๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:01:39
(5 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
WellSpring
2026-06-15 06:29:25
(20 hours ago)
env leak on 951.today/src/sendgrid.env โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:51:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.153.28 (28.153.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.153.28 (28.153.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:51:21.469140 2026] [security2:error] [pid 12459:tid 12473] [client 34.81.153.28:35632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emehache.net"] [uri "/development/.env"] [unique_id "ai9oqQ7lyAKz8I1WY49LwQAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
s@ch@
2026-06-15 02:00:01
(1 day ago)
Jail: plesk-modsecurity | Web application attack (Plesk ModSecurity)
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-06-15 00:13:05
(1 day ago)
categories: DDoS Attack
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:00:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.153.28 (28.153.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.153.28 (28.153.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:00:14.052538 2026] [security2:error] [pid 26724:tid 26724] [client 34.81.153.28:45366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pastorjohndunning.com"] [uri "/prod/.env"] [unique_id "ai8yfvqy2bm1N9VRLyL6aAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-14 22:43:56
(1 day ago)
34.81.153.28 - - [15/Jun/2026:01:43:55 +0300] "GET /backend/.env HTTP/1.1" 404 3309 "-" "Mozilla/5.0 ...
show more
34.81.153.28 - - [15/Jun/2026:01:43:55 +0300] "GET /backend/.env HTTP/1.1" 404 3309 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/61.0.3163.79 Safari/537.36 Maxthon/5.2.6.1000"
34.81.153.28 - - [15/Jun/2026:01:43:55 +0300] "GET /service/.env HTTP/1.1" 404 3310 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.142 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 15:36:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.153.28 (28.153.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.153.28 (28.153.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 11:36:38.537167 2026] [security2:error] [pid 4407:tid 4407] [client 34.81.153.28:58726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catholicshopper.com"] [uri "/.env.save"] [unique_id "ai7KhnlUMbOfYGnCS3klLQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-14 06:49:13
(1 day ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.81.153.28 (TW/Tai ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.81.153.28 (TW/Taiwan/28.153.81.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐บ๐ธ
etu brutus
2026-06-14 04:45:49
(1 day ago)
34.81.153.28 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
HoneyPotFRI
2026-06-13 22:16:53
(2 days ago)
34.81.153.28 - - [14/Jun/2026:00:16:36 +0200] "GET /.env.local HTTP/1.1" 404 125 "-" "Mozilla/5.0 (M ...
show more
34.81.153.28 - - [14/Jun/2026:00:16:36 +0200] "GET /.env.local HTTP/1.1" 404 125 "-" "Mozilla/5.0 (Macintosh; U; PPC Mac OS X 10.5; en-US; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15"
34.81.153.28 fri.
...
show less
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-06-13 19:42:44
(2 days ago)
AutoBlock: ๐ก Port Scan (Non Decay-Based)
Port Scan