๐บ๐ธ
TPI-Abuse
2026-09-01 11:05:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:05:12.537666 2026] [security2:error] [pid 29323:tid 29571] [client 34.127.11.61:56992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.deathbyaudio.com"] [uri "/.env.backup"] [unique_id "apaxaIL9jUd1Jc6zHxsA2AAAAMQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:47:58
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:47:53.086769 2026] [security2:error] [pid 5626:tid 5626] [client 34.127.11.61:43204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pfmarch.com"] [uri "/.env"] [unique_id "apatWTKb5-OjpJXa5DAQ6AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-01 10:07:37
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:05:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:05:08.273473 2026] [security2:error] [pid 7979:tid 7979] [client 34.127.11.61:60572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ultrakid.com"] [uri "/wp-config.php.swp"] [unique_id "apajVBNc8-a5X_nY7g7YcAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 09:40:02
(2 days ago)
suspicious request in access.log
Web App Attack
๐ซ๐ท
thilo
2026-09-01 09:28:20
(2 days ago)
Probe for vulnerabilities. Path attempted: /.env.old
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 09:15:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:15:26.778028 2026] [security2:error] [pid 10017:tid 10017] [client 34.127.11.61:49888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taskmasterstech.com"] [uri "/.env"] [unique_id "apaXri91LhQvqU5PQGklwAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-01 07:18:55
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:38:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:38:18.393604 2026] [security2:error] [pid 26684:tid 26684] [client 34.127.11.61:34042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "terrybeachmusic.com"] [uri "/.env"] [unique_id "apZy2tAJ1bZGo66A4nU-vQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-01 06:18:04
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 06:03:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:03:10.125238 2026] [security2:error] [pid 9828:tid 9828] [client 34.127.11.61:41386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.dalore.com"] [uri "/wp-config.php~"] [unique_id "apZqnpNQCr4UGVLaRGgR-wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
pscriptos
2026-09-01 04:09:46
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 03:18:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 23:18:42.776297 2026] [security2:error] [pid 13760:tid 13760] [client 34.127.11.61:55740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "onlinesuretybonds.com"] [uri "/wp-config.php.swp"] [unique_id "apZEEpJtKOcvm05KsiO4qwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2026-09-01 03:06:43
(2 days ago)
Suspicious malicious activity
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 02:58:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.11.61 (61.11.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 22:58:17.891890 2026] [security2:error] [pid 10683:tid 10683] [client 34.127.11.61:45362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "katisfaction.dannyvanrijswijk.com"] [uri "/.env.production"] [unique_id "apY_Sam67OnAoROgIx0VIwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack