๐บ๐ธ
RH5
2026-06-18 23:27:37
(10 hours ago)
Restricted URL probing (/.env) (UTC 2026-06-18 23:27)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 23:21:50
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 19:21:43.268404 2026] [security2:error] [pid 6089:tid 6089] [client 62.93.179.154:18249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "retiredengineers.net"] [uri "/.env"] [unique_id "ajR9h8umJ-RSgIyFHV4omgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
conrad10781
2026-06-18 23:09:17
(10 hours ago)
nginx-dot-env
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-06-18 23:07:01
(10 hours ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [mx01,mx02]
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 20:16:35
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 16:16:31.242696 2026] [security2:error] [pid 8011:tid 8011] [client 62.93.179.154:32929] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carbonless.net"] [uri "/.env"] [unique_id "ajRSH2-ldELug4muVJSE4AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
retrokitty.net
2026-06-18 20:13:44
(13 hours ago)
62.93.179.154 - - [18/Jun/2026:20:13:43 +0000] "GET /.env HTTP/2.0" 503 19155 "https://moxx.net/.env ...
show more
62.93.179.154 - - [18/Jun/2026:20:13:43 +0000] "GET /.env HTTP/2.0" 503 19155 "https://moxx.net/.env" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-06-18 19:44:10
(13 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 19:13:17
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 15:13:11.959821 2026] [security2:error] [pid 17941:tid 17941] [client 62.93.179.154:60007] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bookguardian.net"] [uri "/.env"] [unique_id "ajRDR3XJvRbaghq01z8hnwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 18:55:53
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 14:55:46.131360 2026] [security2:error] [pid 29451:tid 29451] [client 62.93.179.154:13539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marykaydesign.net"] [uri "/.env"] [unique_id "ajQ_MsZvyu5JxP3lVAmP-QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-18 18:46:12
(14 hours ago)
Automatic report - Vulnerability scan
/.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 18:38:01
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 14:37:53.704255 2026] [security2:error] [pid 21497:tid 21497] [client 62.93.179.154:35421] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bencramer.net"] [uri "/.env"] [unique_id "ajQ7Af0JtXqNs3sNvnvFTAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-18 18:25:02
(15 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 18:19:57
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 14:19:51.804241 2026] [security2:error] [pid 32198:tid 32198] [client 62.93.179.154:55007] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lozzy.net"] [uri "/.env"] [unique_id "ajQ2x5SRYlTwvxD_BmuTVQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-18 18:05:23
(15 hours ago)
Abuse Detected (3)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 17:52:41
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 62.93.179.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 13:52:35.015540 2026] [security2:error] [pid 6108:tid 6108] [client 62.93.179.154:29719] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lilachost.net"] [uri "/.env"] [unique_id "ajQwY9KrTZT1qeng6_ykRwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack