๐บ๐ธ
TPI-Abuse
2026-09-01 13:55:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:55:36.132623 2026] [security2:error] [pid 20105:tid 20105] [client 34.100.237.184:48078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.celltechs.net"] [uri "/.env"] [unique_id "apbZWF2GPNX4lUcMIHDpfAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
Jim Keir
2026-09-01 13:11:53
(1 day ago)
2026-09-01 13:11:53 34.100.237.184 File scanning, blocking 34.100.237.184 for 5 minutes
Web App Attack
๐ท๐ด
iulianh
2026-09-01 13:08:29
(1 day ago)
80,443
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-09-01 12:57:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 08:57:32.781667 2026] [security2:error] [pid 226455:tid 226565] [client 34.100.237.184:53204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pizzadlux.com"] [uri "/.env.example"] [unique_id "apbLvLAlSH7yQ6QV7T0siwAAANU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 12:17:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 08:17:45.534473 2026] [security2:error] [pid 3914:tid 3914] [client 34.100.237.184:54924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "saynotoofland.org"] [uri "/.env.example"] [unique_id "apbCaScSE69LVwTIPwq8hwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 12:12:05
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.100.237.184 (IN/India/184.237.100.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.100.237.184 (IN/India/184.237.100.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-01 10:57:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:57:10.039772 2026] [security2:error] [pid 12435:tid 12435] [client 34.100.237.184:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.wiszen.org"] [uri "/.env.dev"] [unique_id "apavhpftREyAukjYPqzJAAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-01 10:22:12
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-01 10:01:00
(1 day ago)
34.100.237.184 - - [01/Sep/2026:12:00:56 +0200] "GET /wp-config.php~ HTTP/1.1" 404 103621 "-" "crusa ...
show more
34.100.237.184 - - [01/Sep/2026:12:00:56 +0200] "GET /wp-config.php~ HTTP/1.1" 404 103621 "-" "crusader-worker/1.0"
34.100.237.184 - - [01/Sep/2026:12:00:56 +0200] "GET /wp-config.php.bak HTTP/1.1" 404 103622 "-" "crusader-worker/1.0"
34.100.237.184 - - [01/Sep/2026:12:00:57 +0200] "GET /wp-config.php.bak HTTP/1.1" 301 585 "-" "crusader-worker/1.0"
34.100.237.184 - - [01/Sep/2026:12:00:57 +0200] "GET /wp-config.php~ HTTP/1.1" 301 579 "-" "crusader-worker/1.0"
34.100.237.184 - - [01/Sep/2026:12:00:57 +0200] "GET /env HTTP/1.1" 301 557 "-" "crusader-worker/1.0"
34.100.237.184 - - [01/Sep/2026:12:00:57 +0200] "GET /actuator/env HTTP/1.1" 301 575 "-" "crusader-worker/1.0"
34.100.237.184 - - [01/Sep/2026:12:00:57 +0200] "GET /.env.bak HTTP/1.1" 301 567 "-" "crusader-worker/1.0"
34.100.237.184 - - [01/Sep/2026:12:00:57 +0200] "GET /.env.backup HTTP/1.1" 301 573 "-" "crusader-worker/1.0"
34.100.237.184 - - [01/Sep/2026:12:00:57 +0200] "GET /.env.old HTTP/1.1" 301 567 "-" "crusader-worker/1.0"
show less
Web App Attack
Brute-Force
๐ฉ๐ช
itsolon
2026-09-01 09:49:50
(1 day ago)
[01/Sep/2026:11:49:49 +0200] 178825618943.026301 34.100.237.184 0 217.154.7.177 443
[01/Sep/2026:11: ...
show more
[01/Sep/2026:11:49:49 +0200] 178825618943.026301 34.100.237.184 0 217.154.7.177 443
[01/Sep/2026:11:49:49 +0200] 178825618947.324067 34.100.237.184 0 217.154.7.177 443
[01/Sep/2026:11:49:49 +0200] 178825618950.919851 34.100.237.184 0 217.154.7.177 443
[01/Sep/2026:11:49:49 +0200] 178825618945.233997 34.100.237.184 0 217.154.7.177 443
[01/Sep/2026:11:49:49 +0200] 178825618975.367094 34.100.237.184 0 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
Anonymous
2026-09-01 09:40:03
(1 day ago)
suspicious request in access.log
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-01 09:36:02
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฌ๐ง
consul.to
2026-09-01 09:14:21
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ฎ๐ฉ
Burayot
2026-09-01 08:53:29
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.100.237.184 (IN/India/184.237.100 ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.100.237.184 (IN/India/184.237.100.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 08:34:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.237.184 (184.237.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 04:34:17.034069 2026] [security2:error] [pid 15547:tid 15547] [client 34.100.237.184:42972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marcelacalvet.com"] [uri "/.env.prod"] [unique_id "apaOCf2g37BWHeqL9rfBMQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack