๐ฉ๐ช
pltcldvlpr
2026-08-27 21:20:02
(10 hours ago)
CMS/framework probe: 34.19.211.103 - - [27/Aug/2026:23:20:02 +0200] "GET /.env.backup HTTP/1.1" 404 ...
show more
CMS/framework probe: 34.19.211.103 - - [27/Aug/2026:23:20:02 +0200] "GET /.env.backup HTTP/1.1" 404 162 "-" "crusader-worker/1.0" asn=396982 org="Google LLC" country=CA
...
show less
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-08-27 20:52:28
(10 hours ago)
Unauthorized access to webpage admin
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2026-08-27 20:07:07
(11 hours ago)
2026-08-27 @ 22:07:06 (CET) ~ Blocked for trying to access: /.env.example
Web App Attack
๐ฉ๐ช
YF
2026-08-27 19:00:14
(12 hours ago)
WordPress config file probe
Web App Attack
๐ฉ๐ช
patrisei
2026-08-27 18:58:39
(12 hours ago)
You are now banned for 10 years by Schiffdorf-West Patrol. Trigger: crowdsecurity/http-probing
Port Scan
Web App Attack
๐บ๐ธ
Lee Daniel
2026-08-27 17:58:33
(13 hours ago)
34.19.211.103 - - [27/Aug/2026:13:58:32 -0400] "GET /.env HTTP/1.1" 403 5619 "-" "crusader-worker/1. ...
show more
34.19.211.103 - - [27/Aug/2026:13:58:32 -0400] "GET /.env HTTP/1.1" 403 5619 "-" "crusader-worker/1.0"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
jcbriar
2026-08-27 16:32:34
(14 hours ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐ฉ๐ช
IVski.com
2026-08-27 15:42:55
(15 hours ago)
IVski WAF | Sensitive file probe - looking for exposed .env.bak
Hacking
Brute-Force
Web App Attack
๐ฌ๐ง
Apache
2026-08-27 13:49:31
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.19.211.103 (CA/Canada/103.211.19.34.bc.googl ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.211.103 (CA/Canada/103.211.19.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
Anonymous
2026-08-27 13:35:18
(17 hours ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-27 12:37:18
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.19.211.103 (103.211.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.211.103 (103.211.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:37:11.303157 2026] [security2:error] [pid 13811:tid 13811] [client 34.19.211.103:59548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wraycurtis.com.greighhouse.com"] [uri "/.env.local"] [unique_id "apAvd1nJOCb6mvjJAsnbjQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 12:35:16
(18 hours ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ต๐ฑ
lns.bz
2026-08-27 12:27:40
(19 hours ago)
Web app attack [PL.Lu]
Exploited Host
Web App Attack
๐ฎ๐น
madaello
2026-08-27 12:03:01
(19 hours ago)
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /.env.dev HTTP/1.1" 404 99001 "-" "crusader-work ...
show more
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /.env.dev HTTP/1.1" 404 99001 "-" "crusader-worker/1.0"
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /_ignition/health-check HTTP/1.1" 404 99042 "-" "crusader-worker/1.0"
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /.env.bak HTTP/1.1" 404 98986 "-" "crusader-worker/1.0"
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /.env.example HTTP/1.1" 404 99007 "-" "crusader-worker/1.0"
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /actuator/env HTTP/1.1" 404 99006 "-" "crusader-worker/1.0"
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /actuator/configprops HTTP/1.1" 404 99032 "-" "crusader-worker/1.0"
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /.env.local HTTP/1.1" 404 99007 "-" "crusader-worker/1.0"
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /wp-config.php.bak HTTP/1.1" 404 99027 "-" "crusader-worker/1.0"
34.19.211.103 - - [27/Aug/2026:14:02:56 +0200] "GET /env HTTP/1.1" 404 98985 "-" "crusader-
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 11:39:38
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.19.211.103 (103.211.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.211.103 (103.211.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:39:30.607762 2026] [security2:error] [pid 1365:tid 1365] [client 34.19.211.103:57978] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dewsales.com"] [uri "/.env.backup"] [unique_id "apAh8l7K3MWm7BjRbLJxwAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack