๐ณ๐ฑ
oisecnet
2026-10-02 21:02:07
(16 hours ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-10-02. 690 requests from this ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-10-02. 690 requests from this IP.
show less
Port Scan
Hacking
Web App Attack
๐ฉ๐ช
on-com
2026-10-02 15:37:09
(22 hours ago)
URL scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 15:29:22
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 11:29:15.970470 2026] [security2:error] [pid 2016:tid 2016] [client 34.23.72.118:57550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.yeejia.net"] [uri "/css../.env"] [unique_id "ar_NyzCB50jjpugqxcIwxAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Major Hostility
2026-10-02 15:03:33
(22 hours ago)
"GET /model/info HTTP/1.1" 404
"GET /signup HTTP/1.1" 404
"GET /sl0xxxn4btaauu9kqw81 HTTP/1.1" 404
" ...
show more
"GET /model/info HTTP/1.1" 404
"GET /signup HTTP/1.1" 404
"GET /sl0xxxn4btaauu9kqw81 HTTP/1.1" 404
"GET /auth HTTP/1.1" 404
"GET /users/login HTTP/1.1" 404
"GET /.vite/manifest.json HTTP/1.1" 404
"GET /forgot-password HTTP/1.1" 404
"GET /signin HTTP/1.1" 404
"GET /console HTTP/1.1" 404
"GET /z9x8c7v6b5-debug-trigger-www.[DOMAIN].net HTTP/1.1" 404
"GET /backoffice HTTP/1.1" 404
"POST /graphql HTTP/1.1" 404
"GET /sign-in HTTP/1.1" 404
"GET /admin/login HTTP/1.1" 404
"POST /api/graphql HTTP/1.1" 404
"GET /dashboard HTTP/1.1" 404
"GET /panel HTTP/1.1" 404
"POST /v1/graphql HTTP/1.1" 404
"GET /admin HTTP/1.1" 404
"GET /portal HTTP/1.1" 404
"GET /app HTT
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 14:45:33
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 10:45:26.018404 2026] [security2:error] [pid 6084:tid 6084] [client 34.23.72.118:33732] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.deserttrails.net"] [uri "/images../.env"] [unique_id "ar_DhmfwETWDgkdAcucZ1gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 13:40:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 09:40:45.377471 2026] [security2:error] [pid 1288:tid 1288] [client 34.23.72.118:55110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lynetteharris.net"] [uri "/static//home/user/.env"] [unique_id "ar-0XbpAz1KP02xbnE1otAAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 13:19:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 09:18:59.802233 2026] [security2:error] [pid 19221:tid 19221] [client 34.23.72.118:50808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.monteriggioni.net"] [uri "/build../.env"] [unique_id "ar-vQyfdmEZNtIhvA_5f5QAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 12:34:11
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 08:34:05.643966 2026] [security2:error] [pid 3900:tid 3900] [client 34.23.72.118:33500] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.axiomemail.net|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.axiomemail.net"] [uri "/rclone.conf"] [unique_id "ar-kvawuYZcNzKPdS0_qaAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 11:54:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 07:54:01.184438 2026] [security2:error] [pid 16200:tid 16200] [client 34.23.72.118:35326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.myouenji.ichi51e.net"] [uri "/images../.env"] [unique_id "ar-bWdRUtiVzI8jpm4InMgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-10-02 11:30:26
(1 day ago)
Remote Command Execution: Direct Unix Command Execution. Pattern match "(?i)(?:^|b (932250-195)
Hacking
๐ซ๐ท
masterguru
2026-10-02 10:04:58
(1 day ago)
BAD BOT - Detected and Blocked.. Matched phrase "PerplexityBot" at REQUEST_HEADERS:user-agent. (1100 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "PerplexityBot" at REQUEST_HEADERS:user-agent. (1100000-131)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-02 08:44:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.72.118 (118.72.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 04:44:11.637885 2026] [security2:error] [pid 5206:tid 5286] [client 34.23.72.118:46380] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pinnaclemgmt.net"] [uri "/img../.env"] [unique_id "ar9u2yZl1z5U4v4mD3y5_AAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-02 07:37:05
(1 day ago)
IP matched detection query more than 2 hosts and only bad rq long ban.
Brute-Force
Web App Attack
Hacking
๐ซ๐ท
masterguru
2026-10-02 07:37:04
(1 day ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-196)
Hacking
๐ณ๐ฑ
Savvii
2026-10-02 07:27:50
(1 day ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack