๐บ๐ธ
TPI-Abuse
2026-09-01 10:57:28
(3 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.175.64.113 (113.64.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.64.113 (113.64.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:57:21.880473 2026] [security2:error] [pid 22225:tid 22225] [client 34.175.64.113:34876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mjaaforum.org"] [uri "/.env.example"] [unique_id "apavkWICN2JALC4wdJp9fgAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 10:25:02
(36 minutes ago)
suspicious request in access.log
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 09:32:41
(1 hour ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-01 09:29:31
(1 hour ago)
[01/Sep/2026:12:29:30 +0300] -- 34.175.64.113 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env ...
show more
[01/Sep/2026:12:29:30 +0300] -- 34.175.64.113 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.dev HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 09:24:33
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.175.64.113 (113.64.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.64.113 (113.64.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:24:29.873837 2026] [security2:error] [pid 4713:tid 4713] [client 34.175.64.113:51960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "communityofthecosmos.org"] [uri "/wp-config.php~"] [unique_id "apaZzcYg-_WuCXFZ67k1XgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-09-01 08:34:41
(2 hours ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.175.64.113 (ES/Spain/113.64.175.34.bc ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.175.64.113 (ES/Spain/113.64.175.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.175.64.113 - - [01/Sep/2026:10:34:35 +0200] "GET /wp-config.php.bak HTTP/1.1" 403 146 "-" "crusader-worker/1.0" "-" host=maylynlopez.com
show less
Port Scan
๐ฉ๐ช
tikket
2026-09-01 08:26:44
(2 hours ago)
Automated honeypot report: fail2ban 'caddy-honeypot' ban. Source probed honeypot/recon endpoints on ...
show more
Automated honeypot report: fail2ban 'caddy-honeypot' ban. Source probed honeypot/recon endpoints on void.xn--q9jyb4c.
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-09-01 08:26:24
(2 hours ago)
[Wordpress] crawler /wp-admin/*, /wp-content/*, etc.
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 08:24:14
(2 hours ago)
Blocked by ModSec and CSF
Port Scan
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-01 08:20:06
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 07:06:07
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.64.113 (113.64.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.64.113 (113.64.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:06:00.380960 2026] [security2:error] [pid 4378:tid 4378] [client 34.175.64.113:60410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mitchellfabrication.mitchellamazing.com"] [uri "/.env.old"] [unique_id "apZ5WPdrYlUZKDedlSegZwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
YF
2026-09-01 07:00:12
(4 hours ago)
WordPress config file probe
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-09-01 06:32:06
(4 hours ago)
Attempt to access a backup or working file. Pattern match "\\\\. (920500-mnz6-1)
Hacking
๐ฉ๐ช
XICTRON
2026-09-01 06:30:05
(4 hours ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-01 06:26:20
(4 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.175.64.113 (ES/Spain/113.64.175.34.bc.google ...
show more
(mod_security) mod_security (id:949110) triggered by 34.175.64.113 (ES/Spain/113.64.175.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack