๐บ๐ธ
IndigoRidge
2026-07-26 23:07:45
(4 hours ago)
93.127.129.50 - - [26/Jul/2026:19:07:40 -0400] "GET /about-us/.env HTTP/1.0" 404 34937 "-" "Mozilla/ ...
show more
93.127.129.50 - - [26/Jul/2026:19:07:40 -0400] "GET /about-us/.env HTTP/1.0" 404 34937 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
93.127.129.50 - - [26/Jul/2026:19:07:44 -0400] "GET /about-us/.git/config HTTP/1.0" 404 34937 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
93.127.129.50 - - [26/Jul/2026:19:07:44 -0400] "GET /about-us/config.php HTTP/1.0" 404 34937 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 22:58:48
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 18:58:44.140767 2026] [security2:error] [pid 438764:tid 438764] [client 93.127.129.50:55982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "divingmachines.com"] [uri "/Diving_Machines/Welcome.html/.env"] [unique_id "amaRJF-KRJ4OXt3TGe4WLQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 22:09:30
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 18:09:23.711676 2026] [security2:error] [pid 892648:tid 892706] [client 93.127.129.50:51734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gabegabel.com"] [uri "/galleries/western/nggallery/page/2/.env"] [unique_id "amaFkwSwGs-dAP5RHiq9cQAAAZY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-07-26 19:19:57
(8 hours ago)
93.127.129.50 - - [26/Jul/2026:15:19:52 -0400] "GET /classes/.env HTTP/1.0" 404 34937 "-" "Mozilla/5 ...
show more
93.127.129.50 - - [26/Jul/2026:15:19:52 -0400] "GET /classes/.env HTTP/1.0" 404 34937 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
93.127.129.50 - - [26/Jul/2026:15:19:53 -0400] "GET /classes/.git/config HTTP/1.0" 404 34937 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
93.127.129.50 - - [26/Jul/2026:15:19:55 -0400] "GET /classes/config.php HTTP/1.0" 404 34937 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-07-26 19:05:12
(8 hours ago)
Abuse Detected (11)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 18:56:34
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 14:56:30.228184 2026] [security2:error] [pid 25733:tid 25733] [client 93.127.129.50:59378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.spores101.com"] [uri "/.env"] [unique_id "amZYXsTN5paexrNzAvAsLwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 17:16:09
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 13:16:01.880116 2026] [security2:error] [pid 3481256:tid 3481256] [client 93.127.129.50:58208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smart1services.com"] [uri "/smart1services/"] [unique_id "amZA0S4kXWHjS7nW4U3mCQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 16:42:37
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 12:42:29.805320 2026] [security2:error] [pid 3113841:tid 3113841] [client 93.127.129.50:50818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.genevainvestors.com"] [uri "/privacy-policy/.env"] [unique_id "amY49elYe3w1VeiCBna2hwAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-26 16:20:01
(11 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 15:56:20
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 11:56:13.445461 2026] [security2:error] [pid 1942284:tid 1942284] [client 93.127.129.50:57136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aabondwnc.com"] [uri "/henderson/.env"] [unique_id "amYuHaqdroALWvpr0JFZLwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-07-26 15:44:52
(12 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-07-26 15:12:46
(12 hours ago)
[da.kdns.gr] httpd-config-scan: sites=www.diadromi.com; logs=/var/log/httpd/domains/diadromi.com.log ...
show more
[da.kdns.gr] httpd-config-scan: sites=www.diadromi.com; logs=/var/log/httpd/domains/diadromi.com.log; samples=/?author=3/.env | /?author=3/.env.local | /?author=3/.git/config
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 15:12:00
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 11:11:52.181255 2026] [security2:error] [pid 2171910:tid 2171910] [client 93.127.129.50:35666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aupapierjaponais.com"] [uri "/index.php/.env"] [unique_id "amYjuB-4WZpglmPF-rzr5AAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 14:23:38
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 93.127.129.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 10:23:30.828974 2026] [security2:error] [pid 2916214:tid 2916214] [client 93.127.129.50:42048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.carminestogo.com"] [uri "/Carmines/Carmines_Italiano_-_Wine_List_files/SWSNYU-3200738-Carmines.pdf/.env"] [unique_id "amYYYgN5Eru-eg9RQX3DTQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-26 14:23:02
(13 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 93.127.129.50 (US/United States/-)
SQL Injection