🇧🇪
cmbplf
2026-09-08 00:47:14
(5 hours ago)
7.557 requests with url.path *.env
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 23:29:34
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.147.123 (123.147.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.147.123 (123.147.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:29:28.970615 2026] [security2:error] [pid 13075:tid 13075] [client 34.35.147.123:46158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nickmontfort.com"] [uri "/.git/config"] [unique_id "ap9I2DolElWpKKxl-5R7NQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 23:08:48
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.147.123 (123.147.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.147.123 (123.147.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:08:44.648344 2026] [security2:error] [pid 1232522:tid 1232540] [client 34.35.147.123:50750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nickkonstantinidis.com"] [uri "/.git/config"] [unique_id "ap9D_JUCARSMRgztToe21wAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 22:31:34
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.147.123 (123.147.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.147.123 (123.147.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 18:31:29.318691 2026] [security2:error] [pid 22214:tid 22214] [client 34.35.147.123:40812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nickersoncarpentry.com"] [uri "/.git/config"] [unique_id "ap87QdOVzhA89VeSQxx-PQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 21:53:28
(8 hours ago)
Reported from Nginx log analysis 17. Log: 34.35.147.123 - - [07/Sep/2026:xx:xx:xx 0200] "GET / HTTP ...
show more
Reported from Nginx log analysis 17. Log: 34.35.147.123 - - [07/Sep/2026:xx:xx:xx 0200] "GET / HTTP/1.1" xxx xxx "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" "ZA South Africa Johannesburg" "AS396982" "Google LLC"
show less
Port Scan
Brute-Force
SSH
🇩🇪
FD-IX
2026-09-07 21:06:33
(8 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-07 20:55:46
(9 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
🇸🇪
vaia.cloud
2026-09-07 20:05:02
(9 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇳🇱
Savvii
2026-09-07 17:54:56
(12 hours ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 17:34:42
(12 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-07 16:34:45
(13 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇩🇪
Séfora Srl
2026-09-07 15:26:43
(14 hours ago)
crowdsecurity/http-sensitive-files detected by CrowdSec
Web App Attack
🇮🇩
Burayot
2026-09-07 15:13:38
(14 hours ago)
LF_APACHE_403: 34.35.147.123 (123.147.35.34.bc.googleusercontent.com), more than 10 Apache 403 hits ...
show more
LF_APACHE_403: 34.35.147.123 (123.147.35.34.bc.googleusercontent.com), more than 10 Apache 403 hits in the last 3600 secs
show less
Web App Attack
🇮🇹
VHosting
2026-09-07 12:05:03
(17 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇫🇷
Baking333
2026-09-07 10:33:20
(19 hours ago)
[redacted] 34.35.147.123 - - [07/Sep/2026:11:33:18 +0100] "GET /.git/config HTTP/1.1" 302 6743 0/489 ...
show more
[redacted] 34.35.147.123 - - [07/Sep/2026:11:33:18 +0100] "GET /.git/config HTTP/1.1" 302 6743 0/48938 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" [redacted] 34.35.147.123 - - [07/Sep/2026:11:33:18 +0100] "GET /.env HTTP/1.1" 302 1524 0/41891 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack