๐บ๐ธ
TPI-Abuse
2026-08-28 11:44:08
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:44:01.645907 2026] [security2:error] [pid 29788:tid 29929] [client 34.84.104.70:38040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hfcms.org"] [uri "/@fs/app/.env"] [unique_id "apF0gfdZ64xOo8HolOJ0UgAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
mediarama.com
2026-08-28 11:35:36
(5 hours ago)
Banned by Fail2Ban
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 10:25:32
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:25:25.488099 2026] [security2:error] [pid 26541:tid 26541] [client 34.84.104.70:42910] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.qovintheloop.org"] [uri "/@fs/app/.env"] [unique_id "apFiFYU5jNO8CtK6aRUHsAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 10:07:39
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:07:34.712301 2026] [security2:error] [pid 25640:tid 25640] [client 34.84.104.70:53700] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.citizensforsanity.com"] [uri "/@fs/src/.env"] [unique_id "apFd5gJJNATtcKOb9N0JBwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-28 09:56:47
(7 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
Hostynet
2026-08-28 09:04:43
(8 hours ago)
TCP SYN flood detected by MikroTik RouterOS filter (sustained half-open connection rate from single ...
show more
TCP SYN flood detected by MikroTik RouterOS filter (sustained half-open connection rate from single source). Source automatically blacklisted.
show less
DDoS Attack
๐ซ๐ฎ
YF
2026-08-28 08:30:39
(8 hours ago)
Distributed subnet attack โ coordinated scanning from multiple IPs in the same /24
DDoS Attack
Web App Attack
๐ฉ๐ช
4server
2026-08-28 07:45:26
(9 hours ago)
[FriAug2809:45:20.5783082026][security2:error][pid2339887:tid2339984][client34.84.104.70:0]ModSecuri ...
show more
[FriAug2809:45:20.5783082026][security2:error][pid2339887:tid2339984][client34.84.104.70:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"/etc/passwd\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"141\"][id\"347009\"][rev\"1\"][msg\"Atomicorp.comWAFRules:ProtectedFileaccessdenied\"][severity\"CRITICAL\"][hostname\"tourkomanis.ch\"][uri\"/@fs/etc/passwd\"][unique_id\"apE8kIlVzC8HBKZQQGEzIAAAAM4\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-08-28 06:28:20
(10 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.84.104.70 (JP/Japan/70.104.84.34.bc.googleus ...
show more
(mod_security) mod_security (id:949110) triggered by 34.84.104.70 (JP/Japan/70.104.84.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:06:15
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:06:06.297578 2026] [security2:error] [pid 12357:tid 12357] [client 34.84.104.70:2218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.avanyupublishing.com"] [uri "/@fs/src/.env"] [unique_id "apElTsplxgaqQtxBFJpJnQAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 05:26:11
(11 hours ago)
Bot / seems abusive / Apache connections: 43
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 04:39:35
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 00:39:30.132158 2026] [security2:error] [pid 25461:tid 25461] [client 34.84.104.70:50078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.budpowellbio.com"] [uri "/@fs/root/.env"] [unique_id "apERAla0ac_s0BkhrIqnowAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 04:29:20
(12 hours ago)
apache vulnerability scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 04:19:13
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 00:19:06.332626 2026] [security2:error] [pid 29143:tid 29143] [client 34.84.104.70:18152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.thehealthcontent.com"] [uri "/@fs/.env"] [unique_id "apEMOnUMiF5H8hgjUTZvrwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 03:44:29
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.104.70 (70.104.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 23:44:22.686045 2026] [security2:error] [pid 17812:tid 17812] [client 34.84.104.70:17252] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.qavideo.com"] [uri "/@fs/app/.env"] [unique_id "apEEFne32b-chIdIjSRNNQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack