🇺🇸
TPI-Abuse
2026-09-04 04:07:28
(35 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.241.242.72 (72.242.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.242.72 (72.242.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:07:19.735374 2026] [security2:error] [pid 12416:tid 12416] [client 35.241.242.72:37924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mcacpas.com"] [uri "/@fs/.env"] [unique_id "appD90T_nA3gR8_-lQ3L7AAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-04 03:16:35
(1 hour ago)
Restricted File Access Attempt. Matched phrase "/@fs/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 03:10:38
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.241.242.72 (72.242.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.242.72 (72.242.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 23:10:33.579012 2026] [security2:error] [pid 16955:tid 16955] [client 35.241.242.72:50316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garagemensministry.michaelsabbey.org"] [uri "/@fs/root/.env"] [unique_id "apo2qcDEgS7aPi-Qo94mgQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-04 02:09:46
(2 hours ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:User-Agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:User-Agent. (1100000-131)
show less
Bad Web Bot
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 01:55:15
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-path-traversal-probing
Web App Attack
Hacking
🇳🇱
e.fierstra
2026-09-04 01:00:50
(3 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇪🇸
alferez
2026-09-04 00:33:00
(4 hours ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 00:09:29
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.242.72 (72.242.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.242.72 (72.242.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 20:09:26.173722 2026] [security2:error] [pid 4065:tid 4065] [client 35.241.242.72:7108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.souldata.com"] [uri "/@fs/.env"] [unique_id "apoMNvcip9BOs4f7hmA-fAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 23:45:59
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.242.72 (72.242.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.242.72 (72.242.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 19:45:55.542905 2026] [security2:error] [pid 16137:tid 16137] [client 35.241.242.72:10510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.winningwithstatistics.banis-associates.com"] [uri "/@fs/../.env"] [unique_id "apoGs7GoqT4aUK1ObVkZhQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
raph
2026-09-03 23:23:26
(5 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-03 23:15:35
(5 hours ago)
8.494 requests from abuseipdb.com blacklisted IP (1yr2mos3w)
Brute-Force
Bad Web Bot
🇨🇭
zynex
2026-09-03 22:01:54
(6 hours ago)
URL Probing: /@fs/src/.env
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-03 22:00:33
(6 hours ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
🇸🇪
vaia.cloud
2026-09-03 21:15:02
(7 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
Anonymous
2026-09-03 21:04:30
(7 hours ago)
Aggressive web scan
Web App Attack