๐บ๐ธ
TPI-Abuse
2026-06-06 04:26:02
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 00:25:56.472968 2026] [security2:error] [pid 29096:tid 29096] [client 95.135.205.75:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uwsvita.org"] [uri "/.env"] [unique_id "aiOhVIH8NNjTLdHtN-pMkAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-06 03:05:34
(2 hours ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 01:20:42
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 21:20:38.967155 2026] [security2:error] [pid 7617:tid 7617] [client 95.135.205.75:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jspsf.com"] [uri "/.env"] [unique_id "aiN15uYcmX9BWpPrBqlSoQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 23:38:56
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 19:38:48.624829 2026] [security2:error] [pid 22935:tid 22935] [client 95.135.205.75:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sportsbookcommission.com"] [uri "/.env"] [unique_id "aiNeCAki_AAWwKHP1oASVAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 22:13:30
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 18:13:24.824779 2026] [security2:error] [pid 4697:tid 4697] [client 95.135.205.75:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antitribu.com"] [uri "/.env"] [unique_id "aiNKBNzt4pZagzwnIMbAUAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Halux
2026-06-05 09:58:54
(19 hours ago)
95.135.205.75 Probing protected path or service
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 09:34:53
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 05:34:46.651576 2026] [security2:error] [pid 30977:tid 30977] [client 95.135.205.75:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thectegroup.net"] [uri "/.env"] [unique_id "aiKYNkI9gw9YDrPTF57XVwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-05 05:48:20
(23 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.env
UA: Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-04 14:58:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 95.135.205.75 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 10:58:33.504184 2026] [security2:error] [pid 15095:tid 15095] [client 95.135.205.75:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nyemdr.com"] [uri "/.env"] [unique_id "aiGSmYJ1PtrrEGfkZXmYOAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-06-04 13:23:25
(1 day ago)
(mod_security-custom) mod_security (id:210492) triggered by 95.135.205.75 (US/United States/Virginia ...
show more
(mod_security-custom) mod_security (id:210492) triggered by 95.135.205.75 (US/United States/Virginia/Ashburn/-/[AS22773 ASN-CXA-ALL-CCI-22773-RDC]): 1 in the last 3600 secs (0-srv1)
show less
Hacking
๐ฑ๐ป
garmtech.com
2026-06-04 10:10:42
(1 day ago)
IM360 WAF: Laravel Apps Leaking Secrets exploit attempt MV:androxgh0st
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-04 10:10:41
(1 day ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.env
Web App Attack
๐บ๐ธ
interbiznw.com
2026-06-03 12:38:21
(2 days ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
apislytics
2026-06-03 10:35:56
(2 days ago)
Automatic hard ban after repeated rate-limit abuse
Brute-Force
๐ฉ๐ช
Starburst SysOp Team
2026-06-03 10:15:16
(2 days ago)
Malware host (X-Forwarded-For) detected by rbl.malware.expert. RBL lookup of 75.205.135.95.rbl.malwa ...
show more
Malware host (X-Forwarded-For) detected by rbl.malware.expert. RBL lookup of 75.205.135.95.rbl.malware.expert succeeded at REQUEST_HEADERS:x-forwarded-for. (1001000-nue6-2)
show less
Hacking