๐บ๐ธ
TPI-Abuse
2026-09-16 02:31:23
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.153.206.59 (59.206.153.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.153.206.59 (59.206.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:31:19.104360 2026] [security2:error] [pid 29949:tid 29949] [client 34.153.206.59:53522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lucasadams.com"] [uri "/.env"] [unique_id "aqn_dyAK3DHlbfR5M5eBOgAAAAQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-09-16 01:33:44
(10 hours ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.153.206.59 (JP/Japan/59.206.153.34.bc ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.153.206.59 (JP/Japan/59.206.153.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.153.206.59 - - [16/Sep/2026:03:33:37 +0200] "POST //admin/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 200 4860 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 11_8_1) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/20.0.1633.44 Safari/537.31" "-" host=lucadipa.com
show less
Port Scan
๐ฉ๐ช
Philister11
2026-09-16 00:27:35
(11 hours ago)
CrowdSec: crowdsecurity/http-sensitive-files (JP/AS396982)
Web App Attack
Hacking
๐ฉ๐ช
Vegascosmetics
2026-09-15 21:17:39
(14 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.env (Match: /.env)
show less
Hacking
Brute-Force
Web App Attack
๐จ๐ญ
Origon
2026-09-15 14:28:05
(21 hours ago)
http-sensitive-files - IP: 34.153.206.59 - time="2026-09-15T16:28:05+02:00" level=info msg="(555f66 ...
show more
http-sensitive-files - IP: 34.153.206.59 - time="2026-09-15T16:28:05+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.153.206.59 (JP/396982) : 4h ban on Ip 34.153.206.59" module=db
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 13:57:32
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.153.206.59 (59.206.153.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.153.206.59 (59.206.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:57:25.855740 2026] [security2:error] [pid 1045575:tid 1045575] [client 34.153.206.59:40646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cbtattam.com"] [uri "/.env"] [unique_id "aqlOxY90PTJpPAJvEi79tQAAABo"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Lea
2026-09-15 13:04:19
(22 hours ago)
Malicious web probe detected on bearstool.com: 34.153.206.59 - - [15/Sep/2026:09:04:16 -0400] "GET / ...
show more
Malicious web probe detected on bearstool.com: 34.153.206.59 - - [15/Sep/2026:09:04:16 -0400] "GET /.env HTTP/1.1" 444 0 "https://www.google.com/" "Mozilla/5.0 (Linux i386; X11) Gecko/20100109 Firefox/14.0"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:48:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.153.206.59 (59.206.153.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.153.206.59 (59.206.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:48:18.967375 2026] [security2:error] [pid 20278:tid 20278] [client 34.153.206.59:53256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emeraldhighlands.org"] [uri "/.env"] [unique_id "aqkicjN580kLZJLImNxrVwAAAAQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-09-15 10:40:30
(1 day ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-15 06:46:09
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ณ๐ฑ
Cloud86 B.V.
2026-09-07 04:00:07
(1 week ago)
categories: Email Spam
Email Spam