๐บ๐ธ
TPI-Abuse
2026-07-27 15:31:55
(1 minute ago)
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip. ...
show more
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 11:31:48.592380 2026] [security2:error] [pid 430172:tid 430172] [client 192.141.191.243:49642] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.146"] [uri "/.env.local"] [unique_id "amd55GX0vhCRJP1PkAwe6QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Apache
2026-07-27 15:22:55
(10 minutes ago)
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (BR/Brazil/192-141-191-243.alte ...
show more
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (BR/Brazil/192-141-191-243.alternativaip.net.br): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-07-27 15:19:27
(13 minutes ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-07-27 15:10:05
(23 minutes ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 14:52:19
(40 minutes ago)
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip. ...
show more
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 10:52:14.060595 2026] [security2:error] [pid 209193:tid 209193] [client 192.141.191.243:55268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.58"] [uri "/.env"] [unique_id "amdwnj_JEZ6EmAeMTq9qQAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 14:27:36
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip. ...
show more
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 10:27:28.974067 2026] [security2:error] [pid 613505:tid 613505] [client 192.141.191.243:52821] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.50"] [uri "/.env"] [unique_id "amdq0NtAnwOf3RLANiPOQAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-27 13:50:27
(1 hour ago)
192.141.191.243 46.39.185.24 - [27/Jul/2026:15:50:26 +0200] "GET /.env HTTP/1.1" 301 0 "-" "Mozilla/ ...
show more
192.141.191.243 46.39.185.24 - [27/Jul/2026:15:50:26 +0200] "GET /.env HTTP/1.1" 301 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐ฉ๐ช
hidemail.app
2026-07-27 13:36:31
(1 hour ago)
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto ...
show more
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto-banned by fail2ban.
show less
Web App Attack
Hacking
๐ง๐ช
voormedia
2026-07-27 13:34:01
(1 hour ago)
Accessed trap at '/.env'
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-07-27 13:30:24
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 192.141.191.243 (BR/Brazil/192-141-191-243.alte ...
show more
(mod_security) mod_security (id:949110) triggered by 192.141.191.243 (BR/Brazil/192-141-191-243.alternativaip.net.br): N in the last X secs
show less
Web App Attack
๐บ๐ธ
kosada.com
2026-07-27 12:53:44
(2 hours ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-27 12:22:15
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip. ...
show more
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:22:10.982651 2026] [security2:error] [pid 22455:tid 22522] [client 192.141.191.243:60083] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.201"] [uri "/.env"] [unique_id "amdNcrZ0IMauyQw8NSnlaAAAAIY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nyt
2026-07-27 12:18:13
(3 hours ago)
Sensitive File Probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 11:08:16
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip. ...
show more
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 07:08:10.934007 2026] [security2:error] [pid 524001:tid 524001] [client 192.141.191.243:62336] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.19"] [uri "/.env"] [unique_id "amc8GoL9tbfw7l92UwXgcgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 10:45:50
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip. ...
show more
(mod_security) mod_security (id:210492) triggered by 192.141.191.243 (192-141-191-243.alternativaip.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 06:45:44.276129 2026] [security2:error] [pid 4152241:tid 4152241] [client 192.141.191.243:54638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.136"] [uri "/.env"] [unique_id "amc22GueND1NHEDiCUH4nwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack