🇩🇪
enjoyably
2026-09-13 14:21:50
(40 minutes ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-path-traversal-probing
Web App Attack
Hacking
🇧🇪
voormedia
2026-09-13 12:53:55
(2 hours ago)
Accessed trap at '/.env'
Web App Attack
Anonymous
2026-09-13 11:30:16
(3 hours ago)
Portscan: TCP/8443 (6x), TCP/8080 (6x), TCP/443 (4x), TCP/80 (3x)
Port Scan
🇩🇪
enjoyably
2026-09-13 11:16:04
(3 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇳🇱
Mangelot Hosting
2026-09-13 10:57:25
(4 hours ago)
(wp_config_access) srv104 WordPress wp-config Scan 34.102.61.187 (US/United States/187.61.102.34.bc. ...
show more
(wp_config_access) srv104 WordPress wp-config Scan 34.102.61.187 (US/United States/187.61.102.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 10:52:36
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.102.61.187 (187.61.102.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.102.61.187 (187.61.102.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 06:52:29.382938 2026] [security2:error] [pid 16900:tid 17028] [client 34.102.61.187:53242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twinsonderhoud.nl"] [uri "/%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env"] [unique_id "aqaAbYeCMocEVjAXKrMdnAAAApE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-13 10:51:14
(4 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-13 10:25:09
(4 hours ago)
20 attempts against mh-misbehave-ban on milky
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Alt255
2026-09-13 10:15:03
(4 hours ago)
[cb-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.102.61.187 - - [13/Sep/2026:12:15:02 +0200] "GET /__vite_rsc_findSourceMapURL?filename=file:///app/.env&environmentName=rsc HTTP/1.0" 302 6098 "-" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)"
...
show less
Bad Web Bot
Web App Attack
🇳🇱
melroy89
2026-09-13 10:11:55
(4 hours ago)
34.102.61.187 - - [13/Sep/2026:12:11:34 +0200] "GET /z9x8c7v6b5-debug-trigger-moneytips.nl HTTP/2.0 ...
show more
34.102.61.187 - - [13/Sep/2026:12:11:34 +0200] "GET /z9x8c7v6b5-debug-trigger-moneytips.nl HTTP/2.0" 403 93 "-" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)" "moneytips.nl" 0.001
34.102.61.187 - - [13/Sep/2026:12:11:35 +0200] "POST /graphql HTTP/2.0" 403 64 "https://moneytips.nl" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "moneytips.nl" 0.001
34.102.61.187 - - [13/Sep/2026:12:11:35 +0200] "GET /manifest.json HTTP/2.0" 404 667 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "moneytips.nl" 0.007
34.102.61.187 - - [13/Sep/2026:12:11:35 +0200] "GET /assets/manifest.json HTTP/2.0" 403 64 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "moneytips.nl" 0.001
34.102.61.187 - - [13/Sep/2026:12:11:35 +0200] "POST /api/graphql HTTP/2.0" 403 64 "https://mo
...
show less
Web App Attack
Anonymous
2026-09-13 10:07:07
(4 hours ago)
Auto-reported by Fail2Ban (NPM-Auth)
Web App Attack
🇳🇱
Savvii
2026-09-13 10:06:21
(4 hours ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
larse99
2026-09-13 10:01:42
(5 hours ago)
Detected Scanning / Hacking activity
Port Scan
Hacking
🇩🇪
abuse-detection
2026-09-13 09:56:16
(5 hours ago)
Security detection: http-path-traversal-probing
Web App Attack
🇫🇷
Alt255
2026-09-13 09:40:50
(5 hours ago)
[cb-02al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail ngin ...
show more
[cb-02al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail nginx-404. Example: 34.102.61.187 - - [13/Sep/2026:11:40:42 +0200] "GET /assets/manifest.json HTTP/1.1" 404 14364 "https://gekvanfietsen.nl/assets/manifest.json" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"
34.102.61.187 - - [13/Sep/2026:11:40:42 +0200] "GET /z9x8c7v6b5-debug-trigger-gekvanfietsen.nl HTTP/1.1" 404 14365 "https://gekvanfietsen.nl/z9x8c7v6b5-debug-trigger-gekvanfietsen.nl" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
34.102.61.187 - - [13/Sep/2026:11:40:42 +0200] "GET /key.pem HTTP/1.1" 404 14364 "https://gekvanfietsen.nl/key.pem" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
34.102.61.187 - - [13/Sep/2026:11:40:42 +0200] "GET /webpack-stats.json HTTP/1.1" 404 14365 "https:/
...
show less
Bad Web Bot
Web App Attack