๐ณ๐ฑ
Alt255
2026-09-16 01:27:13
(13 hours ago)
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.64.251.49 - - \[16/Sep/2026:03:27:11 +0200\] "GET /.env HTTP/1.1" 301 477 "https://www.google.com/" "Mozilla/5.0 \(Windows NT 5.1\; Win64\; x64\) AppleWebKit/535.8 \(KHTML, like Gecko\) Chrome/21.0.1173.40 Safari/536.4"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:31:49
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:31:45.118283 2026] [security2:error] [pid 24715:tid 24715] [client 34.64.251.49:40546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mightyhoop.com"] [uri "/.env"] [unique_id "aqnjcZVhbunmdfAGWr9LywAAAAs"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:29:36
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:29:29.735596 2026] [security2:error] [pid 30245:tid 30245] [client 34.64.251.49:47180] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "growtowork.com"] [uri "/.env"] [unique_id "aqmcmZiNzmLsNq04ru8INwAAABU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 17:03:12
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:03:08.336297 2026] [security2:error] [pid 23977:tid 23977] [client 34.64.251.49:42944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "femdomchatbot.com"] [uri "/.env"] [unique_id "aql6TLSq_JkDdJ9UyLzDuAAAACU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 17:02:27
(21 hours ago)
Automated web vulnerability and path enumeration scan with excessive 404 requests
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 15:33:49
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 11:33:45.208903 2026] [security2:error] [pid 14691:tid 14691] [client 34.64.251.49:43876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "djmrmusic.com"] [uri "/.env"] [unique_id "aqllWYl8tNwBEGqfZ3Na-wAAAAA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-09-15 15:13:19
(23 hours ago)
(y3) Failed access -byebye- from 34.64.251.49 (KR/South Korea/49.251.64.34.bc.googleusercontent.com) ...
show more
(y3) Failed access -byebye- from 34.64.251.49 (KR/South Korea/49.251.64.34.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
๐ซ๐ท
dynamix
2026-09-15 12:38:16
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:26:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.251.49 (49.251.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:26:01.907799 2026] [security2:error] [pid 12401:tid 12401] [client 34.64.251.49:38742] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mcefa.org"] [uri "/.env"] [unique_id "aqkdOUXqx1AjQNQuC_xLZQAAAAo"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack