🇫🇷
SpaceHost-Server
2026-09-04 22:19:50
(23 hours ago)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 15:14:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 11:14:29.141298 2026] [security2:error] [pid 16091:tid 16091] [client 34.175.44.237:35810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.von-s.com"] [uri "/.env.prod"] [unique_id "aprgVc9s_kUhAAMg6ReWWwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
paissangroup
2026-09-04 14:13:40
(1 day ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 14:09:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:09:40.742655 2026] [security2:error] [pid 25787:tid 25787] [client 34.175.44.237:38462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bbernal.com"] [uri "/wp-config.php.bak"] [unique_id "aprRJBec-iExEUAh8IEtswAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-04 13:27:00
(1 day ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:15:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:15:25.917728 2026] [security2:error] [pid 3740:tid 3740] [client 34.175.44.237:50832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.altermondo.com"] [uri "/.env.prod"] [unique_id "apqoTRFx7d37QHuzpd-B7gAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 10:56:53
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 10:05:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:05:08.777740 2026] [security2:error] [pid 32236:tid 32236] [client 34.175.44.237:44968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.peazy.net"] [uri "/.env.production"] [unique_id "apqX1On36l65MQ8GtWecHQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 09:49:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 05:49:24.277427 2026] [security2:error] [pid 4117:tid 4117] [client 34.175.44.237:39024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hellomdinc.com"] [uri "/.env"] [unique_id "apqUJI_BaH8Yc0dbn6e6QgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-04 08:20:10
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.175.44.237 (ES/Spain/237.44.175.34 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.175.44.237 (ES/Spain/237.44.175.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
🇳🇱
e.fierstra
2026-09-04 08:18:17
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇳🇱
MyGlobalFlowers
2026-09-04 07:55:33
(1 day ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 07:50:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:50:08.445276 2026] [security2:error] [pid 23276:tid 23276] [client 34.175.44.237:40532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.truecontrarian.com"] [uri "/.env"] [unique_id "app4MHIcp-GAdQtyHMArIAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:59:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.44.237 (237.44.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:59:38.130234 2026] [security2:error] [pid 25401:tid 25401] [client 34.175.44.237:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.livingawakenedbook.com"] [uri "/.env.backup"] [unique_id "appeSkFY64s771AY_V6-ygAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-04 05:25:01
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack