๐ธ๐ช
vaia.cloud
2026-09-18 04:35:02
(30 minutes ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-17 17:14:03
(11 hours ago)
Bot / scanning and/or hacking attempts: GET /config/.env HTTP/1.1, GET /private/.env HTTP/1.1, GET / ...
show more
Bot / scanning and/or hacking attempts: GET /config/.env HTTP/1.1, GET /private/.env HTTP/1.1, GET /public/.env HTTP/1.1, GET /site/.env HTTP/1.1, GET /src/.env HTTP/1.1, GET /admin/.env HTTP/1.1, GET /.env.yml HTTP/1.1, GET /.env_copy HTTP/1.1, GET /backend/.env HTTP/1.1, GET /frontend/.env HTTP/1.1, GET /.env.json HTTP/1.1, GET /server/.env HTTP/1.1, GET /core/app/.env HTTP/1.1, GET /core/.env HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 14:43:30
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.155.78.181 (181.78.155.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.155.78.181 (181.78.155.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 10:43:22.366759 2026] [security2:error] [pid 28732:tid 28732] [client 34.155.78.181:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bbproductionsonline.com"] [uri "/.git/config"] [unique_id "aqv8isWOunrgm9nR450QAAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
lns.bz
2026-09-17 12:35:56
(16 hours ago)
Web app attack [PL.Lu]
Exploited Host
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-17 11:23:19
(17 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-17 10:40:51
(18 hours ago)
Flagged as abuse by IisGuard automated detection (tier L3, score 65/100). Reasons: Reputation=1, Bad ...
show more
Flagged as abuse by IisGuard automated detection (tier L3, score 65/100). Reasons: Reputation=1, BadPath=23,9, Rate=20, Diversity=20.
show less
Web App Attack
DDoS Attack
Bad Web Bot
๐ท๐บ
DZBOT
2026-09-17 09:17:20
(19 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-17 08:22:22
(20 hours ago)
Scanning for web/db/file exploits on www.bbeu-cdc.org
SQL Injection
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 08:15:02
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.155.78.181 (181.78.155.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.155.78.181 (181.78.155.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 04:14:56.870689 2026] [security2:error] [pid 11158:tid 11158] [client 34.155.78.181:36590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bbernal.com"] [uri "/.git/config"] [unique_id "aquhgOtZxwKfoqNf6v_ZOQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
thesimonmanuel
2026-09-17 04:09:49
(1 day ago)
34.155.78.181 - - [17/Sep/2026:09:39:49 +0530] "GET /.git/config HTTP/1.1" 403 141 "-" "Mozilla/5.0 ...
show more
34.155.78.181 - - [17/Sep/2026:09:39:49 +0530] "GET /.git/config HTTP/1.1" 403 141 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 03:36:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.155.78.181 (181.78.155.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.155.78.181 (181.78.155.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:36:12.017416 2026] [security2:error] [pid 31690:tid 31700] [client 34.155.78.181:55278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fastestcopyright.com"] [uri "/.git/config"] [unique_id "aqtgLFhrG2cPjbNPUt6W9AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 02:53:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.155.78.181 (181.78.155.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.155.78.181 (181.78.155.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 22:53:36.207622 2026] [security2:error] [pid 31574:tid 31574] [client 34.155.78.181:41848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fasllc.rooksfamily.com"] [uri "/.git/config"] [unique_id "aqtWMHc-ZsrT57YqKdRKmwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-09-17 02:33:17
(1 day ago)
(mod_security) mod_security (id:11000011) triggered by 34.155.78.181 (FR/France/Paris Department/Par ...
show more
(mod_security) mod_security (id:11000011) triggered by 34.155.78.181 (FR/France/Paris Department/Paris/-/[AS396982 Google LLC]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Thu Sep 17 05:33:15.198776 2026] [security2:error] [pid 79568:tid 79600] [client 34.155.78.181:48348] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "141"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 181.78.155.34.bc.googleusercontent.com"] [severity "CRITICAL"] [hostname "fashionfragonard.gr"] [uri "/"] [unique_id "aqtRa2lfxpvcW3KVOITDiQAAAAE"]
show less
Port Scan
๐ฉ๐ช
Gwyneth Llewelyn
2026-09-17 02:21:15
(1 day ago)
2026/09/17 03:21:11 [error] 2807822#2807822: *201785 access forbidden by rule, client: 34.155.78.181 ...
show more
2026/09/17 03:21:11 [error] 2807822#2807822: *201785 access forbidden by rule, client: 34.155.78.181, server: [redacted], request: "GET /.env HTTP/2.0", host: "fashcon.betatechnologies.info"
34.155.78.181 - - [17/Sep/2026:03:21:11 +0100] "GET /.env HTTP/2.0" 403 1045 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
2026/09/17 03:21:13 [error] 2807822#2807822: *201784 access forbidden by rule, client: 34.155.78.181, server: [redacted], request: "GET /app/.env HTTP/2.0", host: "fashcon.betatechnologies.info"
show less
Brute-Force
Web App Attack
๐ฉ๐ช
0x44
2026-09-16 17:03:05
(1 day ago)
Aggressive web probing - HTTP POST brute-force
Web App Attack
Brute-Force