๐บ๐ธ
TPI-Abuse
2026-08-29 11:20:44
(15 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 07:20:40.542217 2026] [security2:error] [pid 6593:tid 6593] [client 34.6.46.34:54534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.cwidisplays.com"] [uri "/@fs/src/.env"] [unique_id "apLAiDBN_nE6IY8sa_xLEQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 10:54:16
(42 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 06:54:09.765629 2026] [security2:error] [pid 2760:tid 2760] [client 34.6.46.34:35500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cidv.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252froot/.env"] [unique_id "apK6UUz_L7EvvXN8_IZpvwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-29 10:23:56
(1 hour ago)
cloudlinux2 fail2ban: 2026-08-29 12:19:14,906 fail2ban.filter [1478]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-29 12:19:14,906 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 172.98.33.98 - 2026-08-29 12:19:14cloudlinux2 fail2ban: 2026-08-29 12:19:11,683 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 136.144.42.245 - 2026-08-29 12:19:11cloudlinux2 fail2ban: 2026-08-29 12:19:15,044 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 172.98.33.94 - 2026-08-29 12:19:14cloudlinux2 fail2ban: 2026-08-29 12:19:21,800 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.6.46.34 - 2026-08-29 12:19:21cloudlinux2 fail2ban: 2026-08-29 12:19:21,825 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.6.46.34 - 2026-08-29 12:19:21cloudlinux2 fail2ban: 2026-08-29 12:19:21,816 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.6.46.34 - 2026-08-29 12:19:21cloudlinux2 fail2ban: 2026-08-29 12:19:21,788 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.6.46.34 - 2026-08-29 12:19:21cloudlinux2 fa
show less
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 10:01:25
(1 hour ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.6.46.34 (NL/The Netherlands/34.46. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.6.46.34 (NL/The Netherlands/34.46.6.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-29 09:52:16
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 05:52:08.874173 2026] [security2:error] [pid 9260:tid 9260] [client 34.6.46.34:32224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.wholesaleglassjars.com"] [uri "/@fs/.env"] [unique_id "apKryE9Ny5pAvmpjetcCCQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-08-29 09:46:26
(1 hour ago)
(modsecurity) srv101 ModSecurity 34.6.46.34 (NL/The Netherlands/34.46.6.34.bc.googleusercontent.com) ...
show more
(modsecurity) srv101 ModSecurity 34.6.46.34 (NL/The Netherlands/34.46.6.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
kosada.com
2026-08-29 09:06:43
(2 hours ago)
Web vulnerability probing: /@fs/app/credentials.json
Web App Attack
๐ฌ๐ง
consul.to
2026-08-29 09:04:22
(2 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 08:32:43
(3 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 07:54:36
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 03:54:31.984298 2026] [security2:error] [pid 6820:tid 6820] [client 34.6.46.34:24486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "daveideas.stlouisdave.com"] [uri "/@fs/app/.env"] [unique_id "apKQN7nnVwo9C0CF-F4tSQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 07:39:13
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 03:39:08.678513 2026] [security2:error] [pid 21433:tid 21438] [client 34.6.46.34:39542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lavonnesells.com"] [uri "/@fs/../.env"] [unique_id "apKMnEj3sRXW_QGdG-UKEAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-29 06:55:54
(4 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 06:22:49
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:22:44.330700 2026] [security2:error] [pid 9014:tid 9014] [client 34.6.46.34:55856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.realstorybooks.com"] [uri "/@fs/.env"] [unique_id "apJ6tFm02KhHLYtEdWjJzQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 06:04:01
(5 hours ago)
CrowdSec blocked IP for crowdsecurity/http-probing on localhost
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 05:46:31
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.46.34 (34.46.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 01:46:27.366032 2026] [security2:error] [pid 24448:tid 24448] [client 34.6.46.34:51548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emeraldhighlands.org"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "apJyM3hUiwIF8em1v9vgzQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack