GET /.env HTTP/1.1 404 492 - Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) ... show moreGET /.env HTTP/1.1 404 492 - Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36 show less
UTC Time : 2021-04-23 09:51:40.121222285 +0000 UTC // Method : GET // User-agent : Mozilla/5.0 (X11; ... show moreUTC Time : 2021-04-23 09:51:40.121222285 +0000 UTC // Method : GET // User-agent : Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36 ~ Fuzzing / Searching for exploits or backdoors. show less
Bad Web BotWeb App Attack
Anonymous
[21/Apr/2021:14:59:07 -0400] \"GET /.env HTTP/1.1\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/53 ... show more[21/Apr/2021:14:59:07 -0400] \"GET /.env HTTP/1.1\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36\"
[21/Apr/2021:14:59:08 -0400] \"POST / HTTP/1.1\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36\" show less
[SunApr0414:22:57.8599512021][:error][pid18028:tid47925615040256][client76.98.82.31:47630][client76. ... show more[SunApr0414:22:57.8599512021][:error][pid18028:tid47925615040256][client76.98.82.31:47630][client76.98.82.31]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\b\(\?:\\\\\\\\.\(\?:ht\(\?:access\|passwd\|group\)\|www_\?acl\)\|global\\\\\\\\.asa\|httpd\\\\\\\\.conf\|boot\\\\\\\\.ini\|web.config\)\\\\\\\\b\|\(\|\^\|\\\\\\\\.\\\\\\\\.\)/etc/\|/\\\\\\\\.\(\?:history\|bash_history\|sh_history\|env\)\$\)\"atREQUEST_FILENAME.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"211\"][id\"390709\"][rev\"30\"][msg\"Atomicorp.comWAFRules:Attempttoaccessprotectedfileremotely\"][data\"/.env\"][severity\"CRITICAL\"][hostname\"136.243.224.51\"][uri\"/.env\"][unique_id\"YGmvoeFCoAzxZ7ZT2K24XgAAAA0\"][SunApr0414:23:34.3883562021][:error][pid31618:tid47925587724032][client76.98.82.31:42220][client76.98.82.31]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\b\(\?:\\\\\\\\.\(\?:ht\(\?:access\|passwd\|group\)\|www_\?acl\)\|global\\\\\\\\.asa\|httpd\\\\\\\\.conf\|boot\\\\ show less