Anonymous
2026-09-16 08:50:02
(3 weeks ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
paprika
2026-09-16 06:59:46
(3 weeks ago)
Automated report #1: 5 attacks detected. Types: Brute-force (login).
Brute-Force
Email Spam
๐บ๐ธ
TPI-Abuse
2026-09-16 01:50:06
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:49:58.604734 2026] [security2:error] [pid 27396:tid 27396] [client 104.198.117.162:37992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "longsans.com"] [uri "/.env"] [unique_id "aqn1xuTM2pYIFVsFkTh4cgAAAAs"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 20:21:55
(3 weeks ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:30:56
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:30:49.524416 2026] [security2:error] [pid 4844:tid 4844] [client 104.198.117.162:38532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "generationedm.com"] [uri "/.env"] [unique_id "aqmc6VimXDTzNm52yo6XYQAAAEc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 16:49:09
(3 weeks ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 16:08:03
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:07:55.362707 2026] [security2:error] [pid 10110:tid 10165] [client 104.198.117.162:52766] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dailysavershbg.com"] [uri "/.env"] [unique_id "aqltW0ZN2yvv0-cWqNbjewAAAJA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-15 15:17:58
(3 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 13:15:33
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:15:30.082410 2026] [security2:error] [pid 31320:tid 31329] [client 104.198.117.162:52472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barneysprecision.com"] [uri "/.env"] [unique_id "aqlE8hm23Iyj8wETLVXw8wAAAEY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:54:08
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:54:04.312160 2026] [security2:error] [pid 4700:tid 4828] [client 104.198.117.162:37648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barnettbusinessgroup.com"] [uri "/.env"] [unique_id "aqk_7NygsSFLjLQJjMI36AAAAI8"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:26:02
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.198.117.162 (162.117.198.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:25:54.598126 2026] [security2:error] [pid 19900:tid 19900] [client 104.198.117.162:33348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barnesandbrower.com"] [uri "/.env"] [unique_id "aqk5Un9RFfQ3jhDZrVm0NQAAAAM"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Savvii
2026-09-15 08:44:36
(3 weeks ago)
20 attempts against mh-misbehave-ban on radon
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-15 07:02:45
(3 weeks ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 05:20:54
(3 weeks ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking