๐ฌ๐ง
Aetherweb Ark
2026-09-01 11:16:17
(9 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.85.196.92 (US/United States/92.196.85.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.85.196.92 (US/United States/92.196.85.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
MatCat
2026-09-01 11:05:08
(9 hours ago)
Banned by fail2ban: apache-webprobe
Port Scan
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-01 11:03:45
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:03:42.130888 2026] [security2:error] [pid 14536:tid 14536] [client 34.85.196.92:35970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "warriorspringranch.soviaenterprises.com"] [uri "/.env.bak"] [unique_id "apaxDvrtP_Jgk7KyddhHswAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
YF
2026-09-01 11:00:20
(9 hours ago)
WordPress config file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:02:55
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:02:47.082045 2026] [security2:error] [pid 27716:tid 27716] [client 34.85.196.92:38258] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "firstampersand.kathiehazlett.com"] [uri "/.env.production"] [unique_id "apaixwkuxkVDBwRjJuR7ygAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 09:43:36
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:43:30.962237 2026] [security2:error] [pid 23400:tid 23400] [client 34.85.196.92:55004] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "skipandcarol.garretthillary.com"] [uri "/wp-config.php.swp"] [unique_id "apaeQgVto-P05Yuvz0Xn4QAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-01 09:35:05
(10 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
Anonymous
2026-09-01 09:33:51
(10 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 08:45:22
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 04:45:14.009977 2026] [security2:error] [pid 26721:tid 26721] [client 34.85.196.92:39268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shellyfamily.com"] [uri "/wp-config.php~"] [unique_id "apaQmn0bu6G9t7kzR38HcwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Epimetheus
2026-09-01 07:24:07
(12 hours ago)
Unauthorized access attempts:
[GET] /.env.
[GET] /.env;.png
[GET] /%2eenv
[GET] //.env
[GET] /.env/ ...
show more
Unauthorized access attempts:
[GET] /.env.
[GET] /.env;.png
[GET] /%2eenv
[GET] //.env
[GET] /.env/
[GET] /.ENV
[GET] /.env.prod
[GET] /.env.dev
[GET] /wp-config.php.bak
[GET] /.env.save
[GET] /.env.local
[GET] /actuator/env
[GET] /.env.production
[GET] /.env.backup
[GET] /.env.example
[GET] /.env.bak
[GET] /_ignition/health-check
[GET] /wp-config.php.swp
[GET] /actuator/configprops
[GET] /.env.old
[GET] /crusader-404-probe
[GET] /.env
[GET] /storage/logs/laravel.log
UA: crusader-worker/1.0
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-09-01 07:18:41
(13 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:31:24
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:31:16.115798 2026] [security2:error] [pid 20729:tid 20729] [client 34.85.196.92:52246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "starfrontiers.f4fbbs.com"] [uri "/.env.old"] [unique_id "apZxNI-LP7dksmQI2EFjUgAAAGA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:06:44
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.196.92 (92.196.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:06:36.726080 2026] [security2:error] [pid 17785:tid 17785] [client 34.85.196.92:38414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.braintechsoftwaresolutions.com"] [uri "/.env.old"] [unique_id "apZrbCDp6aG7D0VUj8f3fwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-09-01 05:44:17
(14 hours ago)
(y3) Failed access -byebye- from 34.85.196.92 (US/United States/92.196.85.34.bc.googleusercontent.co ...
show more
(y3) Failed access -byebye- from 34.85.196.92 (US/United States/92.196.85.34.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
๐ซ๐ท
dynamix
2026-09-01 05:07:59
(15 hours ago)
Multiple WAF Violations
Web App Attack