๐บ๐ธ
infra-monitor
2026-08-29 02:00:06
(8 hours ago)
Automated ban via infra-monitor: suspicious-probe, mgmt-path-probe, wordpress-probe, +3 more
Port Scan
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-08-29 01:31:38
(9 hours ago)
(mod_security-custom) mod_security (id:210492) triggered by 34.121.94.23 (US/United States/Iowa/Coun ...
show more
(mod_security-custom) mod_security (id:210492) triggered by 34.121.94.23 (US/United States/Iowa/Council Bluffs/23.94.121.34.bc.googleusercontent.com/[AS396982 GOOGLE-CLOUD-PLATFORM]): 1 in the last 3600 secs (0-srv1)
show less
Hacking
๐ณ๐ฑ
thedreamer.nl
2026-08-29 01:17:29
(9 hours ago)
34.121.94.23 - - [29/Aug/2026:03:16:02 +0200] "GET /.env.backup HTTP/1.1" 499 0 "-" "crusader-worker ...
show more
34.121.94.23 - - [29/Aug/2026:03:16:02 +0200] "GET /.env.backup HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "US" "Council Bluffs" "41.25910" "-95.85170"
34.121.94.23 - - [29/Aug/2026:03:16:02 +0200] "GET /wp-config.php~ HTTP/1.1" 404 146 "-" "crusader-worker/1.0" "US" "Council Bluffs" "41.25910" "-95.85170"
34.121.94.23 - - [29/Aug/2026:03:16:02 +0200] "GET /.env HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "US" "Council Bluffs" "41.25910" "-95.85170"
34.121.94.23 - - [29/Aug/2026:03:16:02 +0200] "GET /.env.old HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "US" "Council Bluffs" "41.25910" "-95.85170"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-08-29 00:39:11
(10 hours ago)
Domain : pleskcontrolpanel
Rule : hack
2026-08-29 00:37:33 79.171.34.32 GET /wp-config.php.bak - 888 ...
show more
Domain : pleskcontrolpanel
Rule : hack
2026-08-29 00:37:33 79.171.34.32 GET /wp-config.php.bak - 8880 - 34.121.94.23 crusader-worker/1.0 - 404 0 2 97 - -
show less
Hacking
SQL Injection
Brute-Force
๐บ๐ธ
mnsf
2026-08-29 00:09:04
(10 hours ago)
Abuse Detected (11)
Brute-Force
Web App Attack
๐ฉ๐ช
Philister11
2026-08-29 00:05:58
(10 hours ago)
CrowdSec: crowdsecurity/http-probing (US/AS396982)
Web App Attack
Hacking
๐ฉ๐ช
Dominik Lysiak
2026-08-28 23:32:46
(11 hours ago)
34.121.94.23 - - [29/Aug/2026:01:32:45 +0200] "GET /.env.example HTTP/1.1" 200 2444 "-" "crusader-wo ...
show more
34.121.94.23 - - [29/Aug/2026:01:32:45 +0200] "GET /.env.example HTTP/1.1" 200 2444 "-" "crusader-worker/1.0"
34.121.94.23 - - [29/Aug/2026:01:32:45 +0200] "GET /.env.save HTTP/1.1" 200 2444 "-" "crusader-worker/1.0"
34.121.94.23 - - [29/Aug/2026:01:32:45 +0200] "GET /.env.production HTTP/1.1" 200 2444 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 23:18:10
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.121.94.23 (23.94.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.94.23 (23.94.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:18:06.810692 2026] [security2:error] [pid 14485:tid 14485] [client 34.121.94.23:49232] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brunswickcemeteries.org"] [uri "/wp-config.php~"] [unique_id "apIXLvjSnLyafzjKtxZFTgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ป๐ณ
trung.fun
2026-08-28 22:18:55
(12 hours ago)
DDoS, Hack, Brute Force, Web Attack
...
DDoS Attack
Web Spam
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
MatCat
2026-08-28 22:05:11
(12 hours ago)
Banned by fail2ban: apache-webprobe
Port Scan
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-28 22:02:01
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.121.94.23 (23.94.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.94.23 (23.94.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 18:01:54.555716 2026] [security2:error] [pid 18043:tid 18043] [client 34.121.94.23:38862] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.frogdesignmexico.com"] [uri "/.env.local"] [unique_id "apIFUg80fkD0gPndVMr_9wAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hary74656
2026-08-28 22:01:11
(12 hours ago)
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3. No raw log data included.
Web App Attack
๐บ๐ธ
entangled_mongoose
2026-08-28 21:01:16
(13 hours ago)
Probed /wp-config.php~.
Web App Attack
Anonymous
2026-08-28 20:55:49
(13 hours ago)
34.121.94.23 - - [28/Aug/2026:22:55:49 +0200] "GET /storage/logs/laravel.log HTTP/1.1" 404 146 "-" " ...
show more
34.121.94.23 - - [28/Aug/2026:22:55:49 +0200] "GET /storage/logs/laravel.log HTTP/1.1" 404 146 "-" "crusader-worker/1.0" "-"
34.121.94.23 - - [28/Aug/2026:22:55:49 +0200] "GET /_ignition/health-check HTTP/1.1" 404 146 "-" "crusader-worker/1.0" "-"
34.121.94.23 - - [28/Aug/2026:22:55:49 +0200] "GET /.env.backup HTTP/1.1" 404 146 "-" "crusader-worker/1.0" "-"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-28 20:40:21
(14 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack