🇺🇸
TPI-Abuse
2026-09-01 14:04:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 10:04:54.566708 2026] [security2:error] [pid 226454:tid 226519] [client 34.170.137.241:52222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.priyom.us"] [uri "/.env.backup"] [unique_id "apbbhvHLbyjoqeeQ2w9jjwAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-01 12:53:51
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇫🇷
Kraften
2026-09-01 12:49:27
(1 day ago)
GET Web noscript attack
...
Web Spam
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 12:25:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 08:25:52.956092 2026] [security2:error] [pid 15980:tid 15980] [client 34.170.137.241:55994] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sandiegobeachrentals.com"] [uri "/.env.bak"] [unique_id "apbEUFm7lYUBxDKgpCgrOgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-01 11:25:16
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇺🇸
mnsf
2026-09-01 11:05:22
(1 day ago)
Abuse Detected (9)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 11:05:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:05:05.552232 2026] [security2:error] [pid 3481:tid 3481] [client 34.170.137.241:46148] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bostonmarathonstories.com"] [uri "/wp-config.php.bak"] [unique_id "apaxYXnU5cEEsCEjvP3R4gAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 10:47:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:47:49.447829 2026] [security2:error] [pid 14635:tid 14635] [client 34.170.137.241:36108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oshkoshvolleyball.thinksite.net"] [uri "/wp-config.php.bak"] [unique_id "apatVXTtaJdSvARa3LjDrAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 09:56:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.137.241 (241.137.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:56:44.311409 2026] [security2:error] [pid 25303:tid 25303] [client 34.170.137.241:42828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frame-sa.com"] [uri "/.env.bak"] [unique_id "apahXBBj2bnw_wE5TNta6AAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-01 09:54:36
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇫🇮
paissangroup
2026-09-01 09:48:18
(1 day ago)
Multiple WAF Violations
Web App Attack
🇫🇷
masterguru
2026-09-01 09:38:30
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.170.137.241 (US/United States/241. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.170.137.241 (US/United States/241.137.170.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
🇵🇱
sefinek.net
2026-09-01 09:21:56
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.ENV | UA: crusader-worker/1.0 • Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
🇩🇪
raph
2026-09-01 08:51:18
(1 day ago)
[Wordpress] crawler /wp-admin/*, /wp-content/*, etc.
Bad Web Bot
Web App Attack
🇧🇾
lns.bz
2026-09-01 08:16:10
(1 day ago)
Too many 404 requests [BY]
Web App Attack