🇺🇸
TPI-Abuse
2026-08-29 03:23:19
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 23:23:12.504868 2026] [security2:error] [pid 166148:tid 166206] [client 34.170.229.44:50864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "priyom.us"] [uri "/.env.prod"] [unique_id "apJQoMfpcEjKeocP2SxIagAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-08-29 03:07:36
(14 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 02:37:02
(14 hours ago)
Bot / scanning and/or hacking attempts: GET /.env HTTP/1.1
Hacking
Web App Attack
🇬🇧
consul.to
2026-08-29 01:45:30
(15 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 01:43:07
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:43:01.940262 2026] [security2:error] [pid 16157:tid 16157] [client 34.170.229.44:53608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cortona.ws"] [uri "/.env.prod"] [unique_id "apI5JYO73T1kikoVRBXM3gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 00:35:55
(16 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 00:27:27
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 20:27:21.792372 2026] [security2:error] [pid 1137:tid 1137] [client 34.170.229.44:55976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.staging.groovedoctors.com"] [uri "/wp-config.php~"] [unique_id "apInafckgnKQek_wwrzZxAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 23:45:01
(17 hours ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 22:56:20
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 18:56:16.215250 2026] [security2:error] [pid 22664:tid 22664] [client 34.170.229.44:41156] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.konahawaii.com.kh6jim.com"] [uri "/.env.production"] [unique_id "apISEDOxGFHQXl9kgQmi-AAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ger-stg-sifi1
2026-08-28 22:39:59
(18 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
🇩🇪
Petros Stefanakis
2026-08-28 22:28:58
(18 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.170.229.44 (US/United States/44.229. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.170.229.44 (US/United States/44.229.170.34.bc.googleusercontent.com)
show less
SQL Injection
🇮🇹
mediarama.com
2026-08-28 22:03:15
(19 hours ago)
Banned by Fail2Ban
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 20:35:04
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 16:34:54.824058 2026] [security2:error] [pid 886:tid 886] [client 34.170.229.44:59612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.underraided.lmffl.com"] [uri "/wp-config.php.swp"] [unique_id "apHw7n_y9kQExRNMAunKZAAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 19:33:56
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.170.229.44 (44.229.170.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 15:33:50.263555 2026] [security2:error] [pid 9794:tid 9794] [client 34.170.229.44:34412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.scoretopicturenetwork.com.lozzy.net"] [uri "/.env.example"] [unique_id "apHinoYs6KziKyC8Ida90QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-08-28 19:29:56
(21 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack