๐ณ๐ฑ
lns.bz
2026-08-01 21:00:06
(1 hour ago)
.env scanning [DOPP]
Web App Attack
๐ฉ๐ช
0x44
2026-08-01 17:14:49
(5 hours ago)
Abusive host detected - Attempt to access sensitive files
Web App Attack
Hacking
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-01 17:08:02
(5 hours ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer ... [ice01,ice02,mx02]
Bad Web Bot
Web App Attack
๐ซ๐ฎ
mnazibo
2026-08-01 17:00:04
(5 hours ago)
Date: 01/Aug/2026 19:02:00 | Reported IP: 34.17.19.81 mod_security | id: 930130 | IT/group.my_domain ...
show more
Date: 01/Aug/2026 19:02:00 | Reported IP: 34.17.19.81 mod_security | id: 930130 | IT/group.my_domain/- | Connections: 9 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /.env.backup; /.env.bak; /.env.dev; /.env.example; /.env.local; /.env.old; /.env.prod; /.env.production; /.env.save | Logs: Restricted File Access Attempt
show less
SQL Injection
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-01 16:51:50
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 12:51:43.961528 2026] [security2:error] [pid 875129:tid 875129] [client 34.17.19.81:51734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "handymanhall.com"] [uri "/.env.old"] [unique_id "am4kH2ibrR0CoqN4LC0R4wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-01 16:32:35
(5 hours ago)
[ssd5.kdns.gr] httpd-config-scan: sites=www.popikouloufakou.com; logs=/var/log/httpd/domains/popikou ...
show more
[ssd5.kdns.gr] httpd-config-scan: sites=www.popikouloufakou.com; logs=/var/log/httpd/domains/popikouloufakou.com.log; samples=/.env | /.env.bak | /.env.example
show less
Hacking
Web App Attack
๐ณ๐ฑ
lns.bz
2026-08-01 16:24:43
(5 hours ago)
Too many 404 requests [DOPP]
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-01 16:07:01
(6 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 15:53:18
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 11:53:12.215455 2026] [security2:error] [pid 2103567:tid 2103567] [client 34.17.19.81:51124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conveyorizedovens.com"] [uri "/.env.old"] [unique_id "am4WaOAPSE9jSSOWYaH1vgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
OK
2026-08-01 15:19:02
(7 hours ago)
HTTP/HTTPS
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 14:51:23
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 10:51:15.472862 2026] [security2:error] [pid 22103:tid 22103] [client 34.17.19.81:58692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rblep.com"] [uri "/.env.local"] [unique_id "am4H40bw1j-xvbqvIBF0HwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-01 14:50:14
(7 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 14:29:39
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 10:29:33.562731 2026] [security2:error] [pid 853272:tid 853272] [client 34.17.19.81:57392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heihu.org.cn.englishmagic.us"] [uri "/.env.local"] [unique_id "am4CzRHLRX0Mg0VrSVwqmgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-01 14:04:29
(8 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-01 13:49:17
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.19.81 (81.19.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 09:49:11.905373 2026] [security2:error] [pid 13184:tid 13184] [client 34.17.19.81:55216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "photokarine.com"] [uri "/.env.local"] [unique_id "am35VzhKvdZvo4-3Ja6wgQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack