🇺🇸
TPI-Abuse
2026-09-04 14:52:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.106.162 (162.106.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.106.162 (162.106.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:52:26.742322 2026] [security2:error] [pid 9115:tid 9115] [client 34.97.106.162:47868] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "platformintelligence.com"] [uri "/.env.prod"] [unique_id "aprbKnycRcb4QL4vTj943gAAAHU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 14:48:34
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇮🇪
AutosOnShow
2026-09-04 13:57:05
(1 day ago)
blocked for webapp attack | path requested: / | seen at 2026-09-04 13:56:41.539 |
Web App Attack
🇩🇪
raph
2026-09-04 13:27:51
(1 day ago)
[Wordpress] crawler /wp-admin/*, /wp-content/*, etc.
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-04 13:19:21
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 12:55:16
(1 day ago)
(config_exploit_scan) Configuratie Scanner / Nep GPTBot 34.97.106.162 (JP/Japan/162.106.97.34.bc.goo ...
show more
(config_exploit_scan) Configuratie Scanner / Nep GPTBot 34.97.106.162 (JP/Japan/162.106.97.34.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.97.106.162 - - [04/Sep/2026:14:55:15 +0200] "GET /.env.production HTTP/1.1" 406 4829 "-" "crusader-worker/1.0"
34.97.106.162 - - [04/Sep/2026:14:55:15 +0200] "GET /.env.dev HTTP/1.1" 406 4830 "-" "crusader-worker/1.0"
34.97.106.162 - - [04/Sep/2026:14:55:15 +0200] "GET /.env.old HTTP/1.1" 406 4830 "-" "crusader-worker/1.0"
show less
Port Scan
Anonymous
2026-09-04 12:17:25
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:25:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.106.162 (162.106.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.106.162 (162.106.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:24:57.108945 2026] [security2:error] [pid 10868:tid 10868] [client 34.97.106.162:56464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "secretbureau.net.virtualvideo.org"] [uri "/.env.local"] [unique_id "apqqiQGRCK_AQF85FXoS8AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
voormedia
2026-09-04 11:24:01
(1 day ago)
Accessed trap at '/.env'
Web App Attack
🇮🇹
VHosting
2026-09-04 11:00:05
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 10:58:07
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.97.106.162 (162.106.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.97.106.162 (162.106.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:57:57.603343 2026] [security2:error] [pid 23159:tid 23159] [client 34.97.106.162:48512] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bitcoinbtcshop.usaangelinvestors.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bitcoinbtcshop.usaangelinvestors.com"] [uri "/storage/logs/laravel.log"] [unique_id "apqkNYobMG5e76rOtfesdAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 10:53:23
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking