🇩🇪
pscriptos
2026-09-06 03:02:13
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇦
URAN Publishing Service
2026-09-06 03:01:54
(2 days ago)
[06/Sep/2026:06:01:54 +0300] -- 34.146.175.205 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET ...
show more
[06/Sep/2026:06:01:54 +0300] -- 34.146.175.205 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /web.zip HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 02:59:54
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.175.205 (205.175.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.175.205 (205.175.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:59:49.357885 2026] [security2:error] [pid 19830:tid 19830] [client 34.146.175.205:41680] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.pbdot3.com"] [uri "/.env.production"] [unique_id "apzXJS_RNuVcAdXfX_y-wgAAAJI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-06 02:36:13
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
🇩🇪
neckaralb-admin.de
2026-09-06 02:35:08
(2 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇨🇦
Anytech
2026-09-06 02:23:40
(3 days ago)
Blocked by ConnMonitor
Web App Attack
🇳🇱
MyGlobalFlowers
2026-09-06 02:07:50
(3 days ago)
Multiple WAF Violations
Web App Attack
🇫🇷
✨
2026-09-06 01:16:11
(3 days ago)
Domain : lookup.energisave.co.uk
Rule : env
2026-09-06 01:15:01 79.171.39.6 GET /.env.backup - 443 - ...
show more
Domain : lookup.energisave.co.uk
Rule : env
2026-09-06 01:15:01 79.171.39.6 GET /.env.backup - 443 - 34.146.175.205 HTTP/1.1 crusader-worker/1.0 - lookup.energisave.co.uk 404 0 2 1562 106 409 - -
show less
Hacking
SQL Injection
🇺🇸
TPI-Abuse
2026-09-06 00:23:20
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.175.205 (205.175.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.175.205 (205.175.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 20:23:12.504779 2026] [security2:error] [pid 28624:tid 28624] [client 34.146.175.205:54374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "limoelpaso.com"] [uri "/.env.prod"] [unique_id "apyycEtLBLDqomeNLjqR3gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-05 23:51:23
(3 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇯🇵
Valhalla
2026-09-05 23:26:36
(3 days ago)
/actuator/env
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:00:25
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.175.205 (205.175.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.175.205 (205.175.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:00:17.818953 2026] [security2:error] [pid 22177:tid 22225] [client 34.146.175.205:34428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lasertagandgames.com"] [uri "/wp-config.php~"] [unique_id "apyfAbFrBBBv6RD6KBfyPwAAAMs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-05 21:49:41
(3 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-05 21:45:39
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.175.205 (205.175.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.175.205 (205.175.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:45:34.196117 2026] [security2:error] [pid 26851:tid 26851] [client 34.146.175.205:60996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rassehundeverein.com"] [uri "/.env.local"] [unique_id "apyNfi9XD6e9V3ZRWM98ngAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
CBJ
2026-09-05 21:35:39
(3 days ago)
fail2ban: apache-filepath-recon
...
Web App Attack