Anonymous
2026-07-29 07:00:00
(1 day ago)
Automated Apache web application probing in selected 24h window; attempts=2118, unique_paths=9, erro ...
show more
Automated Apache web application probing in selected 24h window; attempts=2118, unique_paths=9, error_responses=904; targets include WordPress, .env/.git, phpMyAdmin, autodiscover, wpad.dat and related probe paths.
show less
Web App Attack
Anonymous
2026-07-29 07:00:00
(1 day ago)
Apache probe; attempts=2118; exact paths: /.env | /.env/ | /.env?controller=404 | /.env?page=.env | ...
show more
Apache probe; attempts=2118; exact paths: /.env | /.env/ | /.env?controller=404 | /.env?page=.env | /.env?password-protected=login&redirect_to=http%3A%2F%2Flongy.cz%2F.env | /?password-protected=login&redirect_to=https%3A%2F%2Fmarty.cz%2F.env | /cz/.env | /index.php?q=.env | /www/.env
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 21:49:49
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 212.32.69.219 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 212.32.69.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 17:49:43.924814 2026] [security2:error] [pid 2511201:tid 2511201] [client 212.32.69.219:65163] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nhglassmakers.org"] [uri "/.env"] [unique_id "amkj90M96V_4fibzPNp1EwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-07-28 21:38:35
(2 days ago)
vulnerability scan
Web App Attack
Anonymous
2026-07-28 21:22:40
(2 days ago)
Automatically blocked after 1 security event. Observed sensitive configuration-file probes. Source: ...
show more
Automatically blocked after 1 security event. Observed sensitive configuration-file probes. Source: Cloudflare security controls.
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 21:19:04
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 212.32.69.219 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 212.32.69.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 17:18:59.590883 2026] [security2:error] [pid 351200:tid 351200] [client 212.32.69.219:44831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rail-town.com"] [uri "/.env"] [unique_id "amkcwzcVWvQR3u82iw-R0AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-07-28 20:46:16
(2 days ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-07-28 20:35:02
(2 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
interbiznw.com
2026-07-28 20:11:04
(2 days ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 20:01:46
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 212.32.69.219 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 212.32.69.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 16:01:37.925753 2026] [security2:error] [pid 1523638:tid 1523638] [client 212.32.69.219:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antitribu.com"] [uri "/.env"] [unique_id "amkKoVIgVLGUK-R4736a8AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Halux
2026-07-28 19:37:48
(2 days ago)
212.32.69.219 Probing protected path or service
Web App Attack
Anonymous
2026-07-28 19:34:26
(2 days ago)
http scanning for .env files
...
Hacking
Web App Attack
๐บ๐ธ
dtorrer
2026-07-28 19:29:05
(2 days ago)
General vulnerability scan.
Port Scan
๐ฉ๐ช
Ba-Yu
2026-07-28 19:24:04
(2 days ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ต๐ฑ
sefinek.net
2026-07-28 19:14:18
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.env | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:77.0) Gecko/20100101 Firefox/77.0 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot