🇺🇸
TPI-Abuse
2026-09-06 03:50:01
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:49:57.770996 2026] [security2:error] [pid 15744:tid 15744] [client 34.39.205.32:37334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jeffreycopeland.com"] [uri "/.env.save"] [unique_id "apzi5Uo_u5osmnj8CuUrUQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:30:50
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:30:44.295338 2026] [security2:error] [pid 13466:tid 13466] [client 34.39.205.32:44044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "citadeltitle.com"] [uri "/.env.local"] [unique_id "apzeZNfAP3c3m19WcfLpKgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:01:53
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:01:50.061962 2026] [security2:error] [pid 32476:tid 32476] [client 34.39.205.32:40226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.maidsinmalta.com"] [uri "/wp-config.php~"] [unique_id "apzXnnDLG5FSKAQThgLoGwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 02:34:12
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:34:04.847507 2026] [security2:error] [pid 24629:tid 24629] [client 34.39.205.32:51224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fedeoliva.com.castagnino.com"] [uri "/.env.example"] [unique_id "apzRHPar7SRT4oz9I2mJ7QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
filstal.org
2026-09-06 02:33:24
(17 hours ago)
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels an ...
show more
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels and known vulnerability paths.
show less
Hacking
Brute-Force
Web App Attack
🇫🇷
masterguru
2026-09-06 02:31:32
(17 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.39.205.32 (BR/Brazil/32.205.39.34. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.39.205.32 (BR/Brazil/32.205.39.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
🇺🇸
TPI-Abuse
2026-09-06 01:36:05
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:36:00.692960 2026] [security2:error] [pid 4857:tid 4857] [client 34.39.205.32:52668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "monopolimusic.com"] [uri "/.env.save"] [unique_id "apzDgBUMfPkr_ux7_x43kgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-06 01:27:10
(18 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇩🇪
Séfora Srl
2026-09-06 01:22:23
(18 hours ago)
crowdsecurity/http-probing detected by CrowdSec
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 01:08:52
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:08:46.816457 2026] [security2:error] [pid 16543:tid 16543] [client 34.39.205.32:45350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.frank-klimas.com"] [uri "/.env.prod"] [unique_id "apy9Hl2MSYJBt0DfeEU5owAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 00:37:50
(19 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇺🇸
jormaster3k
2026-09-06 00:31:16
(19 hours ago)
Attack against Apache (too many 404s)
Web App Attack
🇫🇷
dynamix
2026-09-06 00:09:50
(19 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:53:33
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:53:28.085531 2026] [security2:error] [pid 20965:tid 20965] [client 34.39.205.32:38764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.sympalais.com"] [uri "/.env.old"] [unique_id "apyrePPMzyEF7sYYf6JQBAAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:28:39
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.205.32 (32.205.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:28:30.943499 2026] [security2:error] [pid 22176:tid 22193] [client 34.39.205.32:57122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.adetnw.com"] [uri "/.env"] [unique_id "apylnvm8e7ZI0TuNKT1zkAAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack