๐บ๐ธ
TPI-Abuse
2026-10-04 23:45:38
(46 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 19:45:31.040469 2026] [security2:error] [pid 29232:tid 29232] [client 34.186.239.73:57422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amtnm.com"] [uri "/.env"] [unique_id "asLlG022I7dMwRWzINAlxAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
cnaize
2026-10-04 23:44:00
(48 minutes ago)
Malicious activity blocked by Meds firewall
Port Scan
๐บ๐ธ
TPI-Abuse
2026-10-04 23:28:49
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 19:28:43.045676 2026] [security2:error] [pid 11907:tid 11907] [client 34.186.239.73:63326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dunbeggan.com"] [uri "/.env"] [unique_id "asLhKx91RW6D0vSl9zJj-wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
on-com
2026-10-04 23:19:02
(1 hour ago)
URL scan
Brute-Force
Web App Attack
๐ณ๐ฑ
informedclearly.com
2026-10-04 23:16:09
(1 hour ago)
WAF_BAN reason=ENV_PROBE rule=ENV_PATH hits=1 path=/.env? ua=python-requests/2.34.2
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-04 23:10:30
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 19:10:23.023626 2026] [security2:error] [pid 7748:tid 7748] [client 34.186.239.73:58048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ozarkmountainwinetrail.org"] [uri "/.env"] [unique_id "asLc362W1XTh-TgggVv5hgAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ecs.ge
2026-10-04 23:07:46
(1 hour ago)
Automatic Fail2Ban report from jail plesk-modsecurity: multiple matching events detected.
Web App Attack
Hacking
๐ฉ๐ช
paissangroup
2026-10-04 22:46:57
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐จ๐ฆ
Anytech
2026-10-04 22:46:51
(1 hour ago)
Blocked by Conn-Monitor: env-probing
Web App Attack
Hacking
Anonymous
2026-10-04 22:38:01
(1 hour ago)
Bot / scanning and/or hacking attempts: GET /.env HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 22:33:24
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 18:33:19.520019 2026] [security2:error] [pid 25728:tid 25730] [client 34.186.239.73:51296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dcmproductionsgroup.com"] [uri "/.env"] [unique_id "asLUL5jUJIWUA7A1HTAF7gAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 22:15:56
(2 hours ago)
Automatically blocked after 2 security events. Observed sensitive configuration-file probes. Source: ...
show more
Automatically blocked after 2 security events. Observed sensitive configuration-file probes. Source: Cloudflare security controls.
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 22:00:46
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.239.73 (73.239.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 18:00:38.516488 2026] [security2:error] [pid 21186:tid 21186] [client 34.186.239.73:53100] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eurobrake.com"] [uri "/.env"] [unique_id "asLMhjQfHjRSuDD54P2HzQAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-04 21:45:13
(2 hours ago)
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.186.239.73 - - \[04/Oct/2026:23:44:53 +0200\] "GET /.env HTTP/1.1" 301 477 "-" "python-requests/2.34.2"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Holger
2026-10-04 21:38:53
(2 hours ago)
Bruteforce WebAttack
Brute-Force
Web App Attack