๐ฉ๐ช
Gwyneth Llewelyn
2026-10-05 23:02:09
(4 days ago)
2026/10/06 00:02:07 [error] 3069275#3069275: *384873 access forbidden by rule, client: 34.19.201.227 ...
show more
2026/10/06 00:02:07 [error] 3069275#3069275: *384873 access forbidden by rule, client: 34.19.201.227, server: betatechnologies.info, request: "GET /.//.env HTTP/2.0", host: "blogs.betatechnologies.info"
2026/10/06 00:02:07 [error] 3069275#3069275: *384873 access forbidden by rule, client: 34.19.201.227, server: betatechnologies.info, request: "GET /css../.env HTTP/2.0", host: "blogs.betatechnologies.info"
2026/10/06 00:02:07 [error] 3069275#3069275: *384873 access forbidden by rule, client: 34.19.201.227, server: betatechnologies.info, request: "GET /images../.env HTTP/2.0", host: "blogs.betatechnologies.info"
show less
Brute-Force
Web App Attack
๐ง๐ช
Lunix
2026-10-05 16:50:03
(4 days ago)
Brute-Force
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-10-05 11:37:06
(4 days ago)
2026/10/05 12:37:04 [error] 3069275#3069275: *216710 access forbidden by rule, client: 34.19.201.227 ...
show more
2026/10/05 12:37:04 [error] 3069275#3069275: *216710 access forbidden by rule, client: 34.19.201.227, server: api.betatechnologies.info, request: "GET /images../.env HTTP/2.0", host: "api.betatechnologies.info"
2026/10/05 12:37:04 [error] 3069275#3069275: *216710 access forbidden by rule, client: 34.19.201.227, server: api.betatechnologies.info, request: "GET /uploads../.env HTTP/2.0", host: "api.betatechnologies.info"
2026/10/05 12:37:04 [error] 3069275#3069275: *216710 access forbidden by rule, client: 34.19.201.227, server: api.betatechnologies.info, request: "GET /assets../.env HTTP/2.0", host: "api.betatechnologies.info"
show less
Brute-Force
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-10-05 05:14:20
(4 days ago)
9 attacks on password/key grabbing URLs:
GET /.git-credentials HTTP/1.1
Hacking
๐ฉ๐ช
FD-IX
2026-10-05 03:56:46
(5 days ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-10-05 03:50:04
(5 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 03:44:15
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.19.201.227 (227.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.201.227 (227.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 23:44:12.278096 2026] [security2:error] [pid 690:tid 690] [client 34.19.201.227:39076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stormstrips.info"] [uri "/.env"] [unique_id "asMdDJgAA11rwUyWndlaeAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 03:27:42
(5 days ago)
(mod_security) mod_security (id:210580) triggered by 34.19.201.227 (227.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210580) triggered by 34.19.201.227 (227.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 23:27:39.125491 2026] [security2:error] [pid 8445:tid 8445] [client 34.19.201.227:37858] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:filename. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||pocketgod.info|F|2"] [data "Matched Data: proc/self/environ found within ARGS:filename: file:/proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "pocketgod.info"] [uri "/__vite_rsc_findSourceMapURL"] [unique_id "asMZK-Ioo7PbtL9TSKnCugAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-05 03:08:04
(5 days ago)
[Mon Oct 05 05:08:03.275760 2026] [access_compat:error] [pid 1904744:tid 1904744] [client 34.19.201. ...
show more
[Mon Oct 05 05:08:03.275760 2026] [access_compat:error] [pid 1904744:tid 1904744] [client 34.19.201.227:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/.npmrc, referer: https://loretlargent.info/.npmrc
[Mon Oct 05 05:08:03.313292 2026] [access_compat:error] [pid 1904760:tid 1904760] [client 34.19.201.227:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/server.key, referer: https://loretlargent.info/server.key
[Mon Oct 05 05:08:03.322755 2026] [access_compat:error] [pid 1904757:tid 1904757] [client 34.19.201.227:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/key.pem, referer: https://loretlargent.info/key.pem
[Mon Oct 05 05:08:03.324130 2026] [access_compat:error] [pid 1905124:tid 1905124] [client 34.19.201.227:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/.ssh, referer: https://loretlargent.info/.ssh/config
[Mon Oct 05 05:08:0
...
show less
Web Spam
Web App Attack
Anonymous
2026-10-05 03:03:31
(5 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 03:00:53
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.19.201.227 (227.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.201.227 (227.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 23:00:49.580400 2026] [security2:error] [pid 26869:tid 26869] [client 34.19.201.227:52792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "khodel.info"] [uri "/assets../.env"] [unique_id "asMS4aauJ3jrUtEQFGMnNQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Mundo Bueno
2026-10-05 02:56:36
(5 days ago)
[ISILIA Protection v2.3] Tentative d'accรจs: /.env [RATE LIMITED - 1800s quarantine] | Pays: CA | UA: ...
show more
[ISILIA Protection v2.3] Tentative d'accรจs: /.env [RATE LIMITED - 1800s quarantine] | Pays: CA | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; +claudebot@anthropic
show less
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-05 02:35:34
(5 days ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-10-05 02:11:58
(5 days ago)
34.19.201.227 - - [05/Oct/2026:04:11:58 +0200] "GET /static../.env HTTP/2.0" 301 169 "-" "Mozilla/5. ...
show more
34.19.201.227 - - [05/Oct/2026:04:11:58 +0200] "GET /static../.env HTTP/2.0" 301 169 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https:///docs/sharing/webmasters/crawler)"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 02:08:59
(5 days ago)
(mod_security) mod_security (id:210580) triggered by 34.19.201.227 (227.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210580) triggered by 34.19.201.227 (227.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 22:08:52.210652 2026] [security2:error] [pid 26490:tid 26490] [client 34.19.201.227:56036] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:path. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||firstlegend.info|F|2"] [data "Matched Data: proc/self/environ found within ARGS:path: /proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "firstlegend.info"] [uri "/api/fs/read"] [unique_id "asMGtFsCkl6JLcXVpWR8-QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack