๐ง๐ท
Peregrine
2026-06-20 03:13:04
(17 hours ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 194.62.107.233 172.69.40.190 - - [18/Jun/2026:06:30:44 ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 194.62.107.233 172.69.40.190 - - [18/Jun/2026:06:30:44 -0300] "GET /.env HTTP/1.1" 404 414
show less
Bad Web Bot
๐ฌ๐ง
andypiper
2026-06-20 01:01:24
(19 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ฉ๐ช
kommunos
2026-06-20 00:14:32
(20 hours ago)
/.env
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-19 21:10:59
(23 hours ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-19 19:26:47
(1 day ago)
Try to access /.env
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-06-18 23:03:09
(1 day ago)
Probing websites for vulnerabilities
Web App Attack
๐ช๐ธ
el-brujo
2026-06-18 17:52:04
(2 days ago)
Cloudflare WAF: Request Path: /.env Request Query: Host: www.elhacker.net userAgent: Mozilla/5.0 (M ...
show more
Cloudflare WAF: Request Path: /.env Request Query: Host: www.elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0 Action: block Source: firewallManaged ASN Description: Limestone Networks, Inc. Country: US Method: GET Timestamp: 2026-06-18T17:52:04Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-18 14:17:01
(2 days ago)
194.62.107.233 - - [18/Jun/2026:17:16:28 +0300] "GET /.env HTTP/1.1" 404 766 "-" "Mozilla/5.0 (Macin ...
show more
194.62.107.233 - - [18/Jun/2026:17:16:28 +0300] "GET /.env HTTP/1.1" 404 766 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
194.62.107.233 - - [18/Jun/2026:17:17:00 +0300] "GET /.env HTTP/1.1" 404 764 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Web App Attack
๐ง๐ท
Peregrine
2026-06-18 09:30:49
(2 days ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 194.62.107.233 172.69.40.190 - - [18/Jun/2026:06:30:44 ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 194.62.107.233 172.69.40.190 - - [18/Jun/2026:06:30:44 -0300] "GET /.env HTTP/1.1" 404 414
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-18 09:01:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 05:01:43.771677 2026] [security2:error] [pid 19492:tid 19492] [client 194.62.107.233:43871] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alexlacruz.com"] [uri "/.env"] [unique_id "ajOz98OsdPR1KyAb_ZKw0wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 08:27:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 04:27:05.393623 2026] [security2:error] [pid 315:tid 350] [client 194.62.107.233:33999] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.flapjacktoys.com"] [uri "/.env"] [unique_id "ajOr2Z1MlmlH_fOr9FpPZAAAAJQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 07:46:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 03:46:23.032099 2026] [security2:error] [pid 8623:tid 8623] [client 194.62.107.233:65375] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shafie.net"] [uri "/.env"] [unique_id "ajOiT5yaSCR4S2Raky3ZxQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 06:39:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 02:39:39.990096 2026] [security2:error] [pid 28457:tid 28457] [client 194.62.107.233:33055] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.batesstrategygroup.com"] [uri "/.env"] [unique_id "ajOSq_ja0eWxYQ_9aUuAYwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 05:53:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 01:53:05.116095 2026] [security2:error] [pid 2499:tid 2499] [client 194.62.107.233:51165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cheynans.com"] [uri "/.env"] [unique_id "ajOHwSaAOYXXk0zFq8eQZAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 05:20:29
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 194.62.107.233 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 01:20:22.681760 2026] [security2:error] [pid 26658:tid 26658] [client 194.62.107.233:63811] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cherith-bible-inst.org"] [uri "/.env"] [unique_id "ajOAFvJvgAwfKHgG6sRYEQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack