๐ณ๐ฑ
Savvii
2026-09-16 08:51:51
(7 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 08:23:05
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 04:22:58.880589 2026] [security2:error] [pid 21697:tid 21697] [client 8.230.4.31:34522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nedelam.com"] [uri "/.env"] [unique_id "aqpR4kWF1x9beVpgJFURngAAABg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
LoneRider
2026-09-16 08:13:13
(8 hours ago)
[16/Sep/2026:10:13:10.394671 +0200] aqpPluycWkoKLBGNTFFbdQAAAAY 8.230.4.31 56268 127.0.0.1 7081
[16/ ...
show more
[16/Sep/2026:10:13:10.394671 +0200] aqpPluycWkoKLBGNTFFbdQAAAAY 8.230.4.31 56268 127.0.0.1 7081
[16/Sep/2026:10:13:12.836476 +0200] aqpPmBzRU9RrTf_PhWIg-QAAAAk 8.230.4.31 56304 127.0.0.1 7081
[16/Sep/2026:10:13:13.294833 +0200] aqpPmQZqTQcfYH-FjyaCgAAAAAA 8.230.4.31 56306 127.0.0.1 7081
...
show less
Hacking
๐ง๐ช
taivas.nl
2026-09-16 04:34:28
(12 hours ago)
Many_bad_calls
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 02:14:35
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:14:27.845944 2026] [security2:error] [pid 18857:tid 18857] [client 8.230.4.31:53800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "markrikey.com"] [uri "/.env"] [unique_id "aqn7g6nVpTxt70J7TZuzNgAAAAA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 21:52:06
(18 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-15 21:10:27
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:10:22.749836 2026] [security2:error] [pid 19565:tid 19565] [client 8.230.4.31:51060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "inmosantanora.com"] [uri "/.env"] [unique_id "aqm0PoO-tNqNVHE09iIAOAAAAAI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 19:11:21
(21 hours ago)
Multiple WAF Violations
Web App Attack
๐ฆ๐บ
A.i.D.A.N.N
2026-09-15 17:19:37
(23 hours ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web application attack detected
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-15 15:13:57
(1 day ago)
cloudlinux2 fail2ban: 2026-09-15 17:09:29,986 fail2ban.filter [1908]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-15 17:09:29,986 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 136.108.79.99 - 2026-09-15 17:09:29cloudlinux2 fail2ban: 2026-09-15 17:09:38,115 fail2ban.actions [1908]: NOTICE [plesk-modsecurity] Unban 35.196.194.248cloudlinux2 fail2ban: 2026-09-15 17:09:43,152 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 8.230.4.31 - 2026-09-15 17:09:43cloudlinux2 fail2ban: 2026-09-15 17:09:54,748 fail2ban.actions [1908]: NOTICE [plesk-modsecurity] Ban 8.230.4.31cloudlinux2 fail2ban: 2026-09-15 17:09:49,158 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 8.230.4.31 - 2026-09-15 17:09:49cloudlinux2 fail2ban: 2026-09-15 17:09:54,755 fail2ban.filter [1908]: INFO [recidive] Found 8.230.4.31 - 2026-09-15 17:09:54cloudlinux2 fail2ban: 2026-09-15 17:09:54,383 fail2ban.filter [1908]: INFO [plesk-modsecurity] Found 8.230.4.31 - 2026-09-15 17:09:54cloudlinux2 fail2ban: 2026-09-15 17:12:00,157 fail2ban.filter
show less
Brute-Force
๐ง๐ช
taivas.nl
2026-09-15 15:02:20
(1 day ago)
Bad_requests
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-15 14:49:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 10:49:14.894365 2026] [security2:error] [pid 26841:tid 26841] [client 8.230.4.31:59264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clambakebeachhouse.com"] [uri "/.env"] [unique_id "aqla6gnKc2AD8FKdj4ID3AAAABc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-15 14:48:31
(1 day ago)
8.230.4.31 - - [15/Sep/2026:10:48:28 -0400] "GET /.env HTTP/1.1" 500 5338 "https://www.google.com/" ...
show more
8.230.4.31 - - [15/Sep/2026:10:48:28 -0400] "GET /.env HTTP/1.1" 500 5338 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_6_4) Gecko/20010411 Firefox/14.0"
8.230.4.31 - - [15/Sep/2026:10:48:30 -0400] "GET //vendor/.env HTTP/1.1" 404 5753 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_6_4) Gecko/20010411 Firefox/14.0"
8.230.4.31 - - [15/Sep/2026:10:48:30 -0400] "GET //lib/.env HTTP/1.1" 404 5753 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_6_4) Gecko/20010411 Firefox/14.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 12:55:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:55:14.646639 2026] [security2:error] [pid 23701:tid 23701] [client 8.230.4.31:54288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blairsmasterplan.com"] [uri "/.env"] [unique_id "aqlAMhlzN84rgFroJkHvfAAAAAo"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:31:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 8.230.4.31 (31.4.230.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:30:56.497706 2026] [security2:error] [pid 9703:tid 9703] [client 8.230.4.31:53298] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lunchtimers.org"] [uri "/.env"] [unique_id "aqkscFV2e2OlesoenPH7dAAAABY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack