๐บ๐ธ
TPI-Abuse
2026-09-16 08:23:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 04:23:46.345193 2026] [security2:error] [pid 27996:tid 28062] [client 34.64.46.35:46612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nationsrecovery.com"] [uri "/.env"] [unique_id "aqpSEgL-CeJSGrijMfRoogAAAgY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-16 00:50:15
(2 days ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-09-16 00:23:08
(2 days ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-15 22:06:04
(2 days ago)
34.64.46.35 - - [15/Sep/2026:18:06:01 -0400] "GET /.env HTTP/1.1" 404 47186 "https://www.google.com/ ...
show more
34.64.46.35 - - [15/Sep/2026:18:06:01 -0400] "GET /.env HTTP/1.1" 404 47186 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 8.0; Macintosh; .NET CLR 2.0.6082; Intel Mac OS X 10_0_5)"
34.64.46.35 - - [15/Sep/2026:18:06:03 -0400] "GET //vendor/.env HTTP/1.1" 301 4855 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 8.0; Macintosh; .NET CLR 2.0.6082; Intel Mac OS X 10_0_5)"
34.64.46.35 - - [15/Sep/2026:18:06:03 -0400] "GET /vendor/.env HTTP/1.1" 404 47215 "https://www.google.com/" "Mozilla/5.0 (compatible; MSIE 8.0; Macintosh; .NET CLR 2.0.6082; Intel Mac OS X 10_0_5)"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:11:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:11:05.253408 2026] [security2:error] [pid 750:tid 750] [client 34.64.46.35:43606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grassnplus.com"] [uri "/.env"] [unique_id "aqmYSYGeEP-qHQ3RDJJm4QAAAAg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-15 17:43:53
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 14:02:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 10:02:30.963220 2026] [security2:error] [pid 18277:tid 18315] [client 34.64.46.35:49118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cibernetic.com"] [uri "/.env"] [unique_id "aqlP9hbqJvXVTNUcJWfPMwAAAI4"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:44:09
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:44:03.913213 2026] [security2:error] [pid 23057:tid 23057] [client 34.64.46.35:36362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "krassa.org"] [uri "/.env"] [unique_id "aqkhc7bSjmJpnZfdF2zGrAAAAAE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:23:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.46.35 (35.46.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:23:44.351371 2026] [security2:error] [pid 25504:tid 25504] [client 34.64.46.35:36950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "krakowski.org"] [uri "/.env"] [unique_id "aqkcsOcygfHXsaAKjVHVuAAAAAs"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 10:21:31
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking