🇧🇪
cmbplf
2026-09-08 21:27:54
(2 hours ago)
592 requests with url.path *config.json
545 requests with url.path *credentials.json
378 requests ...
show more
592 requests with url.path *config.json
545 requests with url.path *credentials.json
378 requests with url.path *.azure/*
178 requests with url.path */proc/*
102 requests with url.path */auth.json
show less
Brute-Force
Bad Web Bot
🇬🇧
venus.launch.bz
2026-09-08 20:27:56
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.143.134.76 (SG/Singapore/76.134.143. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.143.134.76 (SG/Singapore/76.134.143.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-08 19:38:49
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:38:44.541497 2026] [security2:error] [pid 2651:tid 2651] [client 34.143.134.76:40626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.maritanasystems.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "aqBkRFo7LBOhMou0ehGLJwAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-08 19:05:45
(5 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-08 18:41:40
(5 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /@fs/root/rootkey.csv (+11 more) | 2026-09-08 18:41 UTC
show less
Hacking
Web App Attack
🇩🇪
yvoictra
2026-09-08 18:14:35
(6 hours ago)
Bloqueado automáticamente por CrowdSec. Escenario: crowdsecurity/http-path-traversal-probing
Web App Attack
🇬🇧
consul.to
2026-09-08 18:14:34
(6 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇳🇱
Site.eu
2026-09-08 17:17:22
(7 hours ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-08 17:14:17
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 13:14:13.197107 2026] [security2:error] [pid 27673:tid 27673] [client 34.143.134.76:23264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.efgenios.com"] [uri "/@fs/root/.env"] [unique_id "aqBCZSxRxBhKS8o-5rjgpQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 16:59:04
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 12:58:58.094543 2026] [security2:error] [pid 24449:tid 24449] [client 34.143.134.76:13450] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mintgames.com.danged.com"] [uri "/@fs/.env"] [unique_id "aqA-0ggznZMNvCo821EKVAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 16:10:03
(8 hours ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
🇺🇸
TPI-Abuse
2026-09-08 15:54:35
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 11:54:31.505542 2026] [security2:error] [pid 26218:tid 26218] [client 34.143.134.76:5138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.newcangroup.com"] [uri "/@fs/.env.production"] [unique_id "aqAvt6hrhiuiS9SAp-GkNQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 15:28:47
(8 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-08 15:00:38
(9 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 14:45:08
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.134.76 (76.134.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 10:45:04.836846 2026] [security2:error] [pid 31337:tid 31337] [client 34.143.134.76:48044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.beepainless.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "aqAfcDF5x-OUAap0QMQVMQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack