๐บ๐ธ
TPI-Abuse
2026-07-28 18:44:33
(12 minutes ago)
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 14:44:26.814771 2026] [security2:error] [pid 1799766:tid 1799766] [client 74.208.111.47:50467] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.pfmarch.com"] [uri "/.env"] [unique_id "amj4ipDnic9NQNhpVNJ9DgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-07-28 16:16:48
(2 hours ago)
[TueJul2818:16:44.5588922026][security2:error][pid1600939:tid1601233][client74.208.111.47:0]ModSecur ...
show more
[TueJul2818:16:44.5588922026][security2:error][pid1600939:tid1601233][client74.208.111.47:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpanel.lemox.ch\"][uri\"/.env\"][unique_id\"amjV7Jab_vvaYCcGPKnMagAAAVc\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 23:35:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 19:35:20.823871 2026] [security2:error] [pid 3493403:tid 3493403] [client 74.208.111.47:51219] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "easternimport.com"] [uri "/.env"] [unique_id "amaZuJa3hzqBvvUCqvk77AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-07-26 23:01:08
(1 day ago)
[MonJul2701:01:04.4666972026][security2:error][pid2033443:tid2033707][client74.208.111.47:0]ModSecur ...
show more
[MonJul2701:01:04.4666972026][security2:error][pid2033443:tid2033707][client74.208.111.47:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"verticalti.ch\"][uri\"/.env\"][unique_id\"amaRsHY_S86MDTS8EdtNMAAAAQo\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 22:36:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 18:36:18.541881 2026] [security2:error] [pid 3860267:tid 3860267] [client 74.208.111.47:64397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bayarealangarts.com"] [uri "/.env"] [unique_id "amaL4sOhsfrKE1bwVbuK6AAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-07-26 21:06:24
(1 day ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 20:13:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 16:13:19.971501 2026] [security2:error] [pid 17518:tid 17518] [client 74.208.111.47:60083] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "t9teamsportinggoods.com"] [uri "/.env"] [unique_id "amZqX6BzumZ8oPZflk7PcwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
jcbriar
2026-07-26 19:50:05
(1 day ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 19:42:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 15:42:22.343591 2026] [security2:error] [pid 190176:tid 190176] [client 74.208.111.47:58413] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "backtosleep.com"] [uri "/.env"] [unique_id "amZjHvaf3tkd1KezRBcaUAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-26 19:40:02
(1 day ago)
suspicious request in access.log
Web App Attack
๐ฎ๐ช
AutosOnShow
2026-07-26 18:15:07
(2 days ago)
blocked for webapp attack | path requested: /.env | seen at 2026-07-26 18:14:20.313 |
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 17:06:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.111.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 13:06:16.946129 2026] [security2:error] [pid 2932818:tid 2932837] [client 74.208.111.47:51882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.moogoob.com"] [uri "/.env"] [unique_id "amY-iEA1CdqePO13O9uKswAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack