๐ฆ๐บ
nzhost.co.nz
2026-08-01 17:22:00
(13 hours ago)
$f2bV_matches
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-01 17:10:46
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 13:10:38.682338 2026] [security2:error] [pid 2376537:tid 2376537] [client 34.125.59.111:51386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lfrmtmorris.com"] [uri "/.env.production"] [unique_id "am4ojm492FiZvQju-faHsgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 16:52:27
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 12:52:19.246352 2026] [security2:error] [pid 2616426:tid 2616426] [client 34.125.59.111:51704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.smart1services.sophcomp.com"] [uri "/.env.old"] [unique_id "am4kQ6t7nezjPiiQIHZKzgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 16:26:53
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 12:26:47.443029 2026] [security2:error] [pid 1260877:tid 1260877] [client 34.125.59.111:37394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.choice-builders.com"] [uri "/.env"] [unique_id "am4eR7wyFifl00vzQS5BSgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-01 16:11:47
(14 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ท๐บ
DZBOT
2026-08-01 15:48:33
(15 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 15:42:00
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 11:41:53.721455 2026] [security2:error] [pid 2913860:tid 2913860] [client 34.125.59.111:49438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "assembliesofgodinsamoa.org.nomanszone.org"] [uri "/.env.bak"] [unique_id "am4TweZQJJowPK621FriDQAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 15:24:14
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 11:24:07.906007 2026] [security2:error] [pid 705220:tid 705226] [client 34.125.59.111:58040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.internationalbusinessschool.org.aafm.us"] [uri "/.env.old"] [unique_id "am4Pl-rYonAMsGSN1gPaFgAAAYI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-08-01 15:15:08
(15 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐จ๐ญ
4server
2026-08-01 15:11:13
(15 hours ago)
[SatAug0117:11:06.0797342026][security2:error][pid3990480:tid3990738][client34.125.59.111:0]ModSecur ...
show more
[SatAug0117:11:06.0797342026][security2:error][pid3990480:tid3990738][client34.125.59.111:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.shakary.com.81-17-25-250.cpanel.site\"][uri\"/.env.backup\"][unique_id\"am4MimRfOYchZub8qBQCNAAAANI\"]
show less
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-08-01 14:50:26
(16 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-01 14:34:13
(16 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
Matthew Ping
2026-08-01 14:30:01
(16 hours ago)
ModSecurity rule 949110 triggered on d865. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐บ๐ฆ
URAN Publishing Service
2026-08-01 14:29:56
(16 hours ago)
Multiple unauthorized connection attempts
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 14:19:05
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.59.111 (111.59.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 10:19:01.506924 2026] [security2:error] [pid 1781894:tid 1781894] [client 34.125.59.111:47836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "finishlineenterprisesllc.com"] [uri "/.env.example"] [unique_id "am4AVfRZ1FKs2uzPlM_o9wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack