๐ฌ๐ง
cg-design.co.uk
2026-08-28 23:51:09
(44 minutes ago)
(mod_security) mod_security triggered on hostname [redacted] 34.186.124.111 (US/United States/111.12 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.186.124.111 (US/United States/111.124.186.34.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ท
Catalin Negru
2026-08-28 23:14:22
(1 hour ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-28 19:52:00
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.124.111 (111.124.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.124.111 (111.124.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 15:51:53.181660 2026] [security2:error] [pid 27206:tid 27206] [client 34.186.124.111:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.webuildbeaches.com"] [uri "/.env"] [unique_id "apHm2akWeJaFxrXQ0Pt1dwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 19:22:29
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.124.111 (111.124.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.124.111 (111.124.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 15:22:24.481572 2026] [security2:error] [pid 12876:tid 12876] [client 34.186.124.111:54092] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "juliataylor.us"] [uri "/.env.example"] [unique_id "apHf8Nu6oWWN2-9-opEa2QAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-08-28 19:13:06
(5 hours ago)
Blocked by ConnMonitor
Web App Attack
Anonymous
2026-08-28 18:48:22
(5 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.186.124.111 (US/United States/111.12 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.186.124.111 (US/United States/111.124.186.34.bc.googleusercontent.com)
show less
SQL Injection
Anonymous
2026-08-28 18:23:12
(6 hours ago)
34.186.124.111 - - [28/Aug/2026:18:23:12 +0000] "GET /.env.prod HTTP/1.1" 403 4399 "-" "crusader-wor ...
show more
34.186.124.111 - - [28/Aug/2026:18:23:12 +0000] "GET /.env.prod HTTP/1.1" 403 4399 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-08-28 17:52:26
(6 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.186.124.111 (US/United States/111.12 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.186.124.111 (US/United States/111.124.186.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
Major Hostility
2026-08-28 17:49:03
(6 hours ago)
"GET /.env.local HTTP/1.1" 404
"GET /.env.production HTTP/1.1" 404
"GET /.env HTTP/1.1" 404
"GET /.e ...
show more
"GET /.env.local HTTP/1.1" 404
"GET /.env.production HTTP/1.1" 404
"GET /.env HTTP/1.1" 404
"GET /.env.dev HTTP/1.1" 404
"GET /storage/logs/laravel.log HTTP/1.1" 404
"GET /.env.save HTTP/1.1" 404
show less
Web App Attack
Anonymous
2026-08-28 17:27:15
(7 hours ago)
Blocked by ModSec and CSF
Port Scan
๐ณ๐ฑ
tmiland
2026-08-28 17:18:11
(7 hours ago)
(nginx_404) Dot directory Honeypot Trap 34.186.124.111 (US/United States/111.124.186.34.bc.googleuse ...
show more
(nginx_404) Dot directory Honeypot Trap 34.186.124.111 (US/United States/111.124.186.34.bc.googleusercontent.com): 2 in the last 3600 secs; IP: 34.186.124.111; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.186.124.111 - - [28/Aug/2026:19:18:11 +0200] "GET /.env.production HTTP/1.1" 404 2992 "-" "crusader-worker/1.0" 34.186.124.111 - - [28/Aug/2026:19:18:11 +0200] "GET /.env.save HTTP/1.1" 404 2992 "-" "crusader-worker/1.0"
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-28 16:44:50
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.124.111 (111.124.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.124.111 (111.124.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 12:44:46.145705 2026] [security2:error] [pid 18689:tid 18689] [client 34.186.124.111:49850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vjrott.com"] [uri "/.env"] [unique_id "apG6_prwLUtmT8sbMjyJsQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-28 14:53:58
(9 hours ago)
cloudlinux2 fail2ban: 2026-08-28 16:48:57,574 fail2ban.actions [1478]: NOTICE [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-28 16:48:57,574 fail2ban.actions [1478]: NOTICE [plesk-modsecurity] Unban 35.188.210.137cloudlinux2 fail2ban: 2026-08-28 16:49:41,130 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.186.124.111 - 2026-08-28 16:49:40cloudlinux2 fail2ban: 2026-08-28 16:49:41,121 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.186.124.111 - 2026-08-28 16:49:40cloudlinux2 fail2ban: 2026-08-28 16:49:41,140 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.186.124.111 - 2026-08-28 16:49:40cloudlinux2 fail2ban: 2026-08-28 16:49:41,148 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.186.124.111 - 2026-08-28 16:49:40cloudlinux2 fail2ban: 2026-08-28 16:49:41,157 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.186.124.111 - 2026-08-28 16:49:40cloudlinux2 fail2ban: 2026-08-28 16:49:41,204 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.186.124.111 - 2026-08-28 16:49:40cloudlinux
show less
Brute-Force
๐ณ๐ฑ
Mangelot Hosting
2026-08-28 14:21:27
(10 hours ago)
(wp_config_access) srv104 WordPress wp-config Scan 34.186.124.111 (US/United States/111.124.186.34.b ...
show more
(wp_config_access) srv104 WordPress wp-config Scan 34.186.124.111 (US/United States/111.124.186.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ต๐ฑ
Budyn
2026-08-28 14:15:38
(10 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: i.budyn.wtf | URI: /.env.example | UA: crusader-worker/1.0 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack