Anonymous
2026-09-08 01:26:37
(23 minutes ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-08 01:16:15
(33 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 21:16:11.021662 2026] [security2:error] [pid 13417:tid 13417] [client 34.180.71.218:31194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.madburylibrary.org"] [uri "/@fs/src/.env"] [unique_id "ap9h21cKz_tGPWS2EuF73AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-08 00:37:33
(1 hour ago)
Restricted File Access Attempt. Matched phrase "/@fs/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
Anonymous
2026-09-08 00:24:29
(1 hour ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
Anonymous
2026-09-07 23:59:49
(1 hour ago)
Aggressive web scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 23:58:18
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:58:14.103825 2026] [security2:error] [pid 30899:tid 30899] [client 34.180.71.218:4980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.robtown.com"] [uri "/@fs/app/.env"] [unique_id "ap9PloX3ksx-7TipGDTqOAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 23:38:13
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:38:06.037212 2026] [security2:error] [pid 16285:tid 16285] [client 34.180.71.218:2480] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.birdlovers.net"] [uri "/@fs/root/.env"] [unique_id "ap9K3gvNO56iOsEpVyqk4AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FD-IX
2026-09-07 23:23:36
(2 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-07 23:18:40
(2 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 23:18:06
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:17:57.902227 2026] [security2:error] [pid 12777:tid 12777] [client 34.180.71.218:11382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.empoweruohio.org"] [uri "/@fs/root/.env"] [unique_id "ap9GJXB9DEK2nXbYsVDsuwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-07 23:00:05
(2 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇳🇱
Savvii
2026-09-07 22:52:33
(2 hours ago)
20 attempts against mh-misbehave-ban on pinto
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 22:50:28
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 18:50:20.968886 2026] [security2:error] [pid 19865:tid 19890] [client 34.180.71.218:41764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ginefra.com"] [uri "/@fs/app/.env"] [unique_id "ap8_rOiA7oCXpgeGAuddKgAAANc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-07 22:34:09
(3 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 22:25:44
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.71.218 (218.71.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 18:25:37.182437 2026] [security2:error] [pid 31530:tid 31530] [client 34.180.71.218:4114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.howelllands.com"] [uri "/@fs/app/.env"] [unique_id "ap854evtD5uxJsYnVv8H0gAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack