🇩🇪
FeG Deutschland
2026-08-29 02:14:33
(14 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
🇫🇮
paissangroup
2026-08-29 01:52:45
(15 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 01:21:04
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.5.152 (152.5.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.5.152 (152.5.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:20:57.809137 2026] [security2:error] [pid 14781:tid 14781] [client 34.134.5.152:59888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "words.gmacguffin.com"] [uri "/wp-config.php~"] [unique_id "apIz-fGC8x65QTiECDgxwAAAAGE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇾
Rizzy
2026-08-29 00:46:13
(16 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 00:43:01
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.5.152 (152.5.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.5.152 (152.5.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 20:42:55.996724 2026] [security2:error] [pid 5946:tid 5946] [client 34.134.5.152:53678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "billymitchell.com"] [uri "/.env.prod"] [unique_id "apIrD7IJzv_vpSBaNvmFzwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
BlueWire Hosting
2026-08-29 00:34:21
(16 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
🇺🇸
antlac1
2026-08-28 23:31:11
(17 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
Anonymous
2026-08-28 23:30:12
(17 hours ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
Anonymous
2026-08-28 22:32:26
(18 hours ago)
PSCSERV WPSCAN 34.134.5.152
Bad Web Bot
Web App Attack
🇬🇧
relianoid.com
2026-08-28 22:12:15
(18 hours ago)
404 Errors Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web App Attack
🇩🇪
Vegascosmetics
2026-08-28 21:35:34
(19 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possi ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possible exploited host). Evidence: AttackPattern: /wp-config\.php (Match: /wp-config.php)
show less
Hacking
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 20:39:34
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.5.152 (152.5.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.5.152 (152.5.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 16:39:30.265397 2026] [security2:error] [pid 27190:tid 27190] [client 34.134.5.152:55044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "myrtlebeachpartybuses.com"] [uri "/.env.example"] [unique_id "apHyAohBSlJfH7Xiu9PJWwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 20:03:23
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.5.152 (152.5.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.5.152 (152.5.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 16:03:18.427837 2026] [security2:error] [pid 22328:tid 22328] [client 34.134.5.152:36488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.luisguacache.com"] [uri "/.env"] [unique_id "apHphjXY3gOYMc69wayMUQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 19:20:02
(21 hours ago)
suspicious request in access.log
Web App Attack
🇫🇷
YF
2026-08-28 19:15:28
(21 hours ago)
WordPress config file probe
Web App Attack