🇺🇸
TPI-Abuse
2026-09-07 00:01:12
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.204.69 (69.204.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.204.69 (69.204.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 20:01:08.646514 2026] [security2:error] [pid 11964:tid 11964] [client 34.24.204.69:55914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.americashealthtalk.com"] [uri "/static//app/.env"] [unique_id "ap3-xJwMCM6pNgxOfLl0vAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
strefapi_com
2026-09-06 22:20:56
(10 hours ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
🇺🇸
interbiznw.com
2026-09-06 19:53:24
(12 hours ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
🇵🇫
www.gregorymariani.com
2026-09-06 19:00:03
(13 hours ago)
34.24.204.69 - - [06/Sep/2026:12:25:12 +0000] "GET /test.php HTTP/1.1" 404 179 "-" "Mozilla/5.0 (com ...
show more
34.24.204.69 - - [06/Sep/2026:12:25:12 +0000] "GET /test.php HTTP/1.1" 404 179 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)" 729 0.018 [default-shop-oscar-amartyne-8080] [] 10.244.58.74:8080 179 0.018 404 12f4066d425426842df7e7997a614ecd
34.24.204.69 - - [06/Sep/2026:19:00:02 +0000] "GET /.env HTTP/1.1" 404 179 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)" 708 0.021 [default-shop-oscar-amartyne-8080] [] 10.244.58.74:8080 179 0.021 404 efc51c98b362098f69e1b33363a4d8a1
34.24.204.69 - - [06/Sep/2026:19:00:02 +0000] "GET /.gitconfig HTTP/1.1" 404 179 "-" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)" 692 0.024 [default-shop-oscar-amartyne-8080] [] 10.244.58.74:8080 179 0.024 404 38890edf216bcada6eed2e62ff1f4ae0
34.24.204.69 - - [06/Sep/2026:19:00:02 +0000] "GET /.env HTTP/1.1" 404 179 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)" 708 0.021 [default-shop-oscar-amartyne-8080] [] 1
...
show less
Web App Attack
🇩🇪
Gwyneth Llewelyn
2026-09-06 17:58:07
(14 hours ago)
2026/09/06 18:58:05 [error] 380594#380594: *3279234 access forbidden by rule, client: 34.24.204.69, ...
show more
2026/09/06 18:58:05 [error] 380594#380594: *3279234 access forbidden by rule, client: 34.24.204.69, server: alzulej.pt, request: "GET /static../.env HTTP/2.0", host: "alzulej.pt", referrer: "https://www.alzulej.pt/static../.env"
2026/09/06 18:58:05 [error] 380594#380594: *3279234 access forbidden by rule, client: 34.24.204.69, server: alzulej.pt, request: "GET /.env HTTP/2.0", host: "alzulej.pt", referrer: "https://www.alzulej.pt/_nuxt/../.env"
2026/09/06 18:58:05 [error] 380594#380594: *3279250 access forbidden by rule, client: 34.24.204.69, server: alzulej.pt, request: "GET /files../.env HTTP/2.0", host: "alzulej.pt", referrer: "https://www.alzulej.pt/files../.env"
show less
Brute-Force
Web App Attack
Anonymous
2026-09-06 16:12:44
(16 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇺🇸
mnsf
2026-09-06 16:05:24
(16 hours ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
🇺🇸
agenciahypelab.com.br
2026-09-06 16:04:16
(16 hours ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
Anonymous
2026-09-06 15:51:01
(16 hours ago)
http scanning for .env files
...
Hacking
Web App Attack
Anonymous
2026-09-06 15:30:54
(17 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.24.204.69 (US/United States/69.204.2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.24.204.69 (US/United States/69.204.24.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-06 14:35:26
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.24.204.69 (69.204.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.24.204.69 (69.204.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 10:35:21.071080 2026] [security2:error] [pid 14319:tid 14319] [client 34.24.204.69:45202] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||americanexportimport.internetnameregistration.com|F|2"] [data ".internetnameregistration.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "americanexportimport.internetnameregistration.com"] [uri "/z9x8c7v6b5-debug-trigger-americanexportimport.internetnameregistration.com"] [unique_id "ap16KaTpx9cmn_d1VNIw5gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 13:24:14
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.204.69 (69.204.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.204.69 (69.204.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 09:24:07.051849 2026] [security2:error] [pid 14579:tid 14579] [client 34.24.204.69:49482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ingberinteriors.com"] [uri "/.git/config"] [unique_id "ap1pd47zcEhvftZLJYmGUQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
bazter.pro
2026-09-06 13:11:12
(19 hours ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
🇺🇸
jormaster3k
2026-09-06 13:06:08
(19 hours ago)
Attack against Apache (too many 404s)
Web App Attack
🇫🇷
dynamix
2026-09-06 12:54:15
(19 hours ago)
Multiple WAF Violations
Web App Attack