🇨🇳
800bus.cn
2026-09-07 13:00:03
(12 hours ago)
Blocked by BT-WAF. Rule: 信息泄漏
Web App Attack
Hacking
🇩🇪
MBombeck
2026-09-07 10:20:25
(15 hours ago)
Fail2Ban/traefik-botsearch on apps-01: banned after 5 failures
Web App Attack
Anonymous
2026-09-07 08:50:12
(16 hours ago)
[osotir.org] httpd-config-scan: sites=www.drasimas.gr; logs=/var/log/httpd/domains/drasimas.gr.log; ...
show more
[osotir.org] httpd-config-scan: sites=www.drasimas.gr; logs=/var/log/httpd/domains/drasimas.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:15:48
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.174.220.157 (157.220.174.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.220.157 (157.220.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:15:40.223022 2026] [security2:error] [pid 27994:tid 27994] [client 34.174.220.157:44736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dovka.com"] [uri "/.git/config"] [unique_id "ap5yrPnSkAmuGENtqRlgnQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-07 08:07:53
(17 hours ago)
15.553 requests in 1 hour (3mos1w6d)
Brute-Force
Bad Web Bot
🇫🇮
mnazibo
2026-09-07 08:00:06
(17 hours ago)
Date: 07/Sep/2026 10:25:09 | Reported IP: 34.174.220.157 mod_security | id: 930130 932130 932235 932 ...
show more
Date: 07/Sep/2026 10:25:09 | Reported IP: 34.174.220.157 mod_security | id: 930130 932130 932235 932260 933135 934100 934130 942151 942550 | US/group.my_domain/- | Connections: 260 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /; /actions/.env; /admin/.env; /administrator/.env; /administrator/phpinfo.php; /admin-panel/.env; /admin/phpinfo.php; /angular/.env; /ansible/.env; /api/dev/.env; /api/.env; /api/staging/.env; /api/v1/.env; /api/v2/.env; /api/v3/.env; /app/.env; /application_default_credentials.json; /application/.env; /apps/.env; /aws/.env; /azure/.env; /backend/.env; /backup/.env; /backups/.env; /beta/.env; /beta/phpinfo.php; /bin/.env; /bootstrap/.env; /brevo/.env; /build/.env; /buildkite/.env; /bulk/.env; /cache/.env; /cakephp/.env; /campaign/.env; /cd/.env; /ci/.env; /circleci/.env; /client/.env; /cloud/.env; /cms/.env; /codeigniter/.env; /config/app/.env; /config/.env; /.config/gcloud/application_default_credentials.json;
show less
SQL Injection
Brute-Force
Bad Web Bot
🇫🇷
masterguru
2026-09-07 07:37:43
(17 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
Anonymous
2026-09-07 07:33:41
(17 hours ago)
34.174.220.157 - - [07/Sep/2026:09:33:38 +0200] "GET /.git/config HTTP/1.1" 404 184 "-" "Mozilla/5.0 ...
show more
34.174.220.157 - - [07/Sep/2026:09:33:38 +0200] "GET /.git/config HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.174.220.157 - - [07/Sep/2026:09:33:38 +0200] "GET /.env HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.174.220.157 - - [07/Sep/2026:09:33:39 +0200] "GET /.env.local HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.174.220.157 - - [07/Sep/2026:09:33:39 +0200] "GET /.env.production HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.174.220.157 - - [07/Sep/2026:09:33:39 +0200] "GET /.env.staging HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/5
...
show less
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-07 07:24:04
(18 hours ago)
Excessive multi-domain requests
Brute-Force
🇳🇱
Savvii
2026-09-07 07:21:31
(18 hours ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 03:27:55
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.174.220.157 (157.220.174.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.220.157 (157.220.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 23:27:49.800115 2026] [security2:error] [pid 24861:tid 24861] [client 34.174.220.157:58966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "drainpoultry.com"] [uri "/.git/config"] [unique_id "ap4vNXQbDnwmUdBwfaVyOwAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-07 02:20:12
(23 hours ago)
Web App Attack
🇵🇱
Niko's Stuff
2026-09-07 00:48:19
(1 day ago)
Triggered crowdsecurity/http-sensitive-files. More information at: https://app.crowdsec.net/cti/34.1 ...
show more
Triggered crowdsecurity/http-sensitive-files. More information at: https://app.crowdsec.net/cti/34.174.220.157
show less
Web App Attack
Hacking
🇺🇸
mnsf
2026-09-06 23:05:06
(1 day ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 22:12:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.174.220.157 (157.220.174.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.220.157 (157.220.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 18:12:25.330404 2026] [security2:error] [pid 10790:tid 10790] [client 34.174.220.157:60264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dragoldio.com"] [uri "/.git/config"] [unique_id "ap3lSa6QlvrBI-PbpWkMFgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack