๐บ๐ธ
TPI-Abuse
2026-09-01 10:08:47
(21 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.153 (153.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.153 (153.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:08:39.792474 2026] [security2:error] [pid 8564:tid 8564] [client 34.175.44.153:57844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "imap.asiancommoditiescorporation.com"] [uri "/wp-config.php.bak"] [unique_id "apakJ-yxGkdPwaYYHgO8wQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
superflea2828
2026-09-01 09:18:44
(1 hour ago)
34.175.44.153 - - [01/Sep/2026:09:18:42 +0000] "-" 408 3967 "-" "-"
34.175.44.153 - - [01/Sep/2026:0 ...
show more
34.175.44.153 - - [01/Sep/2026:09:18:42 +0000] "-" 408 3967 "-" "-"
34.175.44.153 - - [01/Sep/2026:09:18:42 +0000] "-" 408 3966 "-" "-"
...
show less
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-01 08:20:08
(2 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฉ๐ช
gadix
2026-09-01 07:32:39
(2 hours ago)
[01/Sep/2026:09:32:34.931086 +0200] apZ_kpvcE3gkp4zUnoksJwAAAEw 34.175.44.153 57122 127.0.0.1 7081
[ ...
show more
[01/Sep/2026:09:32:34.931086 +0200] apZ_kpvcE3gkp4zUnoksJwAAAEw 34.175.44.153 57122 127.0.0.1 7081
[01/Sep/2026:09:32:34.936580 +0200] apZ_kpvcE3gkp4zUnoksKQAAAEo 34.175.44.153 57152 127.0.0.1 7081
[01/Sep/2026:09:32:34.937322 +0200] apZ_kpvcE3gkp4zUnoksKgAAAE0 34.175.44.153 57154 127.0.0.1 7081
...
show less
Web App Attack
๐ซ๐ท
dynamix
2026-09-01 07:12:54
(3 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 07:11:45
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.153 (153.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.153 (153.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:11:39.223117 2026] [security2:error] [pid 23593:tid 23593] [client 34.175.44.153:40646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "moanddoyle.michaelprussin.com"] [uri "/.env.bak"] [unique_id "apZ6q0dn_vvHDrJZ92YWSQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 07:08:26
(3 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 06:38:27
(3 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 06:37:26
(3 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
ddobko
2026-09-01 06:35:11
(3 hours ago)
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-01 06:35:05
(3 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:19:35
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.153 (153.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.153 (153.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:19:28.900201 2026] [security2:error] [pid 27547:tid 27579] [client 34.175.44.153:48136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magnetbay.com"] [uri "/.env.example"] [unique_id "apZucD2H2kkB8PBRsQJ5rwAAAU8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 05:42:14
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.153 (153.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.153 (153.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:42:06.472332 2026] [security2:error] [pid 9577:tid 9577] [client 34.175.44.153:57356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "electrolux.pamplonaserviciotecnico.com"] [uri "/wp-config.php~"] [unique_id "apZlrizq2kubsttAauWLIwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-01 05:13:46
(5 hours ago)
13 attacks on env grabbing URLs, PHP URLs:
GET /.env.local HTTP/1.1
GET /wp-config.php~ HTTP/1.1
Hacking
Web App Attack
Anonymous
2026-09-01 04:47:22
(5 hours ago)
GET /.env.bak HTTP/1.1
...
Web App Attack