๐ซ๐ฎ
paissangroup
2026-08-22 14:02:10
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 13:23:52
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 74.208.248.90 (ip74-208-248-90.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.248.90 (ip74-208-248-90.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 09:23:44.273939 2026] [security2:error] [pid 9770:tid 9770] [client 74.208.248.90:55172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "toppress.ca"] [uri "/.env"] [unique_id "aomi4DA8wy21h6KpdDKdQAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-08-22 13:10:34
(2 hours ago)
Blocked by Conn-Monitor: http-bad-user-agent
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-22 11:28:45
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 74.208.248.90 (ip74-208-248-90.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.248.90 (ip74-208-248-90.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:28:37.332121 2026] [security2:error] [pid 25533:tid 25533] [client 74.208.248.90:59126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ricketyshack.ca"] [uri "/.env"] [unique_id "aomH5fK1Qlqouf5HC9Du1wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 00:21:38
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 74.208.248.90 (ip74-208-248-90.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.248.90 (ip74-208-248-90.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 20:21:31.693654 2026] [security2:error] [pid 24802:tid 24802] [client 74.208.248.90:64584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kirklandplumbing.ca"] [uri "/.env"] [unique_id "aojri7rBi3g4B0XCQLG48gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
internetworld
2026-08-21 23:46:54
(15 hours ago)
internetworld-prod-01 Fail2Ban ban. Jail=nginx-web-probe-iw. Sanitized automatic report from interne ...
show more
internetworld-prod-01 Fail2Ban ban. Jail=nginx-web-probe-iw. Sanitized automatic report from internetworld.ca server security monitoring.
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 19:40:56
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 74.208.248.90 (ip74-208-248-90.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.248.90 (ip74-208-248-90.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 15:40:52.640726 2026] [security2:error] [pid 32622:tid 32622] [client 74.208.248.90:55060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "belmontsprings.ca"] [uri "/.env"] [unique_id "aoipxMM41RHXBXsRZ_RxywAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-08-21 19:35:51
(19 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based)
Hacking
Web App Attack
Anonymous
2026-08-21 19:24:08
(20 hours ago)
Automatically blocked after 2 security events. Observed sensitive configuration-file probes. Source: ...
show more
Automatically blocked after 2 security events. Observed sensitive configuration-file probes. Source: Cloudflare security controls.
show less
Hacking
Web App Attack
๐ฌ๐ง
abivia
2026-08-21 17:43:33
(21 hours ago)
Abivia WAF trigger: Rule staticSite: Request PHP file on a static site. uri: /config.php
Hacking
Web App Attack
๐จ๐ฆ
Mediashaker
2026-08-21 17:06:04
(22 hours ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 74.208.248.90 (US/United ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 74.208.248.90 (US/United States/ip74-208-248-90.pbiaas.com)
show less
Port Scan
๐จ๐ฆ
internetworld
2026-08-21 15:04:17
(1 day ago)
74.208.248.90 - - [21/Aug/2026:15:04:16 +0000] "GET /.env HTTP/1.1" 200 326 "-" "SecretScanner/2.0 ( ...
show more
74.208.248.90 - - [21/Aug/2026:15:04:16 +0000] "GET /.env HTTP/1.1" 200 326 "-" "SecretScanner/2.0 (authorized security audit; HTTPS-only; TLS verified)"
...
show less
Bad Web Bot
Web App Attack