๐บ๐ธ
TPI-Abuse
2026-09-16 08:16:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 04:16:52.637587 2026] [security2:error] [pid 27659:tid 27677] [client 34.84.97.12:52250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "moderncabinetcorp.com"] [uri "/.env"] [unique_id "aqpQdCYJR2YYOKAb5EoSRQAAAAs"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-16 01:55:35
(2 days ago)
34.84.97.12 - - [15/Sep/2026:21:55:34 -0400] "GET /.env HTTP/1.1" 301 162 "https://www.google.com/" ...
show more
34.84.97.12 - - [15/Sep/2026:21:55:34 -0400] "GET /.env HTTP/1.1" 301 162 "https://www.google.com/" "Mozilla/5.0 (Windows; U; MSIE 6.1; Linux i386; .NET CLR 2.2.1402; X11)"
34.84.97.12 - - [15/Sep/2026:21:55:34 -0400] "GET /.env HTTP/1.1" 301 4867 "https://www.google.com/" "Mozilla/5.0 (Windows; U; MSIE 6.1; Linux i386; .NET CLR 2.2.1402; X11)"
34.84.97.12 - - [15/Sep/2026:21:55:35 -0400] "GET /.env HTTP/1.1" 404 50540 "https://www.google.com/" "Mozilla/5.0 (Windows; U; MSIE 6.1; Linux i386; .NET CLR 2.2.1402; X11)"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 21:35:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:35:09.599271 2026] [security2:error] [pid 21645:tid 21645] [client 34.84.97.12:42580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "holisticbx.com"] [uri "/.env"] [unique_id "aqm6DWgmNcVIxlMIpvbOjAAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Phenix Info
2026-09-15 21:14:14
(2 days ago)
SmallGuard.fr/Prestashop Forbidden Ext.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 18:04:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:04:15.697208 2026] [security2:error] [pid 29379:tid 29379] [client 34.84.97.12:55646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elizabeth-furlow.com"] [uri "/.env"] [unique_id "aqmInyOL4UL_0TIFc25BTAAAAAo"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
IRISIO
2026-09-15 15:17:21
(2 days ago)
scans/SQL injection/spam posts : 69 queries
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-15 14:07:44
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 10:07:36.728278 2026] [security2:error] [pid 11200:tid 11200] [client 34.84.97.12:37930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "canfieldnyc.com"] [uri "/.env"] [unique_id "aqlRKKY0J8Cu-UmouRfVpQAAAAs"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:50:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.97.12 (12.97.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:50:07.554486 2026] [security2:error] [pid 9704:tid 9704] [client 34.84.97.12:57454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "backtosleep.com"] [uri "/.env"] [unique_id "aqk-_5GXPC2UpfalEmzaRQAAAAE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 11:30:09
(2 days ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
grassau.com
2026-09-15 08:04:04
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.84.97.12 (JP/Japan/Tokyo/Tokyo/12.97 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.84.97.12 (JP/Japan/Tokyo/Tokyo/12.97.84.34.bc.googleusercontent.com)
show less
SQL Injection