๐จ๐ญ
4server
2026-08-28 14:20:38
(20 hours ago)
[FriAug2816:20:34.8044872026][security2:error][pid1722040:tid1723304][client34.182.212.112:0]ModSecu ...
show more
[FriAug2816:20:34.8044872026][security2:error][pid1722040:tid1723304][client34.182.212.112:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.rd-gaming.net.81-17-25-250.cpanel.site\"][uri\"/.env.dev\"][unique_id\"apGZMv7HlU8-IjzffX0YbgAAAIo\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
_ArminS_
2026-08-28 13:32:59
(21 hours ago)
WEB-Scan 33948:80 detected 2026.08.28 15:32:59
blocked until 2026.10.17 08:35:46
Port Scan
๐ฉ๐ช
LRob
2026-08-28 13:25:46
(21 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /wp-config.php.swp (+12 more) | 2026-08-28 13:25 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 13:11:57
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.182.212.112 (112.212.182.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.182.212.112 (112.212.182.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 09:11:49.378981 2026] [security2:error] [pid 1818:tid 1818] [client 34.182.212.112:42876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blastjet.net"] [uri "/.env.example"] [unique_id "apGJFYY-IOCHYZ7e3ZHWgQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-28 13:06:56
(21 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
mnsf
2026-08-28 13:06:34
(21 hours ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-28 12:35:56
(22 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 11:54:48
(23 hours ago)
Auto-reported by Fail2Ban (NPM-Auth)
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-28 11:39:18
(23 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-28 11:33:51
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.182.212.112 (112.212.182.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.182.212.112 (112.212.182.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:33:43.316555 2026] [security2:error] [pid 29789:tid 29887] [client 34.182.212.112:48696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "speakupstore.com"] [uri "/.env.dev"] [unique_id "apFyF36seQRxpYKlqhZEoAAAAIs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-08-28 11:19:40
(23 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐จ๐ฆ
john doe
2026-08-28 11:18:03
(23 hours ago)
SentinelBot: Spring Boot Exploit (score: 72)
Web App Attack
๐ฌ๐ง
consul.to
2026-08-28 11:00:42
(23 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
masterguru
2026-08-28 10:50:07
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.182.212.112 (US/United States/112. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.182.212.112 (US/United States/112.212.182.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-28 10:36:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.182.212.112 (112.212.182.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.182.212.112 (112.212.182.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:36:45.606814 2026] [security2:error] [pid 15103:tid 15150] [client 34.182.212.112:33820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "retrieversocal.com.ceol.us"] [uri "/.env.local"] [unique_id "apFkveZx3HOfks8otjO5XwAAAQw"]
show less
Brute-Force
Bad Web Bot
Web App Attack