๐ฎ๐ฉ
Burayot
2026-06-07 12:06:36
(2 weeks ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 77.224.135.184 (ES/Spain/static-184 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 77.224.135.184 (ES/Spain/static-184-135-224-77.ipcom.comunitel.net): 1 in the last 3600 secs
show less
Web App Attack
Anonymous
2026-06-06 11:05:32
(3 weeks ago)
"GET /.env HTTP/1.1"
Hacking
Web App Attack
๐ฌ๐ง
Oakley
2026-06-06 02:17:35
(3 weeks ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-06 01:34:08
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.com ...
show more
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.comunitel.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 21:33:59.644466 2026] [security2:error] [pid 13063:tid 13063] [client 77.224.135.184:52743] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "summithost.com"] [uri "/.env"] [unique_id "aiN5B2n6YDG3ZlPSjq4T5gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-06-06 00:01:50
(3 weeks ago)
Login credentials theft attempt
Hacking
Anonymous
2026-06-05 23:50:05
(3 weeks ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 23:43:31
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.com ...
show more
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.comunitel.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 19:43:28.396529 2026] [security2:error] [pid 13023:tid 13026] [client 77.224.135.184:60956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cmykdesign.com"] [uri "/.env"] [unique_id "aiNfIFN1Bqc40VtIqC8ZhAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 23:20:12
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.com ...
show more
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.comunitel.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 19:20:06.863387 2026] [security2:error] [pid 13344:tid 13344] [client 77.224.135.184:64652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unified-dispatch.com"] [uri "/.env"] [unique_id "aiNZplRWEy973xC5G8J-zgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 23:03:09
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.com ...
show more
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.comunitel.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 19:03:02.990829 2026] [security2:error] [pid 29215:tid 29215] [client 77.224.135.184:58062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "handi-finder.com"] [uri "/.env"] [unique_id "aiNVpude-AFoUatXzn1Z-AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-05 23:02:25
(3 weeks ago)
[SatJun0601:02:20.4809632026][security2:error][pid3338973:tid3339261][client77.224.135.184:0]ModSecu ...
show more
[SatJun0601:02:20.4809632026][security2:error][pid3338973:tid3339261][client77.224.135.184:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"fisioterapiafalzone.ch\"][uri\"/.env\"][unique_id\"aiNVfLKRME30iFuA8MUSCAAAAQM\"]
show less
Hacking
Web App Attack
๐ณ๐ฟ
Tripwire
2026-06-05 22:58:26
(3 weeks ago)
Scanning for exploits - /.env
Web App Attack
๐บ๐ธ
mnsf
2026-06-05 22:08:03
(3 weeks ago)
Abuse Detected (2)
Brute-Force
Web App Attack
๐ณ๐ฑ
nate naten
2026-06-05 22:00:34
(3 weeks ago)
HoneyTrap: env_file attempt on /.env from Spain
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 20:30:55
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.com ...
show more
(mod_security) mod_security (id:210492) triggered by 77.224.135.184 (static-184-135-224-77.ipcom.comunitel.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 16:30:46.724282 2026] [security2:error] [pid 16822:tid 16822] [client 77.224.135.184:65143] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "socialstudiesforkids.com"] [uri "/.env"] [unique_id "aiMx9lMWEtmljTPfa8T2aQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-06-05 20:26:35
(3 weeks ago)
Accessed trap at '/.env'
Web App Attack