🇸🇪
vaia.cloud
2026-09-08 22:10:02
(8 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:17:21
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.42.31 (31.42.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.42.31 (31.42.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:17:15.626163 2026] [security2:error] [pid 15863:tid 15882] [client 34.169.42.31:25318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antinats.com"] [uri "/@fs/root/.env"] [unique_id "aqBfO-K2v650ynHOQT1KNwAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-08 18:52:33
(11 hours ago)
Excessive multi-domain requests
Brute-Force
🇳🇿
Antinson
2026-09-08 18:51:40
(11 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-08 18:14:17
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.42.31 (31.42.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.42.31 (31.42.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 14:14:09.507429 2026] [security2:error] [pid 16538:tid 16538] [client 34.169.42.31:60506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.oficinasydespachosmurcia.com"] [uri "/@fs/root/.env"] [unique_id "aqBQcYdXZHo_Ox7lt8TV6AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-08 18:05:01
(12 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
🇧🇪
cmbplf
2026-09-08 17:38:53
(13 hours ago)
518 requests with url.path *.azure/*
250 requests with url.path */proc/*
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-08 17:21:22
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.42.31 (31.42.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.42.31 (31.42.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 13:21:17.565914 2026] [security2:error] [pid 20981:tid 20981] [client 34.169.42.31:42214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.brucerohr.com"] [uri "/@fs/../../.env"] [unique_id "aqBEDcZt0j4tNRvCEqluGgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 17:02:53
(13 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇫🇷
dynamix
2026-09-08 16:44:12
(13 hours ago)
Multiple WAF Violations
Web App Attack
🇨🇭
zynex
2026-09-08 15:50:25
(14 hours ago)
URL Probing: /@fs/root/.env
Web App Attack
Anonymous
2026-09-08 15:39:40
(15 hours ago)
Aggressive web scan
Web App Attack
Anonymous
2026-09-08 15:32:06
(15 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇮🇹
VHosting
2026-09-08 14:45:04
(15 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 14:16:47
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.42.31 (31.42.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.42.31 (31.42.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 10:16:42.718856 2026] [security2:error] [pid 32459:tid 32459] [client 34.169.42.31:2410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.infinite-fitness.com"] [uri "/@fs/src/.env"] [unique_id "aqAYyquntz-BZd9dD9qFIgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack