Anonymous
2026-06-01 14:28:13
(3 months ago)
AndroxGh0st.Malware
Exploited Host
Anonymous
2026-05-30 00:22:49
(3 months ago)
"GET /.env HTTP/1.1"
Hacking
Web App Attack
Anonymous
2026-05-29 16:33:28
(3 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
jcbriar
2026-05-29 12:36:45
(3 months ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐ช๐ธ
alferez
2026-05-29 10:57:50
(3 months ago)
Searching .env files
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
octageeks.com
2026-05-29 04:07:17
(3 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 03:32:31
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 63.141.48.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 63.141.48.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 23:32:24.187574 2026] [security2:error] [pid 2773:tid 2773] [client 63.141.48.51:12135] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.147"] [uri "/.env"] [unique_id "ahkIyMcizAEOXIrdPzhoXwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 02:44:33
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 63.141.48.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 63.141.48.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 22:44:28.901017 2026] [security2:error] [pid 20842:tid 20842] [client 63.141.48.51:23875] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.78"] [uri "/.env"] [unique_id "ahj9jNP_BZYcwY1RFaGORQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-05-29 02:27:20
(3 months ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based)
Hacking
Web App Attack
๐ฎ๐ช
AutosOnShow
2026-05-29 00:08:06
(3 months ago)
blocked for webapp attack | path requested: /.env | seen at 2026-05-29 00:07:10.587 |
Web App Attack
๐ฉ๐ช
Mykola Spesivtsev
2026-05-28 23:54:09
(3 months ago)
HTTP Tarpit detected bot activity:TargetPort:80, Path:/.env, Method:GET, UA:Mozilla/5.0 (X11; Linux ...
show more
HTTP Tarpit detected bot activity:TargetPort:80, Path:/.env, Method:GET, UA:Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/5
show less
Port Scan
Web App Attack
Bad Web Bot
๐ฉ๐ช
Mr-Money
2026-05-28 22:31:34
(3 months ago)
63.141.48.51 - - [29/May/2026:00:31:33 +0200] "GET /.env HTTP/1.1" 404 381 "-" "Mozilla/5.0 (X11; Li ...
show more
63.141.48.51 - - [29/May/2026:00:31:33 +0200] "GET /.env HTTP/1.1" 404 381 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
NXTwoThou
2026-05-28 21:43:56
(3 months ago)
/.env
Web App Attack
๐ฆ๐น
services.org.pl
2026-05-28 20:07:34
(3 months ago)
open() "/var/www/html/.env" failed (2: No such file or directory), client: 63.141.48.51, server: api ...
show more
open() "/var/www/html/.env" failed (2: No such file or directory), client: 63.141.48.51, server: api.services.org.pl, request: "GET /.env HTTP/1.1", host: "46.102.157.176"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 18:51:30
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 63.141.48.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 63.141.48.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 14:51:24.603121 2026] [security2:error] [pid 13421:tid 13421] [client 63.141.48.51:15577] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.64"] [uri "/.env"] [unique_id "ahiOrEDycRGrPkwpEHUBYQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack