๐ฉ๐ฐ
HostingGroup
2026-08-20 03:16:53
(1 week ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 1. First blocked: 2026-08-20.
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:28:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:28:02.346439 2026] [security2:error] [pid 27613:tid 27613] [client 193.31.101.63:60681] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "livebord.com"] [uri "/.env"] [unique_id "aoFYcvb3qvF0BjGrnHvPQAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฑ
spd.co.il
2026-08-12 17:01:55
(2 weeks ago)
Web application attack detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 19:20:03
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 15:19:55.748832 2026] [security2:error] [pid 323933:tid 323933] [client 193.31.101.63:47855] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cameronprecisionmachining.com"] [uri "/.env.dev.local"] [unique_id "anYv22-B79lwniaVc8YxcgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-06 10:46:37
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 06 06:46:31.021477 2026] [security2:error] [pid 23422:tid 23422] [client 193.31.101.63:44349] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brewingermany.com"] [uri "/.env.test.local"] [unique_id "akuHhwMkVrw56SUal-nAUAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-21 23:36:32
(2 months ago)
(modsecurity) srv103 ModSecurity 193.31.101.63 (RU/Russia/-): 10 in the last 3600 secs; Ports: *; Di ...
show more
(modsecurity) srv103 ModSecurity 193.31.101.63 (RU/Russia/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-19 22:00:17
(2 months ago)
Auto-ban: >3000 req/min op 2026-06-19
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-19 03:05:22
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 23:05:17.419485 2026] [security2:error] [pid 6074:tid 6090] [client 193.31.101.63:52979] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "southeastseal.com"] [uri "/.env.preview"] [unique_id "ajSx7ZrJOwfNsKdi5dF2mwAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-12 15:05:31
(2 months ago)
Abuse Detected (30)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 04:05:19
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 193.31.101.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 00:05:13.220737 2026] [security2:error] [pid 30674:tid 30674] [client 193.31.101.63:39981] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alrightletsgo.com"] [uri "/.env"] [unique_id "aiuFeSPw9YO8FIuQeRin_QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-08 12:05:12
(2 months ago)
Scanning/Probing (30)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-05 16:05:40
(2 months ago)
Scanning/Probing (30)
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-22 21:59:20
(3 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-21.
show less
Web App Attack
SSH
Hacking