๐ฎ๐ฉ
Burayot
2026-08-29 03:05:46
(3 hours ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.9.111.247 (US/United States/247.1 ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.9.111.247 (US/United States/247.111.9.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐ซ๐ท
pm33
2026-08-29 03:05:23
(3 hours ago)
Unauthorized connections HTTP 403
Web App Attack
๐ต๐ฑ
lns.bz
2026-08-29 02:59:19
(4 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ฉ๐ช
Nevermind
2026-08-29 02:51:18
(4 hours ago)
34.9.111.247 - - [29/Aug/2026:04:51:17 +0200] "GET /wp-config.php.bak HTTP/1.1" 403 6277 "-" "crusad ...
show more
34.9.111.247 - - [29/Aug/2026:04:51:17 +0200] "GET /wp-config.php.bak HTTP/1.1" 403 6277 "-" "crusader-worker/1.0"
34.9.111.247 - - [29/Aug/2026:04:51:17 +0200] "GET /.env.local HTTP/1.1" 403 6277 "-" "crusader-worker/1.0"
34.9.111.247 - - [29/Aug/2026:04:51:17 +0200] "GET /.env.backup HTTP/1.1" 403 6277 "-" "crusader-worker/1.0"
34.9.111.247 - - [29/Aug/2026:04:51:17 +0200] "GET /.env.old HTTP/1.1" 403 6277 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 02:35:17
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.9.111.247 (247.111.9.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.9.111.247 (247.111.9.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 22:35:13.482696 2026] [security2:error] [pid 18384:tid 18384] [client 34.9.111.247:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mindmaterial.io"] [uri "/.env.production"] [unique_id "apJFYaukxsIfZd63JkJdBAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-29 02:17:03
(4 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-08-29 02:12:22
(4 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based)
Hacking
Web App Attack
๐บ๐ธ
SLSLLC
2026-08-29 02:06:13
(4 hours ago)
34.9.111.247 - - [29/Aug/2026:02:06:12 +0000] "GET /.env.production HTTP/2.0" 403 1927 "-" "crusader ...
show more
34.9.111.247 - - [29/Aug/2026:02:06:12 +0000] "GET /.env.production HTTP/2.0" 403 1927 "-" "crusader-worker/1.0"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 01:14:02
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.9.111.247 (247.111.9.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.9.111.247 (247.111.9.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:13:57.076863 2026] [security2:error] [pid 31755:tid 31755] [client 34.9.111.247:51666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jaglady.com"] [uri "/.env.bak"] [unique_id "apIyVbHQz0x1g1EaVD316gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-29 00:39:21
(6 hours ago)
[29/Aug/2026:03:39:20 +0300] -- 34.9.111.247 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env. ...
show more
[29/Aug/2026:03:39:20 +0300] -- 34.9.111.247 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.local HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 23:48:16
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.9.111.247 (247.111.9.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.9.111.247 (247.111.9.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:48:12.700455 2026] [security2:error] [pid 10795:tid 10795] [client 34.9.111.247:43976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.letyourlightshineout.systemcapacityoptimization.com"] [uri "/.env.prod"] [unique_id "apIePIB3sXlvKB3VlBc42gAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 22:29:48
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.9.111.247 (247.111.9.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.9.111.247 (247.111.9.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 18:29:43.712789 2026] [security2:error] [pid 15563:tid 15664] [client 34.9.111.247:53112] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lifecoachcertification.com.aafm.us"] [uri "/.env.production"] [unique_id "apIL13tIy-OXlO6WUSQqsQAAAYI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-08-28 21:40:08
(9 hours ago)
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-08-28 21:18:51
(9 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฎ๐น
CoreTech srl
2026-08-28 21:13:57
(9 hours ago)
cloudlinux2 fail2ban: 2026-08-28 23:09:46,391 fail2ban.actions [1478]: NOTICE [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-28 23:09:46,391 fail2ban.actions [1478]: NOTICE [plesk-modsecurity] Unban 34.26.199.108cloudlinux2 fail2ban: 2026-08-28 23:10:19,840 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.9.111.247 - 2026-08-28 23:10:19cloudlinux2 fail2ban: 2026-08-28 23:10:19,802 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.9.111.247 - 2026-08-28 23:10:19cloudlinux2 fail2ban: 2026-08-28 23:10:19,876 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.9.111.247 - 2026-08-28 23:10:19cloudlinux2 fail2ban: 2026-08-28 23:10:19,893 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.9.111.247 - 2026-08-28 23:10:19cloudlinux2 fail2ban: 2026-08-28 23:10:19,832 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.9.111.247 - 2026-08-28 23:10:19cloudlinux2 fail2ban: 2026-08-28 23:10:19,860 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.9.111.247 - 2026-08-28 23:10:19cloudlinux2 fail2ban: 2
show less
Brute-Force