🇺🇸
mnsf
2026-09-07 11:05:16
(4 hours ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
🇧🇪
cmbplf
2026-09-07 10:28:37
(4 hours ago)
3.009 requests with url.path */@fs/*
749 requests with url.path *.aws/*
298 requests with url.pat ...
show more
3.009 requests with url.path */@fs/*
749 requests with url.path *.aws/*
298 requests with url.path *config.json
280 requests with url.path *.config/*
218 requests with url.path */proc/*
167 requests with url.path *.azure/*
158 requests with url.path *.ssh/*
show less
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 09:43:25
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 05:43:20.959459 2026] [security2:error] [pid 12215:tid 12215] [client 34.134.234.2:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.forsaleincr.com"] [uri "/@fs/.env"] [unique_id "ap6HOGBA3syUuosC5t77JgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-07 09:37:22
(5 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 09:17:33
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 05:17:30.328126 2026] [security2:error] [pid 30760:tid 30777] [client 34.134.234.2:42066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.denverdermatologist.com"] [uri "/@fs/app/.env"] [unique_id "ap6BKp8Lfs7jpIw0EIqI-wAAAY8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:55:11
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:55:02.949727 2026] [security2:error] [pid 31385:tid 31385] [client 34.134.234.2:55464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "automationworkflow.wholesalelivelobsters.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "ap575hqDdqRENSQ7yKBtDAAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-07 08:35:19
(6 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇬🇧
cg-design.co.uk
2026-09-07 08:03:48
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.134.234.2 (US/United States/2.234.13 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.134.234.2 (US/United States/2.234.134.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-07 07:23:16
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:23:09.063778 2026] [security2:error] [pid 14236:tid 14236] [client 34.134.234.2:31208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.salonpurelodi.com"] [uri "/@fs/.env"] [unique_id "ap5mXbWR3RVMq9QkWQiKPgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 06:49:26
(8 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇫🇷
masterguru
2026-09-07 06:44:28
(8 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
Anonymous
2026-09-07 06:44:19
(8 hours ago)
Aggressive web scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 06:27:19
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 02:27:13.859616 2026] [security2:error] [pid 31094:tid 31094] [client 34.134.234.2:18528] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kbalan.com"] [uri "/@fs/src/.env"] [unique_id "ap5ZQfJhVmlFaSLXaH75pAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 06:10:58
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.234.2 (2.234.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 02:10:50.387738 2026] [security2:error] [pid 12096:tid 12096] [client 34.134.234.2:51062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dartylife.com"] [uri "/@fs/app/.env"] [unique_id "ap5VaumLWwKv5UfoYbPTyQAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-07 05:29:16
(9 hours ago)
Excessive 404/403 errors
Brute-Force