๐ฌ๐ง
pinguin
2026-08-22 11:42:06
(1 hour ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /.env
UA: python-requests/2.32.4
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
Major Hostility
2026-08-22 11:19:42
(1 hour ago)
"GET /.env HTTP/1.1" 404
"GET /.env HTTP/1.1" 404
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 11:06:55
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 74.208.119.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.119.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:06:47.073838 2026] [security2:error] [pid 31451:tid 31508] [client 74.208.119.42:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mindgardens.com"] [uri "/.env"] [unique_id "aomCx_JR4DrIX7ajLU8pdwAAAVM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
cityhunter_rhone
2026-08-22 11:06:05
(1 hour ago)
Fail2Ban offender in jail [recidive] โ 1 total attempts โ tracked by mercurius-guide.com security sy ...
show more
Fail2Ban offender in jail [recidive] โ 1 total attempts โ tracked by mercurius-guide.com security system.
show less
SSH
Brute-Force
๐ฉ๐ช
4server
2026-08-22 10:43:39
(2 hours ago)
[SatAug2212:43:35.1416142026][security2:error][pid2348503:tid2348549][client74.208.119.42:0]ModSecur ...
show more
[SatAug2212:43:35.1416142026][security2:error][pid2348503:tid2348549][client74.208.119.42:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"gmint.ch\"][uri\"/.env\"][unique_id\"aol9VxctMgaG8ceTX1vtRQAAANA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
kkwemi
2026-08-22 10:14:06
(2 hours ago)
Blocked by block-exploit-paths on /.env
Bad Web Bot
๐ท๐ด
iulianh
2026-08-22 09:54:58
(3 hours ago)
80,443
Brute-Force
SSH
๐ฉ๐ช
Gwyneth Llewelyn
2026-08-22 06:58:14
(6 hours ago)
2026/08/22 07:58:12 [error] 2157#2157: *918518 access forbidden by rule, client: 74.208.119.42, serv ...
show more
2026/08/22 07:58:12 [error] 2157#2157: *918518 access forbidden by rule, client: 74.208.119.42, server: lisbon-pre-1755-earthquake.org, request: "GET /.env HTTP/2.0", host: "lisbon-pre-1755-earthquake.org"
74.208.119.42 - - [22/Aug/2026:07:58:12 +0100] "GET /.env HTTP/2.0" 403 1045 "-" "python-requests/2.32.4"
2026/08/22 07:58:12 [error] 2157#2157: *918519 access forbidden by rule, client: 74.208.119.42, server: lisbon-pre-1755-earthquake.org, request: "GET /.env HTTP/2.0", host: "lisbon-pre-1755-earthquake.org"
show less
Brute-Force
Web App Attack
๐ง๐ท
Halux
2026-08-22 06:11:40
(6 hours ago)
74.208.119.42 Probing protected path or service
Web App Attack
๐ฌ๐ง
foxxelabs
2026-08-22 06:07:22
(6 hours ago)
Automated report from FoxxeLabs Sentinel. Path probed: /.env | Project: anseo | Reason(s): Known exp ...
show more
Automated report from FoxxeLabs Sentinel. Path probed: /.env | Project: anseo | Reason(s): Known exploit path: /.env; AbuseIPDB score: 100/100 | User-Agent: python-requests/2.32.4
show less
Web App Attack
๐บ๐ธ
Epimetheus
2026-08-22 03:14:21
(9 hours ago)
Unauthorized access attempts:
[GET] /.env
[GET] /.env
UA: python-requests/2.32.4
Web App Attack
Anonymous
2026-08-22 02:20:00
(10 hours ago)
$f2bV_matches
Brute-Force
๐ง๐ช
Saec
2026-08-22 01:57:12
(11 hours ago)
Jarvis auto-ban: Honeypot /.env via saec.ovh [US] ASN:IONOS Inc.
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 01:38:36
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 74.208.119.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.119.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 21:38:31.396360 2026] [security2:error] [pid 23816:tid 23816] [client 74.208.119.42:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "forsaleincr.com"] [uri "/.env"] [unique_id "aoj9ly-9BzKuHlnTO8GFKQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Mundo Bueno
2026-08-22 00:43:47
(12 hours ago)
[ISILIA Protection v2.1] Tentative d'accรจs: /.env | Pays: US | UA: python-requests/2.32.4
Hacking
Web App Attack