🇫🇷
phoenix1jl96
2026-09-04 16:13:26
(19 hours ago)
2026/09/04 18:13:25 [error] 3857369#3857369: *88141 open() "/home/user-data/www/default/mailer/.env" ...
show more
2026/09/04 18:13:25 [error] 3857369#3857369: *88141 open() "/home/user-data/www/default/mailer/.env" failed (2: No such file or directory), client: 34.154.38.188, server: autodiscover.epouville.fr, request: "GET /mailer/.env HTTP/1.1", host: "autodiscover.epouville.fr"
2026/09/04 18:13:25 [error] 3857369#3857369: *88141 open() "/usr/local/lib/roundcubemail/.env" failed (2: No such file or directory), client: 34.154.38.188, server: autodiscover.epouville.fr, request: "GET /mail/.env HTTP/1.1", host: "autodiscover.epouville.fr"
...
show less
DNS Compromise
DNS Poisoning
DDoS Attack
Ping of Death
Web Spam
Email Spam
Blog Spam
Port Scan
Hacking
Brute-Force
Bad Web Bot
SSH
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 14:10:17
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:10:08.431094 2026] [security2:error] [pid 2998:tid 2998] [client 34.154.38.188:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.empoweruamerica.org"] [uri "/.git/config"] [unique_id "aprRQGMdqf2rsC2HeqeZFQAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 02:00:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 22:00:47.486587 2026] [security2:error] [pid 7122:tid 7122] [client 34.154.38.188:60102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mthoodautoandtire.com"] [uri "/.git/config"] [unique_id "apjUz62IDC7FxoLosk6RMwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 23:40:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 19:40:21.982254 2026] [security2:error] [pid 19422:tid 19422] [client 34.154.38.188:48660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.montymilburn.com"] [uri "/.git/config"] [unique_id "apiz5ZUlhKMrpSnmvGw_GQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
rubixstudios
2026-09-02 22:34:02
(2 days ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 22:24:54
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 18:24:47.266774 2026] [security2:error] [pid 15848:tid 15848] [client 34.154.38.188:33422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.moaarmorer.com"] [uri "/.git/config"] [unique_id "apiiLya15nqF9R_PLzc3ywAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-02 20:40:04
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 19:26:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 15:26:49.851885 2026] [security2:error] [pid 29396:tid 29396] [client 34.154.38.188:47956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.winchesterbayvacationrentals.com"] [uri "/.git/config"] [unique_id "apcm-X-7A1UQvzGM9AmjAwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
WebNiraj
2026-09-01 19:18:01
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 34.154.38.188 (IT/Italy/188.38.154.34.bc.google ...
show more
(mod_security) mod_security (id:949110) triggered by 34.154.38.188 (IT/Italy/188.38.154.34.bc.googleusercontent.com): 5 in the last 3600 secs [SIGMA]
show less
Brute-Force
🇺🇸
TPI-Abuse
2026-09-01 18:27:24
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.154.38.188 (188.38.154.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:27:16.690032 2026] [security2:error] [pid 11231:tid 11231] [client 34.154.38.188:48198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.whodatnation.com"] [uri "/.git/config"] [unique_id "apcZBM-FTW56qSSTFK_PJAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-01 18:00:05
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack