๐บ๐ธ
TPI-Abuse
2026-09-12 07:20:16
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.125.82.139 (139.82.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.82.139 (139.82.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 03:20:08.689302 2026] [security2:error] [pid 1345493:tid 1345493] [client 34.125.82.139:13100] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.183"] [uri "/static../.env"] [unique_id "aqT9KKQz4veOI-a4DSVBQQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
masterguru
2026-09-12 05:49:19
(4 days ago)
Host header is a numeric IP address. Pattern match "^ (920350-169)
Hacking
Bad Web Bot
๐ณ๐ฟ
Antinson
2026-09-12 05:36:16
(4 days ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-11 23:48:46
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.125.82.139 (139.82.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.82.139 (139.82.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 19:48:38.813191 2026] [security2:error] [pid 28231:tid 28231] [client 34.125.82.139:16002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.230"] [uri "/static../.env"] [unique_id "aqSTVjtC_yXPI1-nKuPEJwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-11 14:33:00
(5 days ago)
"Security violation, excess traffic against library/education infrastructure"
Brute-Force
๐ฉ๐ช
Admins@FBN
2026-09-11 08:41:42
(5 days ago)
FW-PortScan: Traffic Blocked srcport=2938 dstport=443
Port Scan
๐ฆ๐บ
dyln
2026-09-11 07:22:36
(5 days ago)
Dyls honeypot brute-force: proto8 (598 total hits)
Brute-Force
๐บ๐ธ
xmission.com
2026-09-11 02:25:30
(5 days ago)
Blocked by UFW (TCP on 8443)
Source port: 42914
TTL: 60
Packet length: 60
TOS: 0x00
This report (fo ...
show more
Blocked by UFW (TCP on 8443)
Source port: 42914
TTL: 60
Packet length: 60
TOS: 0x00
This report (for 34.125.82.139) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-11 01:18:18
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.125.82.139 (139.82.125.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.82.139 (139.82.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 21:18:12.024714 2026] [security2:error] [pid 31634:tid 31657] [client 34.125.82.139:55956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.17"] [uri "/static../.env"] [unique_id "aqNW1KmAGAoMatdNg2bsTQAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-09-10 22:42:35
(5 days ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ซ๐ท
dynamix
2026-09-10 18:42:23
(5 days ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-10 16:51:30
(6 days ago)
denied traffic to a honeypot network. destination port 8443.
Port Scan
Hacking
๐บ๐ธ
xmission.com
2026-09-10 14:16:52
(6 days ago)
Blocked by UFW (TCP on 8443)
Source port: 25084
TTL: 60
Packet length: 60
TOS: 0x00
This report (fo ...
show more
Blocked by UFW (TCP on 8443)
Source port: 25084
TTL: 60
Packet length: 60
TOS: 0x00
This report (for 34.125.82.139) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ง๐ฌ
Filipe Dรกvila
2026-09-10 13:53:10
(6 days ago)
[Thu Sep 10 09:53:03.698909 2026] [core:error] [pid 598864:tid 140396726228736] [client 34.125.82.13 ...
show more
[Thu Sep 10 09:53:03.698909 2026] [core:error] [pid 598864:tid 140396726228736] [client 34.125.82.139:43516] AH00126: Invalid URI in request GET /assets../../../etc/passwd HTTP/1.1
[Thu Sep 10 09:53:08.824218 2026] [core:error] [pid 598649:tid 140396776650496] [client 34.125.82.139:43480] AH00126: Invalid URI in request GET /assets../../../.env HTTP/1.1
show less
Web App Attack
๐ท๐ธ
Smel
2026-09-10 13:03:08
(6 days ago)
Unauthorized Probe/Connection, Hack -
Port Scan
Hacking