๐บ๐ธ
TPI-Abuse
2026-08-01 00:56:37
(30 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 20:56:32.485458 2026] [security2:error] [pid 1037291:tid 1037291] [client 34.26.231.215:27630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tijuanabible.org"] [uri "/.env.production"] [unique_id "am1EQNpb1Ou9tMjIG621ogAAAHE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-08-01 00:53:16
(33 minutes ago)
*Port Scan* detected from 34.26.231.215 (US/United States/South Carolina/North Charleston/215.231.26 ...
show more
*Port Scan* detected from 34.26.231.215 (US/United States/South Carolina/North Charleston/215.231.26.34.bc.googleusercontent.com).
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-01 00:27:03
(59 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 20:26:58.148521 2026] [security2:error] [pid 1480547:tid 1480547] [client 34.26.231.215:51012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smart1services.sophcomp.com"] [uri "/.env.production"] [unique_id "am09Uoy9NpBgy3EQPDZfZwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
AGEPCom
2026-08-01 00:03:00
(1 hour ago)
Smart-Ban: IP bannie via score AbuseIPDB
Brute-Force
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-07-31 23:49:20
(1 hour ago)
[Fri Jul 31 17:49:20.515874 2026] [authz_core:error] [pid 2282:tid 139663276766784] [client 34.26.23 ...
show more
[Fri Jul 31 17:49:20.515874 2026] [authz_core:error] [pid 2282:tid 139663276766784] [client 34.26.231.215:38318] AH01630: client denied by server configuration: /var/www/public_html/www/wp-config.php.bak, referer: https://www.rmbs.org/wp-config.php.bak
[Fri Jul 31 17:49:20.563253 2026] [authz_core:error] [pid 2282:tid 139662773302848] [client 34.26.231.215:38404] AH01630: client denied by server configuration: /var/www/public_html/www/.env.orig, referer: https://www.rmbs.org/.env.orig
[Fri Jul 31 17:49:20.577524 2026] [authz_core:error] [pid 2283:tid 139662941058624] [client 34.26.231.215:39122] AH01630: client denied by server configuration: /var/www/public_html/www/config.php.bak, referer: https://www.rmbs.org/config.php.bak
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-31 23:46:00
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 19:45:53.372140 2026] [security2:error] [pid 1115269:tid 1115269] [client 34.26.231.215:28040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.thesteeldrumman.com"] [uri "/.env"] [unique_id "am0zsTAeM2YGX67ChL1rkAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-31 23:09:24
(2 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-31 23:05:15
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 19:05:09.265234 2026] [security2:error] [pid 3662729:tid 3662729] [client 34.26.231.215:42876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.psychiatryabuse.com"] [uri "/.env.staging"] [unique_id "am0qJaz6YILCgXKBlg1owgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-31 22:42:05
(2 hours ago)
Bot / scanning and/or hacking attempts: GET /wp-config.php.old HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
n2nguyenn2nguyen
2026-07-31 22:34:21
(2 hours ago)
Blocked by YFC Security on https://1904.brixzly.com โ type: directory_scan_attempts
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-31 22:34:04
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 18:33:59.837209 2026] [security2:error] [pid 847618:tid 847618] [client 34.26.231.215:1184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.hawaiiantime.com"] [uri "/.env"] [unique_id "am0i16snb6nu51t0a9j8NwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-31 22:26:13
(3 hours ago)
Bot / seems abusive / Apache connections: 84
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-31 22:23:09
(3 hours ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ท
mail.avx.gr
2026-07-31 22:18:25
(3 hours ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 34.26.231.215 - - [01/Aug/20 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 34.26.231.215 - - [01/Aug/2026:01:18:25 +0300] "GET /.env HTTP/1.1" 403 2426 "-" "anthropic-ai"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-31 21:41:17
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.231.215 (215.231.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 17:41:13.495219 2026] [security2:error] [pid 1183575:tid 1183575] [client 34.26.231.215:52498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "continuity.productions"] [uri "/.env"] [unique_id "am0WedhvUqpYNrP7UYlwXAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack