🇺🇸
TPI-Abuse
2026-09-06 03:34:34
(47 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:34:30.484590 2026] [security2:error] [pid 3021:tid 3021] [client 34.7.221.150:39646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "playerpianocare.player-care.com"] [uri "/wp-config.php.swp"] [unique_id "apzfRnHXDaxHJrBp_BlnIQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
MatCat
2026-09-06 03:05:10
(1 hour ago)
Banned by fail2ban: apache-webprobe
Port Scan
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-06 03:04:06
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:03:58.715676 2026] [security2:error] [pid 3660802:tid 3660802] [client 34.7.221.150:33394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webuychesterfieldhouses.com"] [uri "/.env.old"] [unique_id "apzYHiAe0AZwl7E9lOaaswAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 02:01:29
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:01:24.884711 2026] [security2:error] [pid 27644:tid 27644] [client 34.7.221.150:39062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "memphislimousines.com"] [uri "/.env"] [unique_id "apzJdJR7UST3yrJaTl1VSwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-06 02:00:15
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
🇮🇹
festigf
2026-09-06 01:50:10
(2 hours ago)
Attacco rilevato da Fail2Ban su Nginx
Brute-Force
Web App Attack
🇬🇧
Apache
2026-09-06 00:57:59
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 00:28:05
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 20:27:59.222043 2026] [security2:error] [pid 25422:tid 25422] [client 34.7.221.150:60306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "voodooshop.com"] [uri "/.env.prod"] [unique_id "apyzj8vo6lL55unsZL2KGQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-06 00:02:11
(4 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:54:56
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:54:51.725345 2026] [security2:error] [pid 2952:tid 2956] [client 34.7.221.150:48412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.southtampaprints.com"] [uri "/.env"] [unique_id "apyry6tA3Hhb7YIrmc4OvwAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:04:46
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:04:38.634511 2026] [security2:error] [pid 12186:tid 12186] [client 34.7.221.150:60908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redvers.net"] [uri "/wp-config.php.swp"] [unique_id "apygBqYNUXvYrfjs5FvmvQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-05 22:56:27
(5 hours ago)
Multiple WAF Violations
Web App Attack
🇬🇧
consul.to
2026-09-05 22:30:32
(5 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 20:27:31
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.221.150 (150.221.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 16:27:24.553308 2026] [security2:error] [pid 28263:tid 28263] [client 34.7.221.150:39164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blueweddingnapkins.com"] [uri "/.env"] [unique_id "apx7LK1tAbBKfz6J_JdPrwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
alferez
2026-09-03 22:48:17
(2 days ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack