Anonymous
2026-06-28 13:17:20
(28 minutes ago)
62.4.29.85 - - [28/Jun/2026:21:17:19 +0800] "GET /.env HTTP/1.1" 200 30682 "-" "Mozilla/5.0 (X11; Li ...
show more
62.4.29.85 - - [28/Jun/2026:21:17:19 +0800] "GET /.env HTTP/1.1" 200 30682 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 12:26:40
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 62.4.29.85 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 62.4.29.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 08:26:37.293151 2026] [security2:error] [pid 29498:tid 29498] [client 62.4.29.85:46428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aykuatelier.com"] [uri "/.env"] [unique_id "akES_c1EHyXgdJ3O5s6PEQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-06-28 11:26:54
(2 hours ago)
[redacted] 62.4.29.85 - - [28/Jun/2026:11:50:16 +0100] "GET /.env HTTP/1.1" 302 1528 0/105489 "-" "M ...
show more
[redacted] 62.4.29.85 - - [28/Jun/2026:11:50:16 +0100] "GET /.env HTTP/1.1" 302 1528 0/105489 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36" [redacted] 62.4.29.85 - - [28/Jun/2026:12:26:52 +0100] "GET /.env HTTP/1.1" 302 6753 0/76663 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-28 11:12:55
(2 hours ago)
dot file probe
Web App Attack
๐บ๐ธ
Lee Daniel
2026-06-28 11:07:08
(2 hours ago)
62.4.29.85 - - [28/Jun/2026:07:07:07 -0400] "GET /.env HTTP/1.1" 403 4799 "-" "Mozilla/5.0 (X11; Lin ...
show more
62.4.29.85 - - [28/Jun/2026:07:07:07 -0400] "GET /.env HTTP/1.1" 403 4799 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
AutosOnShow
2026-06-28 10:57:05
(2 hours ago)
blocked for webapp attack | path requested: /.env | seen at 2026-06-28 10:56:45.907 |
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 10:15:09
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.4.29.85 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 62.4.29.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 06:15:04.695665 2026] [security2:error] [pid 9167:tid 9167] [client 62.4.29.85:45048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atelier92.com"] [uri "/.env"] [unique_id "akD0KJbsSVqhu05OQx2PUAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Halux
2026-06-28 10:06:24
(3 hours ago)
62.4.29.85 Probing protected path or service
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 09:39:23
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.4.29.85 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 62.4.29.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 05:39:14.722281 2026] [security2:error] [pid 11359:tid 11359] [client 62.4.29.85:59888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "automationmp.com"] [uri "/.env"] [unique_id "akDrwllpTw5cbt2nK8RlkQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Axel
2026-06-28 09:34:01
(4 hours ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.env Server: ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.env Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐จ๐ญ
4server
2026-06-28 09:06:15
(4 hours ago)
[SunJun2811:06:10.2486012026][security2:error][pid844858:tid845061][client62.4.29.85:0]ModSecurity:A ...
show more
[SunJun2811:06:10.2486012026][security2:error][pid844858:tid845061][client62.4.29.85:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"asyam.ch\"][uri\"/.env\"][unique_id\"akDkAs-C42USO3gsBR9PkgAAAMA\"]
show less
Hacking
Web App Attack
Anonymous
2026-06-28 07:51:03
(5 hours ago)
Bot / scanning and/or hacking attempts: GET /.env HTTP/1.1
Hacking
Web App Attack
๐ฉ๐ช
conseilgouz
2026-06-28 07:49:54
(5 hours ago)
ave-17 : Block hidden directories=>/.env(/)
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-28 07:41:54
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.4.29.85 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 62.4.29.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 03:41:47.170221 2026] [security2:error] [pid 31604:tid 31604] [client 62.4.29.85:55116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "astglobaltech.com"] [uri "/.env"] [unique_id "akDQO4wFpcvlyct3KMXGQwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-28 07:30:08
(6 hours ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot