π©πͺ
FeG Deutschland
2026-08-01 14:25:24
(39 minutes ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-01 14:21:40
(43 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 10:21:36.037449 2026] [security2:error] [pid 30330:tid 30330] [client 34.22.52.234:53860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jordanware.com"] [uri "/.env"] [unique_id "am4A8MbQ_pD4dMMmbkL8owAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-01 13:56:46
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 09:56:41.324185 2026] [security2:error] [pid 30177:tid 30177] [client 34.22.52.234:52710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flyinganorak.com"] [uri "/.env"] [unique_id "am37GfhHZXuWRvUSrpgoTwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πΎ
lns.bz
2026-08-01 13:50:30
(1 hour ago)
Too many 404 requests [BY]
Web App Attack
π«π·
COMAITE
2026-08-01 13:48:04
(1 hour ago)
Suspicious URL access.
Web App Attack
πΈπͺ
vaia.cloud
2026-08-01 13:45:03
(1 hour ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
π¬π§
Aetherweb Ark
2026-08-01 13:33:30
(1 hour ago)
(mod_security) mod_security (id:949110) triggered by 34.22.52.234 (US/United States/234.52.22.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.22.52.234 (US/United States/234.52.22.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
π©πͺ
seal
2026-08-01 13:27:01
(1 hour ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
SSH
Brute-Force
πΊπΈ
TPI-Abuse
2026-08-01 13:01:40
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 09:01:36.744515 2026] [security2:error] [pid 519999:tid 520016] [client 34.22.52.234:57160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hkyiquan.org"] [uri "/.env"] [unique_id "am3uMHzSukvczWW5hLFbLgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-01 12:23:40
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 08:23:35.642156 2026] [security2:error] [pid 2535534:tid 2535541] [client 34.22.52.234:36028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.agrigrailtechnologies.com.pwrcoupling.com"] [uri "/.env.dev"] [unique_id "am3lR9Izl_sSnnupB6bevAAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-08-01 12:15:29
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
πΊπΈ
nyt
2026-08-01 12:07:38
(2 hours ago)
Sensitive File Probe
Web App Attack
πΊπΈ
mnsf
2026-08-01 12:05:47
(2 hours ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-01 12:03:06
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.52.234 (234.52.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 08:03:01.627764 2026] [security2:error] [pid 1882400:tid 1882400] [client 34.22.52.234:59674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ironheadsofseo.com"] [uri "/.env.production"] [unique_id "am3gdVhpZb3HKvhaufAGdAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-08-01 11:57:50
(3 hours ago)
Multiple WAF Violations
Web App Attack