🇺🇸
TPI-Abuse
2026-09-06 03:51:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.217.176 (176.217.88.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.217.176 (176.217.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:50:57.059645 2026] [security2:error] [pid 19954:tid 19954] [client 34.88.217.176:50748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.title40.com"] [uri "/wp-config.php~"] [unique_id "apzjIf7y8PaPW9vQoHmAhwAAADU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:30:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.217.176 (176.217.88.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.217.176 (176.217.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:30:07.059735 2026] [security2:error] [pid 12224:tid 12224] [client 34.88.217.176:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cdn-4.socialstudiesforkids.com"] [uri "/.env.dev"] [unique_id "apzeP-92S8fwy0o-0KMZ5QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:10:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.217.176 (176.217.88.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.217.176 (176.217.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:10:10.425930 2026] [security2:error] [pid 7019:tid 7019] [client 34.88.217.176:44552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mymclife.com"] [uri "/.env.zip"] [unique_id "apzZkogxdB_ia44jEbwEvQAAAEs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-06 02:41:14
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-06 02:15:03
(1 day ago)
suspicious request in access.log
Web App Attack
🇳🇱
e.fierstra
2026-09-06 01:51:23
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇷🇺
DZBOT
2026-09-06 01:49:31
(1 day ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
🇩🇪
Lino Project
2026-09-06 01:33:53
(1 day ago)
CrowdSec abuse IP report (host SRV-2) Scenario: crowdsecurity/http-sensitive-files
Hacking
🇺🇸
TPI-Abuse
2026-09-06 01:08:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.217.176 (176.217.88.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.217.176 (176.217.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:08:10.640746 2026] [security2:error] [pid 7587:tid 7587] [client 34.88.217.176:53836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.bigholegolf.com"] [uri "/.env.bak"] [unique_id "apy8-g_gIl-QL1DcjGgb_AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
webanyone
2026-09-06 01:01:34
(1 day ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
🇲🇾
Rizzy
2026-09-06 00:36:18
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇩🇪
webanyone
2026-09-06 00:32:37
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇩🇪
LRob
2026-09-06 00:32:31
(1 day ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.env (+6 more) | 2026-09-06 00:32 UTC
show less
Hacking
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-05 23:54:33
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.88.217.176 (FI/Finland/176.217.88.34.bc.goog ...
show more
(mod_security) mod_security (id:949110) triggered by 34.88.217.176 (FI/Finland/176.217.88.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
Anonymous
2026-09-05 22:57:03
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack