🇫🇷
SpaceHost-Server
2026-09-04 22:21:12
(6 hours ago)
Brute-Force
Web App Attack
Anonymous
2026-09-04 13:32:03
(14 hours ago)
Bot / scanning and/or hacking attempts: GET /.env.bak HTTP/1.1, GET /.env.old HTTP/1.1, GET /.env.pr ...
show more
Bot / scanning and/or hacking attempts: GET /.env.bak HTTP/1.1, GET /.env.old HTTP/1.1, GET /.env.production HTTP/1.1
show less
Hacking
Web App Attack
🇩🇪
big-cloud.nl
2026-09-04 12:33:34
(15 hours ago)
Try to access /.env
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 12:28:41
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.185.122.39 (39.122.185.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.122.39 (39.122.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:28:37.265049 2026] [security2:error] [pid 16618:tid 16618] [client 35.185.122.39:54296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yacht-register-san-marino.com.yacht-register-holland.com"] [uri "/wp-config.php~"] [unique_id "apq5ddhxhieUShTOxYcVzQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
daveoctober
2026-09-04 12:22:45
(16 hours ago)
October Sentinel: honeypot triggered
Bad Web Bot
Web App Attack
🇲🇾
Rizzy
2026-09-04 12:15:04
(16 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:10:53
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.185.122.39 (39.122.185.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.122.39 (39.122.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:10:46.480457 2026] [security2:error] [pid 8597:tid 8597] [client 35.185.122.39:57760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abq4you.com.peterlundman.com"] [uri "/.env.local"] [unique_id "apqnNmrCDM-M0aheKretFwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 10:44:17
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.185.122.39 (39.122.185.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.122.39 (39.122.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:44:13.271562 2026] [security2:error] [pid 7213:tid 7213] [client 35.185.122.39:36862] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lidart.org"] [uri "/.env.prod"] [unique_id "apqg_cf_dJmGbtT-hJiGUgAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
ISPLtd
2026-09-04 10:17:05
(18 hours ago)
Sep 4 07:17:04 35.185.122.39 TCP SPT=49432 DPT=80 SYN
Sep 4 07:17:04 35.185.122.39 TCP SPT=49390 D ...
show more
Sep 4 07:17:04 35.185.122.39 TCP SPT=49432 DPT=80 SYN
Sep 4 07:17:04 35.185.122.39 TCP SPT=49390 DPT=80 SYN
Sep 4 07:17:04 35.185.122.39 TCP SPT=49374 DPT=80 SYN
...
show less
DDoS Attack
🇺🇸
TPI-Abuse
2026-09-04 10:02:19
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.185.122.39 (39.122.185.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.122.39 (39.122.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:02:06.737030 2026] [security2:error] [pid 1831:tid 1831] [client 35.185.122.39:43686] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "badfoodlawsuit.com"] [uri "/.env.production"] [unique_id "apqXHs6XM54YRnwMAgnJkwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
MyGlobalFlowers
2026-09-04 09:57:12
(18 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-04 09:10:03
(19 hours ago)
suspicious request in access.log
Web App Attack
🇳🇱
e.fierstra
2026-09-04 09:02:00
(19 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-04 08:30:12
(19 hours ago)
Web App Attack
🇫🇷
dynamix
2026-09-04 08:24:55
(20 hours ago)
Multiple WAF Violations
Web App Attack