๐ธ๐ช
vaia.cloud
2026-08-28 08:05:05
(1 hour ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-28 07:11:46
(2 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:44:38
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:44:30.709299 2026] [security2:error] [pid 16797:tid 16797] [client 34.148.54.162:56484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cswiki.us"] [uri "/@fs/.env"] [unique_id "apEuTpfC6pCTjXlccskjWwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 05:39:37
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:39:31.414722 2026] [security2:error] [pid 19177:tid 19177] [client 34.148.54.162:19250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rx-art.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252froot/.env"] [unique_id "apEfEzOxy07NOQgCRb9AtAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 05:08:13
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:08:05.998724 2026] [security2:error] [pid 18003:tid 18003] [client 34.148.54.162:15544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.brianknudsen.com"] [uri "/@fs/.env.staging"] [unique_id "apEXtSeJxmOwljV6JrbS6wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 04:12:27
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 00:12:19.393989 2026] [security2:error] [pid 13582:tid 13582] [client 34.148.54.162:37512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spittingimagegallery.kathrynmcbride.com"] [uri "/@fs/.env"] [unique_id "apEKo1xsWJenA3lkF_wCygAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-28 03:57:03
(5 hours ago)
CloudLinux/Plesk alert - host=cloudlinux dominio=mitan.it ip=34.148.54.162 richieste=729 rischio=ALT ...
show more
CloudLinux/Plesk alert - host=cloudlinux dominio=mitan.it ip=34.148.54.162 richieste=729 rischio=ALTO score=22 motivi=molte_richieste,molte_uri_uniche,molti_404,ua_script_bot,path_sospetti,api,poco_statico,dinamico cat_id=21,19 periodo=10min
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
bazter.pro
2026-08-28 03:27:59
(6 hours ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 02:42:53
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:42:45.202594 2026] [security2:error] [pid 27980:tid 27980] [client 34.148.54.162:37432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sveum.net"] [uri "/@fs/.env"] [unique_id "apD1pTUmoo7x93kdGLAhgwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 02:41:12
(7 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-28 02:26:30
(7 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-28 02:22:43
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:22:39.485047 2026] [security2:error] [pid 23707:tid 23707] [client 34.148.54.162:4150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.register-yacht-greece.com"] [uri "/@fs/../.env"] [unique_id "apDw73uq9mLi9vY07WM_nQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 01:39:27
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.54.162 (162.54.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 21:39:20.817021 2026] [security2:error] [pid 18731:tid 18731] [client 34.148.54.162:62924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.edsantos.biz"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "apDmyB9EU7G9wyCeNQ2yEwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 01:24:56
(8 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.148.54.162 (US/United States/162.54. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.148.54.162 (US/United States/162.54.148.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
mnsf
2026-08-28 01:05:28
(8 hours ago)
Scanning/Probing (26)
Brute-Force
Web App Attack