๐บ๐ธ
TPI-Abuse
2026-06-05 09:23:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 05:23:30.658408 2026] [security2:error] [pid 20018:tid 20018] [client 3.133.117.207:50758] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bcmech.com"] [uri "/.env"] [unique_id "aiKVkmxPbe0yduIZms_IewAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 03:42:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 23:42:09.270357 2026] [security2:error] [pid 11513:tid 11513] [client 3.133.117.207:38394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bakerimaging.com"] [uri "/.env"] [unique_id "aiJFkU1CBFIEOvQIXs_7fQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-04 20:57:54
(1 day ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 14:33:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 10:32:53.271655 2026] [security2:error] [pid 32377:tid 32377] [client 3.133.117.207:44508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "architx.com"] [uri "/.env"] [unique_id "aiGMlaEj1qo4pGSUYLx5PgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-04 10:36:05
(2 days ago)
PSCSERV WPSCAN 3.133.117.207
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 10:26:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 06:26:13.973624 2026] [security2:error] [pid 17754:tid 17754] [client 3.133.117.207:41730] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antoniocobo.com"] [uri "/.env"] [unique_id "aiFSxTx_utkFyRqUDklNrgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 08:51:44
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 04:51:39.866123 2026] [security2:error] [pid 10170:tid 10170] [client 3.133.117.207:40730] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "angelpc.net"] [uri "/.env"] [unique_id "aiE8m1448Jqjd72xPMdASgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 08:26:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 04:26:24.260741 2026] [security2:error] [pid 4133:tid 4164] [client 3.133.117.207:43718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "andrewbelschner.com"] [uri "/.env"] [unique_id "aiE2sCT3tWCjSIewrFZe-gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-06-04 07:32:03
(2 days ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐บ๐ธ
mnsf
2026-06-04 05:05:53
(2 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 01:40:27
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 21:40:21.760831 2026] [security2:error] [pid 26468:tid 26468] [client 3.133.117.207:45502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alarmnummer.com"] [uri "/.env"] [unique_id "aiDXhT1C1QYCTFeCb9AUCwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-03 23:23:03
(2 days ago)
Bot / scanning and/or hacking attempts: GET /wp/.env HTTP/1.1, GET /.env.development HTTP/1.1, GET / ...
show more
Bot / scanning and/or hacking attempts: GET /wp/.env HTTP/1.1, GET /.env.development HTTP/1.1, GET /app/.env HTTP/1.1, GET /.env.save HTTP/1.1, GET /admin/.env HTTP/1.1, GET /.env.test HTTP/1.1, GET /laravel/.env HTTP/1.1, GET /release/.env HTTP/1.1, GET /public/.env HTTP/1.1, GET /html/.env HTTP/1.1, GET /.env.old HTTP/1.1, GET /cms/.env HTTP/1.1, GET /.env.example HTTP/1.1, GET /services/.env HTTP/1.1, GET /.env.staging HTTP/1.1, GET /.env.backup HTTP/1.1, GET /.env_backup HTTP/1.1, GET /service/.env HTTP/1.1, GET /.env2 HTTP/1.1, GET /.env-local HTTP/1.1, GET /api/v1/.env HTTP/1.1, GET /conf/.env HTTP/1.1
show less
Hacking
Web App Attack
๐จ๐ญ
backslash
2026-06-03 22:03:00
(2 days ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-03 21:20:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.133.117.207 (ec2-3-133-117-207.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 17:20:34.431495 2026] [security2:error] [pid 15214:tid 15214] [client 3.133.117.207:46168] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ageh.com"] [uri "/.env"] [unique_id "aiCaonoGB0TRd0_mG_fV5AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-06-03 17:56:34
(2 days ago)
Login credentials theft attempt
Hacking