๐บ๐ธ
TPI-Abuse
2026-10-01 14:57:27
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:57:23.865648 2026] [security2:error] [pid 6029:tid 6029] [client 34.73.142.204:53452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.secureonebank.net"] [uri "/static../.env"] [unique_id "ar5001y5HhxFQBCN58nLawAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 14:27:31
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:27:28.180946 2026] [security2:error] [pid 19151:tid 19151] [client 34.73.142.204:40924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thinksite.net"] [uri "/static../.env"] [unique_id "ar5t0AJ12XYUP_jicA1g0wAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 14:02:45
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:02:40.706710 2026] [security2:error] [pid 15834:tid 15834] [client 34.73.142.204:45964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.erkan.net"] [uri "/.env"] [unique_id "ar5oAOIxcbQneA7eZaOm2QAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
altenglaner
2026-10-01 13:07:52
(11 hours ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:07:50
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:07:47.251013 2026] [security2:error] [pid 20574:tid 20574] [client 34.73.142.204:50716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.dandemonium.net"] [uri "/media../.env"] [unique_id "ar5bIzwSRYvuYWlUkT9tpwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 13:00:14
(12 hours ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
pscriptos
2026-10-01 12:51:35
(12 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-path-traversal-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-01 12:49:59
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 08:49:53.000738 2026] [security2:error] [pid 15163:tid 15163] [client 34.73.142.204:58604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aticom.net"] [uri "/.htpasswd"] [unique_id "ar5W8VEAN-BkG_jKHlNuQAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 12:32:05
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 08:31:59.908563 2026] [security2:error] [pid 23804:tid 23804] [client 34.73.142.204:39914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.lynetteharris.net"] [uri "/js../.env"] [unique_id "ar5Sv0NmGIRm9lQC_BiNGAAAAF4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 12:30:03
(12 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 12:15:49
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.142.204 (204.142.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 08:15:42.872463 2026] [security2:error] [pid 14597:tid 14597] [client 34.73.142.204:53714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.belgiophar.net"] [uri "/.env"] [unique_id "ar5O7mzRoLoyQ44j5xIXLgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-10-01 12:08:42
(12 hours ago)
Multiple WAF Violations
Web App Attack
๐ญ๐ฐ
mutebot.net
2026-10-01 11:42:14
(13 hours ago)
SRC=34.73.142.204, PROTO=TCP, SPT=32860, DPT=8080
Port Scan
๐ฉ๐ช
Jochen Pretli
2026-10-01 10:41:23
(14 hours ago)
connection to honeypot
Email Spam
Port Scan
๐บ๐ธ
mutebot.net
2026-10-01 10:35:40
(14 hours ago)
SRC=34.73.142.204, PROTO=TCP, SPT=43614, DPT=8080
Port Scan