๐ณ๐ฑ
Site.eu
2026-09-25 16:16:46
(2 hours ago)
Excessive multi-domain requests
Brute-Force
๐ง๐ช
cmbplf
2026-09-25 16:03:06
(2 hours ago)
2.106 requests from abuseipdb.com blacklisted IP (1yr3mos3w)
Brute-Force
Bad Web Bot
๐ฉ๐ช
bazter.pro
2026-09-25 12:42:35
(5 hours ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
Matthew Ping
2026-09-25 08:00:03
(10 hours ago)
cPanel/WHM brute force blocked by CSF/LFD on wp3.
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-25 05:01:01
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.6.44.79 (79.44.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.44.79 (79.44.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 01:00:55.814316 2026] [security2:error] [pid 11346:tid 11346] [client 34.6.44.79:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.theabstractpress.com"] [uri "/@fs/proc/self/cwd/.env"] [unique_id "arYAB2fsjD2KEgL0lTBOpQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 02:34:44
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.6.44.79 (79.44.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.44.79 (79.44.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 22:34:40.410008 2026] [security2:error] [pid 12600:tid 12600] [client 34.6.44.79:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.sahinozalit.com"] [uri "/.env.js"] [unique_id "arXdwKzyIz0hbgT2iqvVUAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-25 02:11:07
(16 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-25 01:55:16
(16 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 1s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 01:42:34
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.6.44.79 (79.44.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.44.79 (79.44.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 21:42:25.781656 2026] [security2:error] [pid 5995:tid 5995] [client 34.6.44.79:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.ralphrichardson.com"] [uri "/.env"] [unique_id "arXRgT20Q8vPN7yWeIQFEQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 01:09:04
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.6.44.79 (79.44.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.44.79 (79.44.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 21:08:57.828473 2026] [security2:error] [pid 30200:tid 30200] [client 34.6.44.79:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.poweribo.com"] [uri "/@fs/../.env"] [unique_id "arXJqbVxbWViOK_dwa9RUgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-24 21:25:05
(21 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฆ๐บ
artful
2026-09-24 11:26:00
(1 day ago)
Excessive errors in recent hours
Web App Attack
Anonymous
2026-09-24 09:56:29
(1 day ago)
Blocked by ModSec and CSF
Port Scan
๐ฉ๐ช
maxpower
2026-09-24 09:16:22
(1 day ago)
(nginx_hardened) REGOLA 3 - Nginx Hardening Triggered 34.6.44.79 (79.44.6.34.bc.googleusercontent.co ...
show more
(nginx_hardened) REGOLA 3 - Nginx Hardening Triggered 34.6.44.79 (79.44.6.34.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 2026/09/24 11:16:18 [error] 3258447#3258447: *730341 access forbidden by rule, client: 34.6.44.79, server: stefanomarchegiani.com, request: "GET /wp-config.php.old HTTP/2.0", host: "www.stefanomarchegiani.com"
2026/09/24 11:16:18 [error] 3258447#3258447: *730341 access forbidden by rule, client: 34.6.44.79, server: stefanomarchegiani.com, request: "GET /wp-config.php.bak HTTP/2.0", host: "www.stefanomarchegiani.com"
2026/09/24 11:16:18 [error] 3258447#3258447: *730341 access forbidden by rule, client: 34.6.44.79, server: stefanomarchegiani.com, request: "GET /wp-config.php~ HTTP/2.0", host: "www.stefanomarchegiani.com"
show less
Port Scan
๐ช๐ธ
pipeline.es
2026-09-24 08:59:16
(1 day ago)
Web scanning / probing for vulnerable paths
Port Scan
Web App Attack