🇨🇭
SOC [GOLINE SA]
2026-09-06 09:05:39
(1 hour ago)
FortiGate detected IPS attack from IPv4 address 34.146.29.59
Hacking
🇩🇪
Holger
2026-09-05 17:41:17
(17 hours ago)
Bruteforce WebAttack
Brute-Force
Web App Attack
🇨🇭
SOC [GOLINE SA]
2026-09-05 08:04:35
(1 day ago)
FortiGate detected IPS attack from IPv4 address 34.146.29.59
Hacking
Anonymous
2026-09-04 16:56:01
(1 day ago)
34.146.29.59 - - [04/Sep/2026:16:55:48 +0000] "GET /@fs/../../.env?raw?? HTTP/1.1" 400 166 "-" "-"
3 ...
show more
34.146.29.59 - - [04/Sep/2026:16:55:48 +0000] "GET /@fs/../../.env?raw?? HTTP/1.1" 400 166 "-" "-"
34.146.29.59 - - [04/Sep/2026:16:56:01 +0000] "GET /@fs/../../../../../app/.env?raw?? HTTP/1.1" 400 166 "-" "-"
34.146.29.59 - - [04/Sep/2026:16:56:01 +0000] "GET /@fs/..%2f..%2f..%2f..%2f..%2froot/.env?raw?? HTTP/1.1" 400 166 "-" "-"
...
show less
Brute-Force
🇳🇱
ConsulHosting
2026-09-04 15:37:28
(1 day ago)
Automatically blocked due to distributed attack
Hacking
🇪🇸
librebit
2026-09-04 15:13:06
(1 day ago)
Bad guys doing bad things, bad crawling
Bad Web Bot
Anonymous
2026-09-04 15:00:02
(1 day ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-04 14:05:05
(1 day ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 12:54:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.146.29.59 (59.29.146.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.29.59 (59.29.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:54:40.094302 2026] [security2:error] [pid 18046:tid 18046] [client 34.146.29.59:6762] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "velvetculture.com"] [uri "/@fs/.env"] [unique_id "apq_kBLCUCzHO43CXSxe1wAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 11:28:12
(1 day ago)
Bot / seems abusive / Apache connections: 53
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-04 10:20:13
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
🇿🇦
conure.sh
2026-09-04 09:41:46
(2 days ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 9s
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 09:40:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.29.59 (59.29.146.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.29.59 (59.29.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 05:40:46.383767 2026] [security2:error] [pid 28026:tid 28026] [client 34.146.29.59:24904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.accordionstars.com"] [uri "/@fs/.env"] [unique_id "apqSHpfojq0RLDhhtJiibgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 08:58:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.29.59 (59.29.146.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.29.59 (59.29.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 04:58:27.720104 2026] [security2:error] [pid 7739:tid 7739] [client 34.146.29.59:8746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.savingshvac.com"] [uri "/@fs/root/.env"] [unique_id "apqIM3ZEsZheJezK5qe9CwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 08:34:24
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.29.59 (59.29.146.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.29.59 (59.29.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 04:34:16.311137 2026] [security2:error] [pid 10702:tid 10702] [client 34.146.29.59:2902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kistner.us"] [uri "/@fs/.env"] [unique_id "apqCiLlhXY1F-8dw4OXH4AAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack