🇸🇪
vaia.cloud
2026-09-08 17:15:02
(5 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
🇸🇪
vaia.cloud
2026-09-08 13:10:06
(10 hours ago)
crowdsecurity/http-path-traversal-probing
Brute-Force
Web App Attack
🇺🇦
Olexiy Backend
2026-09-08 12:58:18
(10 hours ago)
34.180.111.90
...
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 12:58:11
(10 hours ago)
Bot / seems abusive / Apache connections: 28
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-08 12:54:48
(10 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
brightenfield
2026-09-08 12:52:27
(10 hours ago)
Web App Attack
Web App Attack
🇳🇱
debestelapp
2026-09-08 10:20:12
(12 hours ago)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 10:19:36
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.111.90 (90.111.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.111.90 (90.111.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 06:19:29.220673 2026] [security2:error] [pid 925:tid 925] [client 34.180.111.90:60306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keysenterprise.com"] [uri "/@fs/.env"] [unique_id "ap_hMUr_Lp-4PF0JutjVHgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
Progetto1
2026-09-08 09:30:06
(13 hours ago)
Multiple exploit attempts
Hacking
Brute-Force
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 09:27:58
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.111.90 (90.111.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.111.90 (90.111.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 05:27:53.858526 2026] [security2:error] [pid 15292:tid 15292] [client 34.180.111.90:2536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "helpkccare.org"] [uri "/@fs/src/.env"] [unique_id "ap_VGVty415GnIVY8PZD2QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
000rosiu
2026-09-08 09:17:09
(13 hours ago)
Triggered Cloudflare WAF (firewallCustom) from JP.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from JP.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.env.openai | UA: Mozilla/5.0 (compatible; Claude-SearchBot/1.0; +https://www.anthropic.com/claude-searchbot) • Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
🇫🇷
masterguru
2026-09-08 08:44:37
(14 hours ago)
Restricted File Access Attempt. Matched phrase "/@fs/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 08:36:28
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.111.90 (90.111.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.111.90 (90.111.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 04:36:23.843259 2026] [security2:error] [pid 22384:tid 22384] [client 34.180.111.90:50080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.crittergetterpestcontrol.com"] [uri "/@fs/.env"] [unique_id "ap_JB85STPgF4IYguM2DlQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 08:09:11
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.111.90 (90.111.180.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.111.90 (90.111.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 04:09:04.374141 2026] [security2:error] [pid 2013:tid 2013] [client 34.180.111.90:51006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fuentevictoria.com"] [uri "/@fs/root/.env"] [unique_id "ap_CoBj7-D3aHboMDD7fMwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
gigatech
2026-09-08 07:35:05
(15 hours ago)
Webserver Probing
Web App Attack