🇩🇪
ghostwarriors
2026-09-06 11:20:06
(12 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
Anonymous
2026-09-06 10:59:11
(12 hours ago)
Fail2Ban triggered
Web App Attack
🇲🇾
Rizzy
2026-09-06 06:02:34
(17 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇬🇧
consul.to
2026-09-06 03:53:49
(19 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:50:52
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.38.110.174 (174.110.38.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.38.110.174 (174.110.38.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:50:45.314948 2026] [security2:error] [pid 16779:tid 16779] [client 34.38.110.174:54538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.pagewideprinting.com"] [uri "/.env.backup"] [unique_id "apzjFTVKFsl9wbDn3LT6pQAAAJE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:26:48
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.38.110.174 (174.110.38.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.38.110.174 (174.110.38.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:26:40.748190 2026] [security2:error] [pid 29716:tid 29716] [client 34.38.110.174:49196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chrismoratz.com"] [uri "/.env.local"] [unique_id "apzdcEOSuQuGSLqQ8OIPXQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-06 03:18:38
(20 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 03:17:44
(20 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
🇩🇪
thesimonmanuel
2026-09-06 02:30:18
(20 hours ago)
34.38.110.174 - - [06/Sep/2026:08:00:18 +0530] "GET /.env.backup HTTP/2.0" 404 146 "-" "crusader-wor ...
show more
34.38.110.174 - - [06/Sep/2026:08:00:18 +0530] "GET /.env.backup HTTP/2.0" 404 146 "-" "crusader-worker/1.0" "34.38.110.174"
show less
Web App Attack
🇫🇷
masterguru
2026-09-06 02:27:47
(20 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
🇫🇷
✨
2026-09-06 00:36:11
(22 hours ago)
Domain : bemersydeestate.com
Rule : hack
2026-09-06 00:35:00 ***hidden-privacy*** GET /wp-config.php ...
show more
Domain : bemersydeestate.com
Rule : hack
2026-09-06 00:35:00 ***hidden-privacy*** GET /wp-config.php.bak - 443 - 34.38.110.174 HTTP/1.1 crusader-worker/1.0 - bemersydeestate.com 404 0 0 335 108 9 - -
show less
Hacking
SQL Injection
Brute-Force
🇺🇸
TPI-Abuse
2026-09-06 00:34:39
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.38.110.174 (174.110.38.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.38.110.174 (174.110.38.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 20:34:31.774656 2026] [security2:error] [pid 895:tid 895] [client 34.38.110.174:46748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bellehollow.com"] [uri "/.env"] [unique_id "apy1FwkIfi4ZRpTNqkLxjQAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-06 00:25:13
(22 hours ago)
Web App Attack
🇺🇸
Lee Daniel
2026-09-05 23:54:48
(23 hours ago)
34.38.110.174 - - [05/Sep/2026:19:54:48 -0400] "GET /.env HTTP/1.1" 403 6290 "-" "crusader-worker/1. ...
show more
34.38.110.174 - - [05/Sep/2026:19:54:48 -0400] "GET /.env HTTP/1.1" 403 6290 "-" "crusader-worker/1.0"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:52:54
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.38.110.174 (174.110.38.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.38.110.174 (174.110.38.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:52:49.993719 2026] [security2:error] [pid 3112:tid 3112] [client 34.38.110.174:58264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.retiredatlast.com"] [uri "/wp-config.php~"] [unique_id "apyrUeZeYct-f3eMJdR_3QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack