๐ฉ๐ช
MusicLibrary
2026-07-18 00:48:03
(2 days ago)
Attempted access to sensitive configuration files (.env, .git, etc.)
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-18 00:26:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 20:26:04.440522 2026] [security2:error] [pid 13575:tid 13575] [client 196.119.23.177:57395] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rosawallas.com"] [uri "/.env"] [unique_id "alrIHF72fxkHOyYawZgKBwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 03:18:33
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 23:18:30.282137 2026] [security2:error] [pid 7685:tid 7685] [client 196.119.23.177:54373] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "recorplast.com"] [uri "/.env"] [unique_id "almfBtPKCVRlp7UQFgv1zQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-07-17 03:09:01
(2 days ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [ice01,mx01,mx02,mx03,wa ...
show more
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [ice01,mx01,mx02,mx03,wa01,wa02]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 01:20:50
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 21:20:42.598672 2026] [security2:error] [pid 29091:tid 29091] [client 196.119.23.177:62354] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "qovintheloop.org"] [uri "/.env"] [unique_id "almDagtiL_zs4-H_CCkz0gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-16 12:32:52
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 08:32:44.197095 2026] [security2:error] [pid 31101:tid 31101] [client 196.119.23.177:51429] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "powdercoatovens.net"] [uri "/.env"] [unique_id "aljPbPvrIgwlH2NjnIkaoQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-07-16 11:47:38
(3 days ago)
[redacted] 196.119.23.177 - - [16/Jul/2026:12:37:42 +0100] "GET /.env HTTP/1.1" 302 6798 0/80227 "-" ...
show more
[redacted] 196.119.23.177 - - [16/Jul/2026:12:37:42 +0100] "GET /.env HTTP/1.1" 302 6798 0/80227 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0" [redacted] 196.119.23.177 - - [16/Jul/2026:12:47:37 +0100] "GET /.env HTTP/1.1" 302 1538 0/98214 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
show less
Bad Web Bot
Web App Attack
Anonymous
2026-07-15 21:37:11
(4 days ago)
196.119.23.177 patrz.eu - [15/Jul/2026:23:37:09 +0200] "GET /.env HTTP/1.1" 301 0 "-" "Mozilla/5.0 ( ...
show more
196.119.23.177 patrz.eu - [15/Jul/2026:23:37:09 +0200] "GET /.env HTTP/1.1" 301 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-15 21:28:48
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 196.119.23.177 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 17:28:44.302407 2026] [security2:error] [pid 13765:tid 13765] [client 196.119.23.177:51773] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pathpa.org"] [uri "/.env"] [unique_id "alf7jAhIrXX0IUCSNo9OgAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-14 16:30:58
(5 days ago)
Failed login attempt detected by Fail2Ban in plesk-postfix jail
Brute-Force
๐ง๐ช
voormedia
2026-07-14 11:57:46
(5 days ago)
Accessed trap at '/.env'
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-12 21:59:11
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-11.
show less
Web App Attack
SSH
Hacking
๐จ๐ฟ
lp
2026-07-12 12:19:48
(1 week ago)
Email account brute force: 2 attempts were recorded from 196.119.23.177
2026-07-12T13:58:29+02:00 wa ...
show more
Email account brute force: 2 attempts were recorded from 196.119.23.177
2026-07-12T13:58:29+02:00 warning: unknown[196.119.23.177]: SASL PLAIN authentication failed: authentication failure, [email protected]
2026-07-12T13:58:29+02:00 warning: unknown[196.119.23.177]: SASL LOGIN authentication failed: authentication failure, [email protected]
show less
Brute-Force
๐ฎ๐น
www.tana.it
2026-07-12 07:20:06
(1 week ago)
SMTP auth dictionary attack
Brute-Force
๐ฎ๐น
LTM
2026-07-12 06:20:01
(1 week ago)
Mail - Generic Spam
Email Spam
Spoofing