๐ซ๐ท
masterguru
2026-09-20 15:10:42
(1 day ago)
BAD BOT - Detected and Blocked.. Matched phrase "baidu" at REQUEST_HEADERS:User-Agent. (1100000-196)
Bad Web Bot
๐ธ๐ช
vaia.cloud
2026-09-20 15:05:02
(1 day ago)
crowdsecurity/http-cve-2021-41773
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-20 15:03:48
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ฆ๐บ
2000cn.com.au
2026-09-20 14:59:40
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-20 14:56:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:56:44.881911 2026] [security2:error] [pid 15544:tid 15548] [client 34.75.20.238:39228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ardentsi.com"] [uri "/project/.env"] [unique_id "aq_0LGhLy5D-2KUzPcB-8wAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 14:44:42
(1 day ago)
Banned by Fail2Ban on server
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 14:38:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:38:36.875296 2026] [security2:error] [pid 15335:tid 15335] [client 34.75.20.238:52624] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "archmediaptyltd.com"] [uri "/.env.js"] [unique_id "aq_v7DO5h8j_6qjV2FletAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
pm33
2026-09-20 14:36:55
(1 day ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 14:09:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:09:48.324202 2026] [security2:error] [pid 10538:tid 10538] [client 34.75.20.238:59092] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arcadiapropertiesllc.com"] [uri "/.env.example"] [unique_id "aq_pLCPMSV9Ub20oGf9JDQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 13:22:24
(1 day ago)
Scanner hitting /.git/HEAD on ara-oman.com (GOOGL-2) โ aaguard
Brute-Force
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-20 13:18:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:17:59.077125 2026] [security2:error] [pid 2329:tid 2446] [client 34.75.20.238:40650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aqutar.com"] [uri "/admin/.env"] [unique_id "aq_dBzdyK-Ux5y4A6Nx57AAAAhg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 12:58:46
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:58:41.583394 2026] [security2:error] [pid 12241:tid 12241] [client 34.75.20.238:41546] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||aquanauticsige.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "aquanauticsige.com"] [uri "/z9x8c7v6b5-debug-trigger-aquanauticsige.com"] [unique_id "aq_YgRZ5idqFPPMV3KiRBAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 12:32:08
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.20.238 (238.20.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:32:01.981420 2026] [security2:error] [pid 15097:tid 15097] [client 34.75.20.238:47510] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||apuntesdeinversion.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "apuntesdeinversion.com"] [uri "/z9x8c7v6b5-debug-trigger-apuntesdeinversion.com"] [unique_id "aq_SQT09IjvFEOyY2GAN8QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 12:30:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-09-20 12:14:20
(1 day ago)
Multiple WAF Violations
Web App Attack