๐ฉ๐ช
MBombeck
2026-10-02 00:53:10
(4 days ago)
Fail2Ban/traefik-botsearch on apps-01: banned after 5 failures
Web App Attack
Anonymous
2026-09-30 16:10:03
(5 days ago)
| [Dangerous/Singapore] Aggressive IP 34.142.167.254 (~30 hits). Type: DoS Defender- Web server 400 ...
show more
| [Dangerous/Singapore] Aggressive IP 34.142.167.254 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-30 16:06:42
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 12:06:37.009742 2026] [security2:error] [pid 9630:tid 9646] [client 34.142.167.254:49092] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.featherston.ws"] [uri "/assets../.env"] [unique_id "ar0zjdKzO979YClGXiG0YQAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐ท
vzderic
2026-09-30 15:51:00
(5 days ago)
34.142.167.254 http/1.1 podrska.hr:443 GET /api/system/fileView?file=/app/.env HTTP/1.1
Brute-Force
Web App Attack
๐ฉ๐ช
MBombeck
2026-09-30 13:30:36
(5 days ago)
Fail2Ban/traefik-botsearch on apps-01: banned after 5 failures
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 13:16:06
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 09:15:59.006950 2026] [security2:error] [pid 20274:tid 20274] [client 34.142.167.254:41724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.revision.ws"] [uri "/media../.env"] [unique_id "ar0Ljw44GDcAUsyOhLDIGAAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
MusicLibrary
2026-09-30 11:18:35
(5 days ago)
Probing foreign-stack admin panels / known exploit paths (Joomla, phpMyAdmin, phpunit, OWA, etc.)
Bad Web Bot
Web App Attack
Anonymous
2026-09-30 10:30:19
(5 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-30 10:13:23
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:13:17.222373 2026] [security2:error] [pid 22042:tid 22042] [client 34.142.167.254:45912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grwriters.warnock.ws"] [uri "/@fs/app/.env"] [unique_id "arzgvdUSatFFPEux_Z0f-gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 09:53:47
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 05:53:40.657428 2026] [security2:error] [pid 727:tid 727] [client 34.142.167.254:57620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.smartpost.ws"] [uri "/api/console/api_server"] [unique_id "arzcJGoEeqT2xta0M46KHQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
EGP Abuse Dept
2026-09-30 09:30:38
(5 days ago)
Unauthorized connection to proxy port 8080
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-30 09:21:58
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 05:21:53.342372 2026] [security2:error] [pid 23789:tid 23789] [client 34.142.167.254:45186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zztp.ws"] [uri "/js../.env"] [unique_id "arzUsZA-ujyAL5NUCM8MEgAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 08:46:56
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:46:52.559466 2026] [security2:error] [pid 27041:tid 27041] [client 34.142.167.254:57482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.navarrete.ws"] [uri "/.env.dev"] [unique_id "arzMfNCUfwVW8wv-R3YqCgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Some Body
2026-09-30 08:09:08
(5 days ago)
Aggressive web scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 08:08:48
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.167.254 (254.167.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:08:41.125012 2026] [security2:error] [pid 24542:tid 24542] [client 34.142.167.254:53350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.trasimeno.ws"] [uri "/.git/HEAD"] [unique_id "arzDiRgjnnqRdaxNszSUgwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack