๐ณ๐ฑ
e.fierstra
2026-07-22 12:46:35
(7 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-07-22 10:57:02
(9 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 10:37:40
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 06:37:36.621781 2026] [security2:error] [pid 1300932:tid 1300932] [client 41.143.154.1:61326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ww1.clcmillvale.com"] [uri "/.env"] [unique_id "amCdcEafLknYEPlZUquMwQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
todix
2026-07-22 09:52:47
(10 hours ago)
Web App Attack Exploid from 41.143.154.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 09:45:18
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 05:45:12.111009 2026] [security2:error] [pid 1179832:tid 1179832] [client 41.143.154.1:61724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.layoverinamsterdam.thinkingepic.com"] [uri "/.env"] [unique_id "amCRKMdSPtxoYe1NWpX-XQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-07-22 08:44:02
(11 hours ago)
vulnerability scan
Web App Attack
๐บ๐ธ
Al Coholic
2026-07-22 08:41:47
(11 hours ago)
Detected By Fail2ban
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 08:35:53
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 04:35:49.571641 2026] [security2:error] [pid 11817:tid 11817] [client 41.143.154.1:64740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gyenyameholistics.com"] [uri "/.env"] [unique_id "amCA5eaTTD__0nJiQyRynAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 07:37:16
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 03:37:08.700752 2026] [security2:error] [pid 511378:tid 511378] [client 41.143.154.1:64076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "edgewatertaxidermy.com"] [uri "/.env"] [unique_id "amBzJD7ERHgSA7v4lGJwBwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
sid3windr
2026-07-22 07:00:50
(13 hours ago)
GET /.env (Tarpitted for 19m42s, wasted 69.38kB)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 06:46:13
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 02:46:06.605546 2026] [security2:error] [pid 417391:tid 417391] [client 41.143.154.1:53362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magusniche.com.allmyartprojects.com"] [uri "/.env"] [unique_id "amBnLnu72qyXUfVD_eUbpQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-22 06:35:33
(13 hours ago)
41.143.154.1 - - [22/Jul/2026:09:35:32 +0300] "GET /.env HTTP/1.1" 404 4680 "-" "-"
...
Web App Attack
๐ฎ๐ณ
evicky2002
2026-07-22 06:00:00
(14 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-07-22 05:43:31
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 41.143.154.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 01:43:24.551329 2026] [security2:error] [pid 3938746:tid 3938746] [client 41.143.154.1:52275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "silvermoonpizza.com"] [uri "/.env"] [unique_id "amBYfEOuZcbmuppNkwxNGQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-22 05:41:24
(14 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack