๐บ๐ธ
TPI-Abuse
2026-09-16 15:40:39
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:40:16.720729 2026] [security2:error] [pid 24966:tid 24966] [client 213.254.175.63:37499] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.104"] [uri "/local/.env"] [unique_id "aqq4YDlmoHY7IwPH02-CKgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:15:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:15:20.003465 2026] [security2:error] [pid 1356:tid 1356] [client 213.254.175.63:35411] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.115"] [uri "/wp-admin/.env"] [unique_id "aqqyiIBavQ7HD3b0PN6FBQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 10:10:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 06:10:16.631256 2026] [security2:error] [pid 21564:tid 21564] [client 213.254.175.63:32383] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.42"] [uri "/protected/.env"] [unique_id "aqprCC0cEAGRr5Fg4LpYKgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-16 09:34:27
(1 week ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-16 09:34 UTC
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-15 20:38:52
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:38:33.181593 2026] [security2:error] [pid 10143:tid 10163] [client 213.254.175.63:41029] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.82"] [uri "/app/config/.env"] [unique_id "aqmsycV4yunqWwklqDpvAQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:50:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:50:32.725235 2026] [security2:error] [pid 27862:tid 27862] [client 213.254.175.63:35349] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.94"] [uri "/wp-content/.env"] [unique_id "aqmhiNMKlbr9ZiVH3DNKWQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:17:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:16:52.481755 2026] [security2:error] [pid 16785:tid 16785] [client 213.254.175.63:32449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.11"] [uri "/wp-content/.env"] [unique_id "aqmZpKjbEtOPE_QWkfiBrgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 09:05:56
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 213.254.175.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 05:05:36.299012 2026] [security2:error] [pid 442:tid 539] [client 213.254.175.63:33787] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.133"] [uri "/cgi-bin/.env"] [unique_id "aqkKYKGgLgjf3XROOliKXgAAAU8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-13 05:24:04
(2 months ago)
WordPress wp-login.php Brute Force Attack
Brute-Force
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-23 09:22:47
(3 months ago)
10 attempts against mh-misc-ban on solar
Web App Attack
๐ง๐ท
dominioz
2026-05-24 10:47:15
(4 months ago)
2026-05-24 10:46:38 GET /.git/HEAD - - 213.254.175.63 HTTP/1.1 Mozilla/5.0+(Windows+NT+x64)+AppleWeb ...
show more
2026-05-24 10:46:38 GET /.git/HEAD - - 213.254.175.63 HTTP/1.1 Mozilla/5.0+(Windows+NT+x64)+AppleWebKit/537.36 - 404 104631
2026-05-24 10:46:39 GET /.cache - - 213.254.175.63 HTTP/1.1 Mozilla/5.0+(Windows+NT+x64)+AppleWebKit/537.36 - 404 104631
2026-05-24 10:46:40 GET /.ssh - - 213.254.175.63 HTTP/1.1 Mozilla/5.0+(Windows+NT+x64)+AppleWebKit/537.36 - 404 104631
2026-05-24 10:46:45 GET /.well-known/core - - 213.254.175.63 HTTP/1.1 Mozilla/5.0+(Windows+NT+x64)+AppleWebKit/537.36 - 404 104631
...
show less
Web App Attack
Anonymous
2026-05-21 12:28:46
(4 months ago)
Forceful Browsing
request:"/database.bak"
Web App Attack
๐ฎ๐ฉ
fazar
2026-05-17 07:48:21
(4 months ago)
crowdsecurity/http-crawl-non_statics on node: bdj03
Web App Attack
Bad Web Bot
Anonymous
2026-05-03 17:49:39
(4 months ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐บ๐ธ
mnsf
2026-03-25 12:05:13
(6 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack