web Bot
π©πͺ
juutis
2026-06-26 13:14:18
(16 hours ago)
Multiple WAF abuses - IP blocked
Hacking
Brute-Force
Web App Attack