๐ฌ๐ง
openstrike.co.uk
2026-09-16 05:14:04
(3 days ago)
30 attacks on PHP URLs:
POST //www/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:54:46
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:54:38.539775 2026] [security2:error] [pid 20229:tid 20229] [client 34.93.226.88:48466] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hawkeyeibp.com"] [uri "/.env"] [unique_id "aqmifmFM0jhine0sekUbeAAAAAw"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 15:47:57
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 11:47:51.044929 2026] [security2:error] [pid 28693:tid 28713] [client 34.93.226.88:36258] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dulemba.com"] [uri "/.env"] [unique_id "aqlopxwn11hZXOoB9NBBxwAAABE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 15:40:02
(4 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 14:40:29
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 10:40:23.718951 2026] [security2:error] [pid 5353:tid 5353] [client 34.93.226.88:39660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "consolidatedoperationsgroup.com"] [uri "/.env"] [unique_id "aqlY19wN8QvF_ScO5ufkxwAAAAI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-15 14:20:57
(4 days ago)
34.93.226.88 - - [15/Sep/2026:10:20:56 -0400] "GET /.env HTTP/1.1" 403 6300 "https://www.google.com/ ...
show more
34.93.226.88 - - [15/Sep/2026:10:20:56 -0400] "GET /.env HTTP/1.1" 403 6300 "https://www.google.com/" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) Gecko/20012909 Firefox/17.0"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 14:02:55
(4 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:40:06
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:39:57.832131 2026] [security2:error] [pid 3521:tid 3521] [client 34.93.226.88:42690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brinkworthdungeon.com"] [uri "/.env"] [unique_id "aqk8nVeGB9YO1ss6SycD_wAAAA4"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:30:07
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:30:00.595974 2026] [security2:error] [pid 5860:tid 5860] [client 34.93.226.88:41908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "raysolemfund.org"] [uri "/.env"] [unique_id "aqksOMoVB97XNC7Cp3RdfQAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 10:35:24
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.226.88 (88.226.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 06:35:16.106340 2026] [security2:error] [pid 793287:tid 793287] [client 34.93.226.88:48770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "raumschach.org"] [uri "/.env"] [unique_id "aqkfZLonnaxrSQLb2OKPHQAAAAE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Yosi
2026-09-15 04:25:50
(4 days ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force