๐ฉ๐ช
big-cloud.nl
2026-10-07 00:59:09
(3 days ago)
Try to access /api/.env
Web App Attack
๐ซ๐ท
Vaction
2026-10-06 19:12:48
(3 days ago)
104.234.32.30 - - [06/Oct/2026:21:12:47 +0200] "GET /web/api/config.js HTTP/1.1" 404 437 "-" "Mozill ...
show more
104.234.32.30 - - [06/Oct/2026:21:12:47 +0200] "GET /web/api/config.js HTTP/1.1" 404 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:106.0) Gecko/20100101 Firefox/106.0"
show less
Hacking
Bad Web Bot
Web App Attack
๐ช๐ธ
librebit
2026-10-05 15:17:37
(4 days ago)
Brute force
Brute-Force
๐ช๐ธ
librebit
2026-10-03 06:56:46
(1 week ago)
Brute force
Brute-Force
๐ฎ๐ฉ
MirrorMaster
2026-09-22 17:05:53
(2 weeks ago)
Port Scan
Web App Attack
Bad Web Bot
๐ฒ๐น
Malta
2026-09-22 12:24:44
(2 weeks ago)
104.234.32.30 - - [22/Sep/2026:14:24:44 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Linu ...
show more
104.234.32.30 - - [22/Sep/2026:14:24:44 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.107 Safari/537.36"
show less
Hacking
Web App Attack
VPN IP
๐ฉ๐ช
Melle
2026-07-02 09:03:29
(3 months ago)
Blocked by CrowdSec | Scenario: crowdsecurity/http-probing | 104.234.32.30 triggered 12 events | Det ...
show more
Blocked by CrowdSec | Scenario: crowdsecurity/http-probing | 104.234.32.30 triggered 12 events | Detected: 2026-07-02T09:03:13.94599844Z
show less
Web App Attack
Hacking
Anonymous
2026-04-24 17:56:20
(5 months ago)
Failed Wordpress Logins
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-04-07 01:35:56
(6 months ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
CA/Canada/-
Web App Attack
๐ฉ๐ช
Marc
2026-03-16 06:17:39
(6 months ago)
Brute-Force
๐ณ๐ฑ
Pornomens
2026-02-09 17:59:40
(8 months ago)
104.234.32.30 - - [09/Feb/2026:18:57:55 +0100] "GET / HTTP/1.1" 403 4001 "-" "Mozilla/5.0 (Macintosh ...
show more
104.234.32.30 - - [09/Feb/2026:18:57:55 +0100] "GET / HTTP/1.1" 403 4001 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
104.234.32.30 - - [09/Feb/2026:18:58:34 +0100] "GET /.env.old HTTP/1.1" 403 4001 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:105.0) Gecko/20100101 Firefox/105.0"
104.234.32.30 - - [09/Feb/2026:18:59:40 +0100] "GET /sftp-config.json HTTP/1.1" 403 473 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-03 17:37:15
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 12:37:05.993250 2026] [security2:error] [pid 19021:tid 19021] [client 104.234.32.30:46111] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.57"] [uri "/wp-admin/.env"] [unique_id "aYIyQSdjg2ko3mIYTSe6rAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-03 15:39:13
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 10:39:09.354675 2026] [security2:error] [pid 25021:tid 25021] [client 104.234.32.30:53363] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.145"] [uri "/.env"] [unique_id "aYIWnUY_zY_BIoSqjoJqEwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-03 13:53:25
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 08:53:19.951958 2026] [security2:error] [pid 2850842:tid 2850842] [client 104.234.32.30:47479] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.100"] [uri "/.env"] [unique_id "aYH9zz33vpPEmoOoG2m_0AAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-03 10:43:14
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 05:43:07.120130 2026] [security2:error] [pid 3680:tid 3680] [client 104.234.32.30:25945] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.112"] [uri "/.env"] [unique_id "aYHROw5-v-4zIip8r2GE6wAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack