๐บ๐ธ
TPI-Abuse
2026-09-16 08:40:11
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.97.7 (7.97.47.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.97.7 (7.97.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 04:40:03.961742 2026] [security2:error] [pid 15066:tid 15066] [client 34.47.97.7:57526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "myndsong.com"] [uri "/.env"] [unique_id "aqpV40jAlMLtjJfafX9E2gAAAAs"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 08:20:15
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 01:24:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.47.97.7 (7.97.47.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.97.7 (7.97.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:24:53.714690 2026] [security2:error] [pid 17656:tid 17656] [client 34.47.97.7:52922] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maeandtheguys.com"] [uri "/.env"] [unique_id "aqnv5WePpcclpDEPdEsE2AAAACE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-09-16 00:14:13
(1 day ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.47.97.7 (KR/South Korea/7.97.47.34.bc ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.47.97.7 (KR/South Korea/7.97.47.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.47.97.7 - - [16/Sep/2026:02:14:11 +0200] "POST //admin/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1" 200 4858 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_2_5) Gecko/20021512 Firefox/25.0" "-" host=mediaqualitylab.com
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-15 21:20:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.47.97.7 (7.97.47.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.97.7 (7.97.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:20:15.902271 2026] [security2:error] [pid 15371:tid 15371] [client 34.47.97.7:59106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "idledog.com"] [uri "/.env"] [unique_id "aqm2jyBzqxKYNzlo25oesQAAABc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 15:38:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.47.97.7 (7.97.47.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.97.7 (7.97.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 11:38:11.217852 2026] [security2:error] [pid 2020:tid 2020] [client 34.47.97.7:33008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "depcare.com"] [uri "/.env"] [unique_id "aqlmY0WZSElbkB9-kr8FYgAAAAQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dtorrer
2026-09-15 15:12:45
(1 day ago)
General vulnerability scan.
Port Scan
๐บ๐ธ
mc4bbs
2026-09-15 14:50:54
(1 day ago)
Automated Apache detection on Windows host. 5 suspicious HTTP requests within 300 seconds. Examples: ...
show more
Automated Apache detection on Windows host. 5 suspicious HTTP requests within 300 seconds. Examples: GET /.env -> 404 UA=""; GET //vendor/.env -> 404 UA=""; GET //lib/.env -> 404 UA=""; GET //lab/.env -> 404 UA=""; GET //cronlab/.env -> 404 UA=""
show less
Web App Attack
Hacking
๐ณ๐ฑ
Alt255
2026-09-15 11:23:35
(1 day ago)
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.47.97.7 - - [15/Sep/2026:13:23:23 +0200] "GET /.env HTTP/1.1" 301 609 "https://www.google.com/" "Mozilla/5.0 (Windows; U; MSIE 6.0; Macintosh; Trident/4.0; Intel Mac OS X 10_9_1)"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-09-15 04:28:08
(2 days ago)
[redacted] 34.47.97.7 - - [15/Sep/2026:05:28:03 +0100] "GET /.env HTTP/1.1" 302 1524 0/59351 "https: ...
show more
[redacted] 34.47.97.7 - - [15/Sep/2026:05:28:03 +0100] "GET /.env HTTP/1.1" 302 1524 0/59351 "https://[redacted]/" "Mozilla/5.0 (Linux i386; X11) Gecko/20040108 Firefox/20.0" 443 [redacted] 34.47.97.7 - - [15/Sep/2026:05:28:07 +0100] "GET //vendor/.env HTTP/1.1" 302 1524 0/52148 "https://[redacted]/" "Mozilla/5.0 (Linux i386; X11) Gecko/20040108 Firefox/20.0" 443
show less
Bad Web Bot
Web App Attack