๐บ๐ธ
TPI-Abuse
2026-08-29 04:49:50
(16 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:49:43.352889 2026] [security2:error] [pid 26096:tid 26096] [client 34.146.176.156:16246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ladymfashion.com"] [uri "/@fs/app/.env"] [unique_id "apJk5wIjES8YVd57SgkGfQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 04:34:39
(31 minutes ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 04:14:03
(52 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:13:58.971543 2026] [security2:error] [pid 10476:tid 10476] [client 34.146.176.156:14284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "multilize.com"] [uri "/@fs/.env"] [unique_id "apJchnrz_oSMtJWXxXGJdwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-29 04:08:02
(58 minutes ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice02,wa01,wa02]
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 03:36:13
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 23:36:09.277264 2026] [security2:error] [pid 9819:tid 9874] [client 34.146.176.156:51208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.alzooma.com"] [uri "/@fs/.env"] [unique_id "apJTqV-DNXYAEIovDBkd4wAAAcc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-08-29 03:32:54
(1 hour ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐ฌ๐ง
consul.to
2026-08-29 03:25:57
(1 hour ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 03:01:53
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 03:00:45
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 23:00:38.382730 2026] [security2:error] [pid 4037:tid 4037] [client 34.146.176.156:24826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.boardinjapan.com"] [uri "/@fs/src/.env"] [unique_id "apJLVsFJoUoRSW0epQNoPgAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-29 02:18:03
(2 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฌ๐ง
Aetherweb Ark
2026-08-29 01:45:36
(3 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.146.176.156 (JP/Japan/156.176.146.34.bc.goog ...
show more
(mod_security) mod_security (id:949110) triggered by 34.146.176.156 (JP/Japan/156.176.146.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 01:05:44
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.176.156 (156.176.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:05:37.928405 2026] [security2:error] [pid 30441:tid 30441] [client 34.146.176.156:18198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.gevieworld.com"] [uri "/@fs/.env"] [unique_id "apIwYTeLPvBdXHvrWdozDwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-08-29 00:50:03
(4 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐จ๐ญ
Origon
2026-08-29 00:48:07
(4 hours ago)
http-probing - IP: 34.146.176.156 - time="2026-08-29T02:48:06+02:00" level=info msg="(555f66b4f6a74 ...
show more
http-probing - IP: 34.146.176.156 - time="2026-08-29T02:48:06+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-probing by ip 34.146.176.156 (JP/396982) : 4h ban on Ip 34.146.176.156" module=db
show less
Web App Attack
๐บ๐ธ
conrad10781
2026-08-29 00:44:27
(4 hours ago)
nginx-dot-env
Web App Attack