🇺🇸
mnsf
2026-09-07 07:05:52
(42 minutes ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-07 06:49:11
(59 minutes ago)
Excessive multi-domain requests
Brute-Force
🇫🇷
COMAITE
2026-09-07 06:28:12
(1 hour ago)
Suspicious URL access.
Web App Attack
🇳🇱
ConsulHosting
2026-09-07 05:37:08
(2 hours ago)
Automatically blocked due to distributed attack
Hacking
🇧🇪
cmbplf
2026-09-07 05:35:50
(2 hours ago)
482 requests with url.path *.azure/*
140 requests with url.path */auth.json
103 requests with url ...
show more
482 requests with url.path *.azure/*
140 requests with url.path */auth.json
103 requests with url.path *.local/share/*
show less
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 05:33:39
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.184.48 (48.184.30.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.184.48 (48.184.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 01:33:32.736520 2026] [security2:error] [pid 1775944:tid 1775963] [client 34.30.184.48:4876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.blastfuturepress.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "ap5MrOU9S6JaZtNkXKpVtQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-07 05:23:14
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.30.184.48 (US/United States/48.184.30.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.30.184.48 (US/United States/48.184.30.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 05:11:22
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.184.48 (48.184.30.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.184.48 (48.184.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 01:11:15.768651 2026] [security2:error] [pid 13815:tid 13815] [client 34.30.184.48:28736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.americanexportimport.com"] [uri "/@fs/app/.env"] [unique_id "ap5Hc5EYf4Tc5PZlqXXcQQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 04:59:57
(2 hours ago)
Aggressive web scan
Web App Attack
🇫🇷
dynamix
2026-09-07 04:38:26
(3 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 03:59:17
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.184.48 (48.184.30.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.184.48 (48.184.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 23:59:12.904943 2026] [security2:error] [pid 21681:tid 21681] [client 34.30.184.48:40338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stonestreetnh.com.somehand.com"] [uri "/@fs/.env.production"] [unique_id "ap42kFs56NWc19fJ5QO9YAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-07 03:31:54
(4 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 03:16:27
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.30.184.48 (48.184.30.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.30.184.48 (48.184.30.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 23:16:20.522275 2026] [security2:error] [pid 15356:tid 15356] [client 34.30.184.48:7500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.mindtekt.com"] [uri "/@fs/root/.env"] [unique_id "ap4shBYVlUO2qtbpAb1M-AAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
KiekerJan
2026-09-06 06:44:18
(1 day ago)
34.30.184.48 - - [06/Sep/2026:08:44:17 +0200] "GET /src/.git/config HTTP/1.1" 301 162 "-" "crusader- ...
show more
34.30.184.48 - - [06/Sep/2026:08:44:17 +0200] "GET /src/.git/config HTTP/1.1" 301 162 "-" "crusader-worker/1.0"
34.30.184.48 - - [06/Sep/2026:08:44:17 +0200] "GET /htdocs/.git/config HTTP/1.1" 301 162 "-" "crusader-worker/1.0"
...
show less
Web App Attack
🇺🇸
IndigoRidge
2026-09-06 06:29:50
(1 day ago)
[06/Sep/2026:02:29:49.621416 --0400] ap0IXZrbzrMb5qC8DBnsAgAAAQ0 34.30.184.48 55348 205.233.18.19 70 ...
show more
[06/Sep/2026:02:29:49.621416 --0400] ap0IXZrbzrMb5qC8DBnsAgAAAQ0 34.30.184.48 55348 205.233.18.19 7081
[06/Sep/2026:02:29:49.649997 --0400] ap0IXdE047I7dipXrXDXpgAAAkU 34.30.184.48 55432 205.233.18.19 7081
[06/Sep/2026:02:29:49.650767 --0400] ap0IXdE047I7dipXrXDXpwAAAlM 34.30.184.48 55416 205.233.18.19 7081
[06/Sep/2026:02:29:49.651507 --0400] ap0IXdE047I7dipXrXDXqAAAAko 34.30.184.48 55402 205.233.18.19 7081
[06/Sep/2026:02:29:49.651687 --0400] ap0IXenkF3EQX2VX6Ul3YgAAAJQ 34.30.184.48 55382 205.233.18.19 7081
...
show less
Hacking