๐บ๐ธ
snappic
2026-10-09 07:23:16
(2 days ago)
Scanning for config [GET /config.json.js] [Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.de ...
show more
Scanning for config [GET /config.json.js] [Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)]
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-10-09 06:51:44
(2 days ago)
excessive HTTP 404 errors
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-08 23:13:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 19:13:42.976392 2026] [security2:error] [pid 31892:tid 31892] [client 34.187.127.44:35746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.xplustchad.com"] [uri "/js../.env"] [unique_id "asgjpvyRvLl7RwaWESBK6gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-10-08 22:48:58
(2 days ago)
csagent: score 24.7: 404 noise floor x13, spoofed crawler UA x1, secrets grab x1; 1 domain(s) in 3s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 22:41:23
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 18:41:15.384713 2026] [security2:error] [pid 4496:tid 4496] [client 34.187.127.44:57952] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.winders.name"] [uri "/files../.env"] [unique_id "asgcC2OfNJsmxt7o_vRUkgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
clapper
2026-10-08 22:33:44
(2 days ago)
(cpanel) Failed cPanel login from 34.187.127.44 (44.127.187.34.bc.googleusercontent.com): 5 in the l ...
show more
(cpanel) Failed cPanel login from 34.187.127.44 (44.127.187.34.bc.googleusercontent.com): 5 in the last 3600 secs; ID: Clar
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 22:23:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 18:23:25.139439 2026] [security2:error] [pid 25807:tid 25807] [client 34.187.127.44:37678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.zydecajun.radio.fm"] [uri "/.htpasswd"] [unique_id "asgX3YCCtc_b-zrn34DRDQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 19:55:17
(2 days ago)
Aggressive web scan
Web App Attack
๐ณ๐ฑ
Alboweb B.V.
2026-10-08 19:11:03
(2 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 18:19:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 14:19:39.370887 2026] [security2:error] [pid 1484:tid 1484] [client 34.187.127.44:51264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "admin.wholesalelivelobsters.com"] [uri "/static../.env"] [unique_id "asfeuyqVQ0mUsqHkdq9txAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-10-08 18:12:19
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 18:10:03
(2 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 18:01:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 14:01:53.230957 2026] [security2:error] [pid 31220:tid 31220] [client 34.187.127.44:45852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zmgmt.net"] [uri "/.htpasswd"] [unique_id "asfakad-zts16MWznsU2QgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-10-08 17:52:10
(2 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 17:30:49
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.127.44 (44.127.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 13:30:43.883019 2026] [security2:error] [pid 26499:tid 26499] [client 34.187.127.44:43694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yosalvationyo.org"] [uri "/.htpasswd"] [unique_id "asfTQ1BeHxmo39uvM8OozAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack