๐บ๐ธ
TPI-Abuse
2026-09-01 14:03:46
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 10:03:40.172954 2026] [security2:error] [pid 14191:tid 14191] [client 34.64.82.245:52456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rokket.com"] [uri "/.env.local"] [unique_id "apbbPP6BlghjRSMA3IZPUAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 13:48:04
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:47:57.015862 2026] [security2:error] [pid 12980:tid 12980] [client 34.64.82.245:40422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.idonthaveawebpage.com"] [uri "/.env.save"] [unique_id "apbXjcq6-v1d8zeIuYgY8gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MyGlobalFlowers
2026-09-01 12:02:08
(17 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-01 11:12:03
(18 hours ago)
Bot / scanning and/or hacking attempts: GET /.env.production HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:52:36
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:52:29.353666 2026] [security2:error] [pid 21822:tid 21822] [client 34.64.82.245:53814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "orlihnizdozlin.cz"] [uri "/.env.example"] [unique_id "apaubaDqk4WOErGzedilUAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-01 10:28:56
(19 hours ago)
cloudlinux2 fail2ban: 2026-09-01 12:24:55,618 fail2ban.actions [1605]: NOTICE [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-01 12:24:55,618 fail2ban.actions [1605]: NOTICE [plesk-modsecurity] Unban 35.229.193.82cloudlinux2 fail2ban: 2026-09-01 12:25:27,039 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.64.82.245 - 2026-09-01 12:25:26cloudlinux2 fail2ban: 2026-09-01 12:25:27,061 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.64.82.245 - 2026-09-01 12:25:26cloudlinux2 fail2ban: 2026-09-01 12:25:27,047 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.64.82.245 - 2026-09-01 12:25:26cloudlinux2 fail2ban: 2026-09-01 12:25:27,054 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.64.82.245 - 2026-09-01 12:25:26cloudlinux2 fail2ban: 2026-09-01 12:25:27,009 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.64.82.245 - 2026-09-01 12:25:26cloudlinux2 fail2ban: 2026-09-01 12:25:27,667 fail2ban.actions [1605]: NOTICE [plesk-modsecurity] Ban 34.64.82.245cloudlinux2 fail2ban: 2026-09-01 12:25:27,121 f
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-01 09:50:35
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:50:29.523715 2026] [security2:error] [pid 10903:tid 10903] [client 34.64.82.245:56872] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spam.davisllp.com"] [uri "/.env.old"] [unique_id "apaf5QiyU6G3aZZiGH67sQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 09:15:12
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:15:07.244824 2026] [security2:error] [pid 12796:tid 12796] [client 34.64.82.245:57236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "terryhildebrandprints.com"] [uri "/wp-config.php~"] [unique_id "apaXm4jh3m6-MpDTVe1P2wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 07:50:08
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:50:01.489634 2026] [security2:error] [pid 6113:tid 6113] [client 34.64.82.245:57764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.sfgardening.com"] [uri "/wp-config.php.swp"] [unique_id "apaDqfS8ORukpCDhVVn_RQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-01 07:05:28
(22 hours ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:31:05
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:30:57.770311 2026] [security2:error] [pid 13221:tid 13221] [client 34.64.82.245:40480] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stacyfarm.com"] [uri "/.env.old"] [unique_id "apZxIYWIQDXx0UB9aujdqAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 05:04:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.82.245 (245.82.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:04:52.883915 2026] [security2:error] [pid 27047:tid 27047] [client 34.64.82.245:59802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.beeswaxnews.com"] [uri "/wp-config.php~"] [unique_id "apZc9DG0dZiv9YgkjHL1_wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 04:49:07
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 04:35:18
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ฉ๐ช
Darki1962
2026-09-01 04:20:02
(1 day ago)
76 hits, proto=tcp, ports=443,80
Port Scan
Hacking
Brute-Force
SSH