🇺🇸
TPI-Abuse
2026-08-27 03:34:29
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:34:23.801691 2026] [security2:error] [pid 11657:tid 11657] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:38622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stonetarot.com"] [uri "/.env"] [unique_id "ao-wPyPicDVB61BEOWx5ZAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 02:47:25
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:47:21.622361 2026] [security2:error] [pid 11053:tid 11053] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:34630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "linfischer.com"] [uri "/.env"] [unique_id "ao-lOSsapJfGUtqtt70ejwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-26 21:14:10
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:14:05.265562 2026] [security2:error] [pid 3099:tid 3099] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:57622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cynthiabaxter.com"] [uri "/.env"] [unique_id "ao9XHZ9aMkaoFR02rWjGiQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-26 19:36:24
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 15:36:15.726850 2026] [security2:error] [pid 26042:tid 26042] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:59468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kurtkaufman.com"] [uri "/.env"] [unique_id "ao9AL5Y498jpmqEvNI53EAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-08-25 17:04:22
(2 weeks ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-08-25 13:31:52
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:31:46.507226 2026] [security2:error] [pid 26351:tid 26351] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:37192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kameleonquilt.com"] [uri "/.env"] [unique_id "ao2ZQlR7phfpQyLSxHVCMwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-25 12:51:06
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 08:50:59.762994 2026] [security2:error] [pid 23196:tid 23196] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:42512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boatpeople.org"] [uri "/.env"] [unique_id "ao2PsyznrLBtQYKaAwxaoAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
ELYAZ
2026-08-24 11:24:51
(2 weeks ago)
(y3) Failed access -byebye- from 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): (CF_ENABLE)
Hacking
🇺🇸
TPI-Abuse
2026-08-24 08:43:44
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 04:43:36.282857 2026] [security2:error] [pid 10930:tid 10930] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:35434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anxo.org"] [uri "/.env"] [unique_id "aowEOEnvPVMfHuYl_VyFDAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
strefapi_com
2026-08-24 03:01:01
(2 weeks ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-23 23:28:44
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 19:28:37.845828 2026] [security2:error] [pid 15575:tid 15575] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:33290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spaceritual.net"] [uri "/.env"] [unique_id "aouCJdoW-tRcHHpyF15x9QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-08-23 19:11:02
(2 weeks ago)
Multiple WAF Violations
Web App Attack
🇳🇱
Site.eu
2026-08-23 17:31:41
(2 weeks ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-08-23 01:13:35
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in th ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:b0c0:1:e0:0:1:9ce9:7001 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 21:13:32.269083 2026] [security2:error] [pid 2212:tid 2358] [client 2a03:b0c0:1:e0:0:1:9ce9:7001:58226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flapjacktoys.com"] [uri "/.env"] [unique_id "aopJPJTBJs7XaSXSlefnJAAAAZM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-08-23 00:30:43
(3 weeks ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.env (+1 more)
show less
Hacking
Web App Attack