๐บ๐ธ
TPI-Abuse
2026-07-31 10:01:38
(3 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 06:01:31.548648 2026] [security2:error] [pid 306662:tid 306662] [client 34.80.37.151:16162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jimhake.com"] [uri "/.env"] [unique_id "amxye4a0J96EoVNGzZexhAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-07-31 09:23:51
(41 minutes ago)
CrowdSec: crowdsecurity/http-sensitive-files | req: /.env | 5 distinct paths | UA: Mozilla/5.0 Apple ...
show more
CrowdSec: crowdsecurity/http-sensitive-files | req: /.env | 5 distinct paths | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ChatGPT-User/1.0; +https://openai.com/bot)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-31 09:20:10
(44 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 05:20:06.810388 2026] [security2:error] [pid 331036:tid 331036] [client 34.80.37.151:47310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cthog.xyz"] [uri "/.env.development"] [unique_id "amxoxttH4kaPZZEhXXJduAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-31 08:14:26
(1 hour ago)
(mod_security) mod_security triggered on hostname [redacted] 34.80.37.151 (TW/Taiwan/151.37.80.34.bc ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.80.37.151 (TW/Taiwan/151.37.80.34.bc.googleusercontent.com)
show less
SQL Injection
๐ณ๐ฑ
ConsulHosting
2026-07-31 07:59:13
(2 hours ago)
Automatically blocked due to distributed attack
Hacking
๐ซ๐ท
masterguru
2026-07-31 07:47:17
(2 hours ago)
Restricted File Access Attempt. Matched phrase "/.env" at REQUEST_FILENAME. (930130-131)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-31 07:13:36
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 03:13:33.244327 2026] [security2:error] [pid 11814:tid 11814] [client 34.80.37.151:30642] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.indie100.com"] [uri "/.env.production"] [unique_id "amxLHU4OtnpS_Nf4VN5COAAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
COMAITE
2026-07-31 06:57:36
(3 hours ago)
Suspicious URL access.
Web App Attack
Anonymous
2026-07-31 06:49:59
(3 hours ago)
34.80.37.151 - - [31/Jul/2026:14:49:53 +0800] "GET /api/keys.json HTTP/1.1" 404 13836 "https://ideo. ...
show more
34.80.37.151 - - [31/Jul/2026:14:49:53 +0800] "GET /api/keys.json HTTP/1.1" 404 13836 "https://ideo.com.hk/api/keys.json" "Mozilla/5.0 (compatible; Google-Extended/1.0; +http://www.google.com/bot.html)"
34.80.37.151 - - [31/Jul/2026:14:49:53 +0800] "GET /config/application.yml HTTP/1.1" 404 13836 "https://ideo.com.hk/config/application.yml" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
34.80.37.151 - - [31/Jul/2026:14:49:53 +0800] "GET /config.json HTTP/1.1" 404 13836 "https://ideo.com.hk/config.json" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
34.80.37.151 - - [31/Jul/2026:14:49:53 +0800] "GET /secrets.json HTTP/1.1" 404 13836 "https://ideo.com.hk/secrets.json" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
34.80.37.151 - - [31/Jul/2026:14:49:53 +0800] "GET /secret.json HTTP/1.1" 404 13836 "https://ideo.com.hk/secret.json" "Mozilla/5.0 (compatible; Google-Extended/1.0; +http://www.google.com/bot.html)
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-31 06:30:51
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 02:30:44.311914 2026] [security2:error] [pid 29403:tid 29403] [client 34.80.37.151:22702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.waycoradio.com"] [uri "/.env"] [unique_id "amxBFO0S3-iomRREiwHZlQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-31 06:15:46
(3 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
grassau.com
2026-07-31 06:14:57
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.80.37.151 (TW/Taiwan/Taipei City/Tai ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.80.37.151 (TW/Taiwan/Taipei City/Taipei/151.37.80.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-07-31 06:07:36
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.37.151 (151.37.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 02:07:27.408160 2026] [security2:error] [pid 9236:tid 9236] [client 34.80.37.151:65454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mtalame.com"] [uri "/.env"] [unique_id "amw7nyJH81CJydLJyx6wuQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-07-31 06:05:46
(3 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฟ๐ฆ
conure
2026-07-31 05:54:18
(4 hours ago)
csagent: score 20.8: 404 noise floor x3, secrets grab x2; 1 domain(s) in 0s
Web App Attack