๐บ๐ธ
lnklnx
2025-10-19 18:11:46
(8 months ago)
www.lincolnclan.com:443 88.214.24.133 - - [19/Oct/2025:13:11:44 -0500] "GET /.env HTTP/1.1" 401 4104 ...
show more
www.lincolnclan.com:443 88.214.24.133 - - [19/Oct/2025:13:11:44 -0500] "GET /.env HTTP/1.1" 401 4104 "-" "python-requests/2.32.5"
...
show less
Web App Attack
๐ซ๐ฎ
as211431.net
2025-10-19 16:32:39
(8 months ago)
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.env
UA: python-requests/2.32.5
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
COMAITE
2025-10-19 14:42:09
(8 months ago)
Multiple web server 400 error codes from same source ip 88.214.24.133.
Web App Attack
Anonymous
2025-10-08 11:45:02
(8 months ago)
Configuration snooping (/.env):
88.214.24.133 - - [08/Oct/2025:12:31:22 +0100] "GET /.env HTTP/1.1" ...
show more
Configuration snooping (/.env):
88.214.24.133 - - [08/Oct/2025:12:31:22 +0100] "GET /.env HTTP/1.1" 404 241 "-" "python-requests/2.32.5"
show less
Hacking
Web App Attack
๐ซ๐ท
service Informatique
2025-10-07 04:00:37
(8 months ago)
GET /.env
Web App Attack
๐ซ๐ท
geot
2025-10-06 12:43:53
(8 months ago)
GET /.env HTTP/1.1
Hacking
Web App Attack
๐จ๐ญ
lufi
2025-10-06 05:29:05
(8 months ago)
2025-10-06 07:29:04 88.214.24.133: blacklistedPath: /.env
...
Web Spam
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
S.O.B.A. Dev.
2025-10-06 01:02:54
(8 months ago)
Threat Blocked by BeeHive from (ASN:199912) (Network:LAYER7-PAR1) (Host:soba.dev) (Method:GET) (Prot ...
show more
Threat Blocked by BeeHive from (ASN:199912) (Network:LAYER7-PAR1) (Host:soba.dev) (Method:GET) (Protocol:HTTP/1.1) (Timestamp:2025-10-06T01:02:54Z)
show less
Web Spam
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-06 00:46:06
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 88.214.24.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 88.214.24.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 05 20:45:59.936051 2025] [security2:error] [pid 30762:tid 30762] [client 88.214.24.133:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail-pmg.com"] [uri "/.env"] [unique_id "aOMRR3hXKUWBlGrsknEMIAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2025-10-05 22:21:22
(8 months ago)
Bot scanning for environment files .env .env/\*
...
Web App Attack
๐ซ๐ท
tr1n
2025-10-05 21:49:28
(8 months ago)
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.env
UA: python-requests/2.32.5
show less
Bad Web Bot
Anonymous
2025-10-05 21:35:08
(8 months ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2025-10-05 19:22:02
(8 months ago)
Probed for .env vounabilities - 6 times
Web App Attack
๐ณ๐ฑ
Jordy
2025-10-05 07:12:52
(8 months ago)
05/Oct/2025:09:12:52.284004 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
05/Oct/2025:09:12:52.284004 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 88.214.24.133] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "ramongames.nl"] [uri "/.env"] [unique_id "aOIadJkiCZMIO0GrKLyHrwAAAAg"]
05/Oct/2025:09:12:52.284004 +0200Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 88.214.24.133] ModSecurity: Warning. Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "In
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2025-10-04 23:20:30
(8 months ago)
Excessive multi-domain requests
Brute-Force