Anonymous
2026-09-01 09:10:01
(17 hours ago)
suspicious request in access.log
Web App Attack
๐ฌ๐ง
consul.to
2026-09-01 07:46:45
(18 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:32:41
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:32:37.211711 2026] [security2:error] [pid 18744:tid 18744] [client 34.176.73.219:56708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "favourpa.com"] [uri "/.git/config"] [unique_id "apZxhU4wa-e0kuPnvkH43AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-01 05:16:56
(20 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-01 00:06:03
(1 day ago)
Bot / scanning and/or hacking attempts: GET /bootstrap/.env HTTP/1.1, GET /.env~ HTTP/1.1, GET /stor ...
show more
Bot / scanning and/or hacking attempts: GET /bootstrap/.env HTTP/1.1, GET /.env~ HTTP/1.1, GET /storage/.env HTTP/1.1, GET /application/.env HTTP/1.1, GET /.env.preprod HTTP/1.1, GET /.env.txt HTTP/1.1, GET /database/.env HTTP/1.1, GET /.env_copy HTTP/1.1, GET /private/.env HTTP/1.1, GET /.env.json HTTP/1.1
show less
Hacking
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-31 15:20:10
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
wpadm4
2026-08-31 15:16:21
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
yitzhaq
2026-08-31 15:09:29
(1 day ago)
34.176.73.219 - - [31/Aug/2026:17:09:24 +0200] "GET /.env HTTP/1.1" 404 507 "-" "Mozilla/5.0 (Macint ...
show more
34.176.73.219 - - [31/Aug/2026:17:09:24 +0200] "GET /.env HTTP/1.1" 404 507 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.73.219 - - [31/Aug/2026:17:09:24 +0200] "GET /.env.local HTTP/1.1" 404 507 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.73.219 - - [31/Aug/2026:17:09:25 +0200] "GET /.env.production HTTP/1.1" 404 507 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.73.219 - - [31/Aug/2026:17:09:25 +0200] "GET /.env.staging HTTP/1.1" 404 507 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.73.219 - - [31/Aug/2026:17:09:25 +0200] "GET /.env.development HTTP/1.1" 404 507 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Ge
show less
Web App Attack
Hacking
๐ธ๐ช
vaia.cloud
2026-08-31 14:20:04
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ฉ๐ช
hidemail.app
2026-08-31 14:01:03
(1 day ago)
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto ...
show more
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto-banned by fail2ban.
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 12:47:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:47:14.087272 2026] [security2:error] [pid 27293:tid 27293] [client 34.176.73.219:37412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fixitsmart.com"] [uri "/.git/config"] [unique_id "apV30mOkpGRUebdtcQ0weAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
www.tana.it
2026-08-31 12:33:19
(1 day ago)
PHP scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 12:02:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:02:42.395543 2026] [security2:error] [pid 12265:tid 12292] [client 34.176.73.219:56786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fix4life.com"] [uri "/.git/config"] [unique_id "apVtYkp1yogf8XaU53k3jAAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 11:14:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 07:14:51.513566 2026] [security2:error] [pid 17859:tid 17859] [client 34.176.73.219:41112] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fivestardrives.truefauxstudio.com"] [uri "/.git/config"] [unique_id "apViK9iJxev3-uaD4_PWWQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 10:57:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.73.219 (219.73.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:57:12.524060 2026] [security2:error] [pid 18208:tid 18208] [client 34.176.73.219:45330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fiveoceansconsulting.com"] [uri "/.git/config"] [unique_id "apVeCJTd5-zl-_aE6sP3sQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack