๐บ๐ธ
Epimetheus
2026-09-01 13:32:07
(3 hours ago)
Unauthorized access attempts:
[GET] /.env.backup1
[GET] /dashboard/.env
[GET] /resources/.env
[GET] ...
show more
Unauthorized access attempts:
[GET] /.env.backup1
[GET] /dashboard/.env
[GET] /resources/.env
[GET] /wordpress/.env
[GET] /public_html/.env
[GET] /build/.env
[GET] /private/.env
[GET] /.env.yaml
[GET] /.env.txt
[GET] /.env.live
[GET] /.env.remote
[GET] /.env.staging
[GET] /.env
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 12:53:42
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 08:53:38.787609 2026] [security2:error] [pid 19173:tid 19176] [client 34.88.118.87:47238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "track.ahsdistance.org"] [uri "/.git/config"] [unique_id "apbK0lZdz3J7hXCaQ9bpywAAAUE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 12:02:54
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 08:02:49.951085 2026] [security2:error] [pid 4031:tid 4054] [client 34.88.118.87:36746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "traceyschaper.com"] [uri "/.git/config"] [unique_id "apa-6VRhYWwYeDsFkLv1pwAAAUo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-09-01 11:32:16
(5 hours ago)
Aggressive web search of vulnerable pages: / /.env /.env.local /app/.env /apps/.env ...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:30:40
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:30:36.904603 2026] [security2:error] [pid 32086:tid 32086] [client 34.88.118.87:50960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tracdynamics.com"] [uri "/.git/config"] [unique_id "apapTALicUCgWMarky1awwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 09:16:02
(7 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ฆ๐บ
FireGuard Server
2026-09-01 09:10:07
(7 hours ago)
Blocked by os-abuseipdb; 3 hits, proto=tcp, ports=443
Port Scan
Hacking
๐ณ๐ฑ
tr1n
2026-09-01 08:35:54
(8 hours ago)
Triggered Cloudflare WAF (firewallCustom) from FI.
Action: BLOCK | ASN: 396982 (Google LLC) | Protoc ...
show more
Triggered Cloudflare WAF (firewallCustom) from FI.
Action: BLOCK | ASN: 396982 (Google LLC) | Protocol: HTTP/1.1 (GET) | Endpoint: /wp-admin/phpinfo.php | Timestamp: 2026-09-01T08:35:54Z | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-31 14:54:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 10:54:48.108011 2026] [security2:error] [pid 17259:tid 17259] [client 34.88.118.87:56084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twtcsl.com"] [uri "/.git/config"] [unique_id "apWVuPcrmjvWBTZbWxA3FQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 14:34:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 10:34:17.820881 2026] [security2:error] [pid 11960:tid 11960] [client 34.88.118.87:52344] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twowayinc.us"] [uri "/.git/config"] [unique_id "apWQ6a-j39tlj-C5qQ8FEAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-08-31 13:17:29
(1 day ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/87.118.88.34.bc.googleusercontent ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/87.118.88.34.bc.googleusercontent.com
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 11:13:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 07:13:46.800139 2026] [security2:error] [pid 13441:tid 13441] [client 34.88.118.87:60108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twilighthackers.com"] [uri "/.git/config"] [unique_id "apVh6rrr77eKh99E7LIJRgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 10:38:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:38:37.841736 2026] [security2:error] [pid 29990:tid 29990] [client 34.88.118.87:47506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twentytwocreative.net"] [uri "/.git/config"] [unique_id "apVZrVTVHn5JIdYN-T581QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-31 09:55:53
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-31 09:33:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.118.87 (87.118.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 05:33:02.087281 2026] [security2:error] [pid 29567:tid 29567] [client 34.88.118.87:51026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twangcaster.com"] [uri "/.git/config"] [unique_id "apVKTkvfmmags1keGDrr6AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack