🇺🇸
TPI-Abuse
2026-09-06 03:51:49
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:51:42.568841 2026] [security2:error] [pid 24622:tid 24622] [client 34.175.231.115:34786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.gevieworld.com"] [uri "/.env.prod"] [unique_id "apzjTg7dE_6feq2v3p_7QAAAAGI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇾
Rizzy
2026-09-06 02:32:32
(9 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇫🇷
masterguru
2026-09-06 01:14:44
(10 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.175.231.115 (ES/Spain/115.231.175. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.175.231.115 (ES/Spain/115.231.175.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
🇳🇱
i-turnradio.nl
2026-09-06 01:12:29
(10 hours ago)
2026-09-06 @ 03:12:11 (CET) ~ Blocked for trying to access: /storage/logs/laravel.log
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 00:20:45
(11 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 20:20:38.383422 2026] [security2:error] [pid 18782:tid 18782] [client 34.175.231.115:56242] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||hl-re.com.jbcllcnet.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hl-re.com.jbcllcnet.com"] [uri "/db.sql"] [unique_id "apyx1o9MYXeVXb9wl8CQfgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
leo1305
2026-09-06 00:04:37
(11 hours ago)
CrowdSec detection | scenario: http-probing
Port Scan
Web App Attack
🇳🇱
MyGlobalFlowers
2026-09-05 22:31:10
(13 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 22:16:24
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 18:16:18.350332 2026] [security2:error] [pid 3722:tid 3722] [client 34.175.231.115:52860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cuulcare.com.stlouisdave.com"] [uri "/.env.dev"] [unique_id "apyUslsT5i3h6skti2gm6AAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-05 21:36:05
(14 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇮🇹
VHosting
2026-09-05 21:30:03
(14 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇬🇧
consul.to
2026-09-05 20:53:21
(15 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 20:29:47
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 16:29:42.231004 2026] [security2:error] [pid 32190:tid 32190] [client 34.175.231.115:48306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.naghmehfarahmand.com"] [uri "/.env.save"] [unique_id "apx7tjqci4iVB-4rjwa0nwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-04 19:54:00
(1 day ago)
20 attempts against mh_ha-misbehave-ban on lime
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
taivas.nl
2026-09-03 04:34:19
(3 days ago)
Many_bad_calls
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 20:02:29
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.175.231.115 (115.231.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 16:02:25.444177 2026] [security2:error] [pid 14144:tid 14144] [client 34.175.231.115:52572] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stindustries.us|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stindustries.us"] [uri "/access.log"] [unique_id "apiA0dD4tKSJFW97z8l6JQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack