🇳🇱
Site.eu
2026-08-29 17:41:49
(1 week ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-08-28 14:10:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 10:10:45.911522 2026] [security2:error] [pid 19475:tid 19498] [client 35.200.113.139:24256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.spiritualchristian.com"] [uri "/@fs/root/.env"] [unique_id "apGW5UUIXH7KfbeUV-m9_QAAAVE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 13:29:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 09:29:41.440686 2026] [security2:error] [pid 3185:tid 3185] [client 35.200.113.139:49366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.gslandservices.com"] [uri "/@fs/.env.staging"] [unique_id "apGNRY3B_4JDTnRAARcXigAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇷🇺
DZBOT
2026-08-28 13:25:49
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 13:08:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 09:08:01.895375 2026] [security2:error] [pid 10243:tid 10243] [client 35.200.113.139:10324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rcrgalicia.com"] [uri "/@fs/.env"] [unique_id "apGIMbibWirpCSn3_KTI7AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 12:38:22
(1 week ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 11:48:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:48:13.639298 2026] [security2:error] [pid 17436:tid 17436] [client 35.200.113.139:23458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gyt.banis-associates.com"] [uri "/@fs/root/.env"] [unique_id "apF1fQbXa69sWM_w7qHSuAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 11:10:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:10:09.095221 2026] [security2:error] [pid 10859:tid 10859] [client 35.200.113.139:18734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.slartibartfast.com"] [uri "/@fs/root/.env"] [unique_id "apFskVnVU8LqMNi7HcOv0gAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
ConsulHosting
2026-08-28 10:37:04
(1 week ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
🇨🇿
akac
2026-08-28 10:01:02
(1 week ago)
Web vulnerability scanning: HTTP/1.1 GET /back/.env
Hacking
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 09:34:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 05:34:37.329077 2026] [security2:error] [pid 31385:tid 31385] [client 35.200.113.139:16684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.asiabeef.network"] [uri "/@fs/../../.env"] [unique_id "apFWLaG2pb0s4D5nfLQQxAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 08:35:26
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 04:35:21.302702 2026] [security2:error] [pid 27046:tid 27046] [client 35.200.113.139:34552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.akramansari.mydobdate.net"] [uri "/@fs/.env"] [unique_id "apFISSlXrsJE7QvD5fze2QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-08-28 08:09:29
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 07:58:47
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:58:44.387138 2026] [security2:error] [pid 14111:tid 14111] [client 35.200.113.139:61328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.peterlundman.com"] [uri "/@fs/src/.env"] [unique_id "apE_tAkazDFCCgI2RFKJDgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 07:37:07
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.113.139 (139.113.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:36:59.527503 2026] [security2:error] [pid 29568:tid 29570] [client 35.200.113.139:1230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.anglicancommission.com"] [uri "/@fs/root/.env"] [unique_id "apE6m_oHqF-kuxR67AN4qAAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack