๐บ๐ธ
TPI-Abuse
2026-06-18 23:47:33
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 19:47:29.295186 2026] [security2:error] [pid 15529:tid 15529] [client 194.62.107.146:54495] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.barnesandbrower.com"] [uri "/.env"] [unique_id "ajSDkZ8Lz6v44RHTWU9E_gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 22:25:22
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 18:25:17.147564 2026] [security2:error] [pid 25993:tid 25993] [client 194.62.107.146:49777] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wedemandavote.com"] [uri "/.env"] [unique_id "ajRwTbkAzhj3yw1fePl4vQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 16:39:49
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 12:39:43.421812 2026] [security2:error] [pid 13332:tid 13470] [client 194.62.107.146:49889] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.arrowsinthequiver.com"] [uri "/.env"] [unique_id "ajQfT2YSZiW4fSAnCjXCAAAAANI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-18 13:39:37
(5 days ago)
194.62.107.146 - - [18/Jun/2026:16:39:29 +0300] "GET /.env HTTP/1.1" 404 764 "-" "Mozilla/5.0 (Macin ...
show more
194.62.107.146 - - [18/Jun/2026:16:39:29 +0300] "GET /.env HTTP/1.1" 404 764 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
194.62.107.146 - - [18/Jun/2026:16:39:37 +0300] "GET /.env HTTP/1.1" 404 764 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 13:30:49
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 09:30:42.215153 2026] [security2:error] [pid 25770:tid 25793] [client 194.62.107.146:47151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maryschalkdesign.com"] [uri "/.env"] [unique_id "ajPzAhrVGN1abdCZY05gdAAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-18 13:29:21
(5 days ago)
Try to access /.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 12:40:47
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 08:40:42.289810 2026] [security2:error] [pid 3867:tid 3867] [client 194.62.107.146:61013] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.myrtlebeachpartybuses.com"] [uri "/.env"] [unique_id "ajPnSiAZyqoCRGWCA5kRmgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 12:06:08
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 08:06:03.342347 2026] [security2:error] [pid 29325:tid 29325] [client 194.62.107.146:21025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tijuanabible.org"] [uri "/.env"] [unique_id "ajPfKzojX7vGSBUs8sWv0AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-18 10:33:04
(5 days ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-06-18 10:31:20
(5 days ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 09:26:35
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 05:26:32.339695 2026] [security2:error] [pid 14959:tid 14959] [client 194.62.107.146:56041] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.francisfindings.com"] [uri "/.env"] [unique_id "ajO5yF5VXHym6ukldSAncgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 09:08:16
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 05:08:09.571170 2026] [security2:error] [pid 20563:tid 20563] [client 194.62.107.146:35983] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xcengineering.xyz"] [uri "/.env"] [unique_id "ajO1edwqYLvk10RXTHeADAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 07:52:32
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 03:52:25.142606 2026] [security2:error] [pid 17767:tid 17772] [client 194.62.107.146:58179] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newtrendmag.org"] [uri "/.env"] [unique_id "ajOjuRB6sSfkcxcPoMKocQAAAUM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 05:51:03
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 01:50:59.555454 2026] [security2:error] [pid 18439:tid 18439] [client 194.62.107.146:61841] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mcdonalds.jbaydeliveries.com"] [uri "/.env"] [unique_id "ajOHQ9QyKysvc1DpA15uyAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-17 22:08:10
(6 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking