🇫🇷
IRISIO
2026-09-08 12:33:12
(6 hours ago)
scans/SQL injection/spam posts : 651 queries
Web App Attack
SQL Injection
🇱🇺
conseilgouz
2026-09-08 11:55:59
(6 hours ago)
are-17 : Block hidden directories=>/@fs/root/.env?raw??(/)
Hacking
🇳🇱
MyGlobalFlowers
2026-09-08 11:18:09
(7 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 10:19:13
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.134.187 (187.134.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.134.187 (187.134.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 06:19:07.767977 2026] [security2:error] [pid 3376653:tid 3376653] [client 34.181.134.187:46886] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "techlinks.com"] [uri "/@fs/.env"] [unique_id "ap_hGzRpv9XEIIPFLDRyOAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
paissangroup
2026-09-08 10:00:18
(8 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 08:57:41
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.134.187 (187.134.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.134.187 (187.134.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 04:57:33.176661 2026] [security2:error] [pid 23514:tid 23514] [client 34.181.134.187:38886] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mountararattrek.com"] [uri "/@fs/src/.env"] [unique_id "ap_N_eHTTlq3FayWXpK8YgAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
pipeline.es
2026-09-08 08:31:14
(10 hours ago)
Web scanning / probing for vulnerable paths | URL: /@fs/home/ubuntu/.azure/credentials?raw?? | Evide ...
show more
Web scanning / probing for vulnerable paths | URL: /@fs/home/ubuntu/.azure/credentials?raw?? | Evidence: www.viajesmarin.com 34.181.134.187 - - [08/Sep/2026:10:30:43 +0200] \"GET /@fs/home/ubuntu/.azure/credentials?raw?? HTTP/1.1\" 404 3581 \"-\" \"Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)\" GEOIP_COUNTRY_CODE=US | ASN: GOOGLE-CLOUD-PLATFORM | Country: US
show less
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 08:03:28
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.134.187 (187.134.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.134.187 (187.134.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 04:03:21.076137 2026] [security2:error] [pid 7931:tid 7931] [client 34.181.134.187:17534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "psychoatomicpower.theknowledgemaster.com"] [uri "/@fs/app/.env"] [unique_id "ap_BSQW7VGr2QDEerEpTKgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
grassau.com
2026-09-08 07:56:27
(10 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.181.134.187 (US/U ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.181.134.187 (US/United States/District of Columbia/Washington/187.134.181.34.bc.googleusercontent.com)
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-08 07:30:25
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.181.134.187 (187.134.181.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.181.134.187 (187.134.181.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 03:30:17.486023 2026] [security2:error] [pid 8468:tid 8468] [client 34.181.134.187:65464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.konzel.com"] [uri "/@fs/.env"] [unique_id "ap-5iXzD8AMKQOF4GGlhrQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 07:24:30
(11 hours ago)
Scenarios: http-path-traversal-probing
Total requests: 100
Web App Attack
🇩🇪
netclix.gr
2026-09-08 06:57:01
(11 hours ago)
(security_scan) Sensitive File Scan Blocked 34.181.134.187 (US/United States/187.134.181.34.bc.googl ...
show more
(security_scan) Sensitive File Scan Blocked 34.181.134.187 (US/United States/187.134.181.34.bc.googleusercontent.com): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.181.134.187 - - [08/Sep/2026:09:54:38 +0300] "GET /@fs/../../.env?raw?? HTTP/1.1" 400 150 "-" "-"
show less
Port Scan
🇳🇱
Site.eu
2026-09-08 06:50:47
(11 hours ago)
Excessive multi-domain requests
Brute-Force
🇳🇿
Antinson
2026-09-08 06:46:14
(11 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇺🇸
WellSpring
2026-09-08 06:06:20
(12 hours ago)
Automated probe detected by Ody Sentinel / WellSpr.ing. Type: good_bot_honeypot. Path: /@fs/home/ubu ...
show more
Automated probe detected by Ody Sentinel / WellSpr.ing. Type: good_bot_honeypot. Path: /@fs/home/ubuntu/.env. Auto-blocked after threshold exceeded. Dossier: https://wellspr.ing/dossier/sentinel-34-181-134-187
show less
Web App Attack