๐บ๐ธ
TPI-Abuse
2026-09-19 14:04:57
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.163.86 (86.163.79.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.163.86 (86.163.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 10:04:50.655993 2026] [security2:error] [pid 29299:tid 29393] [client 34.79.163.86:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mindgardens.com"] [uri "/@fs/src/.env"] [unique_id "aq6Wgk-GNNznUO-9-FwafgAAAcE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 13:45:11
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.163.86 (86.163.79.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.163.86 (86.163.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 09:45:06.425870 2026] [security2:error] [pid 32625:tid 32625] [client 34.79.163.86:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.marshallcurry.com"] [uri "/.htpasswd"] [unique_id "aq6R4tM36tsNncqTYOgLwAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 13:23:10
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.163.86 (86.163.79.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.163.86 (86.163.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 09:23:03.562881 2026] [security2:error] [pid 2238:tid 2238] [client 34.79.163.86:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.livingawakenedbook.com"] [uri "/@fs/app/.env"] [unique_id "aq6Mt3RnRbQ0vJNtvEZAbgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-19 13:15:03
(4 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 12:53:49
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.163.86 (86.163.79.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.163.86 (86.163.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 08:53:42.649166 2026] [security2:error] [pid 19402:tid 19402] [client 34.79.163.86:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kidswithcamerasmovie.com"] [uri "/@fs/src/.env"] [unique_id "aq6F1kwrPlx2pWog-GFkYQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-19 11:57:09
(5 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐จ๐ญ
๐จ๐ญ Hosting
2026-09-18 05:10:35
(1 day ago)
Automated WAF report: 200-300 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐ง๐ท
Sysadmin-CLC
2026-09-18 03:01:28
(1 day ago)
Probing and trying to access sensitive files caught in f2b nginx-forbidden filter
Web App Attack
Port Scan
๐ฉ๐ช
bazter.pro
2026-09-18 02:52:51
(1 day ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐ท๐ด
clauss
2026-09-18 02:49:56
(1 day ago)
34.79.163.86 - - [18/Sep/2026:05:49:55 +0300] "GET /@fs/app/.env?raw?? HTTP/2.0" 403 29 "-" "Mozilla ...
show more
34.79.163.86 - - [18/Sep/2026:05:49:55 +0300] "GET /@fs/app/.env?raw?? HTTP/2.0" 403 29 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )"
34.79.163.86 - - [18/Sep/2026:05:49:55 +0300] "GET /@fs/app/.env?raw?? HTTP/2.0" 403 29 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )"
...
show less
Web App Attack
๐ฌ๐ง
andypiper
2026-09-18 01:02:01
(1 day ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ฉ๐ช
mondor.ro
2026-09-18 00:11:58
(1 day ago)
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 34.79.163.86, Reason:[ ...
show more
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 34.79.163.86, Reason:[(mod_security) mod_security (id:210832) triggered by 34.79.163.86 (BE/Belgium/86.163.79.34.bc.googleusercontent.com): 3 in the last 3600 secs]; Ports: *; Direction: inout; Trigger: LF_CLUSTER; Logs:
show less
Port Scan
๐ฎ๐น
VHosting
2026-09-18 00:05:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-17 22:21:40
(1 day ago)
Brute-Force
Web App Attack
๐ฉ๐ช
itsolon
2026-09-17 20:53:58
(1 day ago)
[17/Sep/2026:22:53:56 +0200] 178967843638.325155 34.79.163.86 60542 217.154.7.177 443
[17/Sep/2026:2 ...
show more
[17/Sep/2026:22:53:56 +0200] 178967843638.325155 34.79.163.86 60542 217.154.7.177 443
[17/Sep/2026:22:53:57 +0200] 178967843758.469942 34.79.163.86 60542 217.154.7.177 443
[17/Sep/2026:22:53:56 +0200] 178967843685.985868 34.79.163.86 60542 217.154.7.177 443
[17/Sep/2026:22:53:56 +0200] 178967843697.932453 34.79.163.86 60542 217.154.7.177 443
[17/Sep/2026:22:53:58 +0200] 178967843871.151173 34.79.163.86 60542 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack