๐ฌ๐ง
LyndonP
2026-10-01 14:23:00
(1 week ago)
IoT Targeted
๐บ๐ธ
TPI-Abuse
2026-09-30 09:16:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 05:16:09.167076 2026] [security2:error] [pid 6380:tid 6380] [client 34.158.61.131:32944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.arthuryeung.net"] [uri "/.env.js"] [unique_id "arzTWUs2PkiKKjPQlJGj_wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 08:54:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:54:34.346070 2026] [security2:error] [pid 22277:tid 22277] [client 34.158.61.131:57566] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.beckerbrokerage.net"] [uri "/media../.env"] [unique_id "arzOSm8BKJy6V4Z7U9WJRwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 08:31:01
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:30:55.990790 2026] [security2:error] [pid 1002:tid 1002] [client 34.158.61.131:33494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/Web.config" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.aboutahome.net"] [uri "/web.config"] [unique_id "arzIv8KtcBGqFLN32ilMkQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Mediashaker
2026-09-30 08:16:49
(1 week ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.158.61.131 (SG/Si ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.158.61.131 (SG/Singapore/131.61.158.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-30 08:15:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:15:32.488987 2026] [security2:error] [pid 8618:tid 8618] [client 34.158.61.131:41082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.amazingthailand.net"] [uri "/static../.env"] [unique_id "arzFJIvcwEOauZMOQpJS4gAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 07:56:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 03:56:45.992337 2026] [security2:error] [pid 20503:tid 20503] [client 34.158.61.131:32946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "batchovens.net"] [uri "/static../.env"] [unique_id "arzAvdyqwvLcfhskgtSNXgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
monn45888
2026-09-30 07:56:15
(1 week ago)
$f2bV_matches
Web App Attack
๐ฎ๐น
VHosting
2026-09-30 07:15:03
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฌ๐ง
abivia
2026-09-30 07:14:19
(1 week ago)
Abivia WAF trigger: Rule scriptKiddies: Probing for vulnerabilities uri: /z9x8c7v6b5-debug-trigger-w ...
show more
Abivia WAF trigger: Rule scriptKiddies: Probing for vulnerabilities uri: /z9x8c7v6b5-debug-trigger-web.abivia.net
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-30 07:12:16
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.61.131 (131.61.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 03:12:11.767080 2026] [security2:error] [pid 9123:tid 9123] [client 34.158.61.131:43950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.bencramer.net"] [uri "/build../.env"] [unique_id "ary2SwYz0MaPa8UD7kIQjQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-30 07:11:50
(1 week ago)
Multiple WAF Violations
Web App Attack