🇺🇸
TPI-Abuse
2026-09-08 20:06:13
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 16:06:09.876380 2026] [security2:error] [pid 15597:tid 15597] [client 34.104.247.216:21272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pkmachine.com"] [uri "/@fs/.env.local"] [unique_id "aqBqsTlTDx19nJLJt_G_MwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:39:35
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:39:27.447625 2026] [security2:error] [pid 14866:tid 14866] [client 34.104.247.216:50522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aufflammen.com"] [uri "/@fs/../.env"] [unique_id "aqBkbzPy7eQajacTRHRY2QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-08 18:52:34
(5 hours ago)
Excessive 404/403 errors
Brute-Force
🇺🇸
TPI-Abuse
2026-09-08 18:35:13
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 14:35:06.207897 2026] [security2:error] [pid 10405:tid 10405] [client 34.104.247.216:43660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "videoverse.com"] [uri "/@fs/.env.production"] [unique_id "aqBVWlGzHHYhmWtjsJ9oMAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
initsol
2026-09-08 16:09:43
(8 hours ago)
[Tue Sep 08 18:09:38.205644 2026] [authz_core:error] [pid 2626865:tid 2626865] [client 34.104.247.21 ...
show more
[Tue Sep 08 18:09:38.205644 2026] [authz_core:error] [pid 2626865:tid 2626865] [client 34.104.247.216:24212] AH01630: client denied by server configuration: /var/www/
[Tue Sep 08 18:09:42.763354 2026] [authz_core:error] [pid 2545997:tid 2545997] [client 34.104.247.216:24220] AH01630: client denied by server configuration: /var/www/
[Tue Sep 08 18:09:42.795192 2026] [authz_core:error] [pid 2622187:tid 2622187] [client 34.104.247.216:24258] AH01630: client denied by server configuration: /var/www/@fs
...
show less
Brute-Force
🇮🇹
VHosting
2026-09-08 15:25:04
(9 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 14:58:17
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 10:58:12.858667 2026] [security2:error] [pid 30906:tid 30906] [client 34.104.247.216:15432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thegreatleapforward.com"] [uri "/@fs/src/.env"] [unique_id "aqAihMnj-jE9SWRNc7nMzAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 14:55:38
(9 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇫🇷
Octopuce
2026-09-08 14:44:38
(9 hours ago)
Aggressive web search of vulnerable pages: /_nuxt/../.env /img../.env /uploads../.env /images../.env ...
show more
Aggressive web search of vulnerable pages: /_nuxt/../.env /img../.env /uploads../.env /images../.env /.env ...
show less
Web App Attack
Anonymous
2026-09-08 14:39:40
(9 hours ago)
Aggressive web scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 14:31:34
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 10:31:30.482435 2026] [security2:error] [pid 14626:tid 14626] [client 34.104.247.216:11840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.platformintelligence.com"] [uri "/@fs/.env"] [unique_id "aqAcQkXij0yNZY_mtnpg1AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 14:11:01
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.247.216 (216.247.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 10:10:55.737081 2026] [security2:error] [pid 9107:tid 9107] [client 34.104.247.216:60836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.geriking.com"] [uri "/@fs/app/.env"] [unique_id "aqAXb5GwVa4kOnyDPVHnwgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack