🇩🇪
seal
2026-09-06 06:21:30
(11 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
SSH
Brute-Force
🇫🇮
inlink.ltd
2026-09-06 03:24:39
(14 hours ago)
dot file probe
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:01:11
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:01:03.800602 2026] [security2:error] [pid 20202:tid 20202] [client 34.60.34.215:35194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mitchellamazing.com"] [uri "/.env.prod"] [unique_id "apzXbx3JPt1kiNU2GF2_6gAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
MM-bot
2026-09-06 02:53:44
(15 hours ago)
URL-probe: HTTP/1.1 GET request on /.env.dev (2026-09-06 04:53:44 UTC+2)
Web App Attack
Hacking
🇩🇪
maxpower
2026-09-06 02:26:03
(15 hours ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.60.34.215 (US/United States/215.34.60 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.60.34.215 (US/United States/215.34.60.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.60.34.215 - - [06/Sep/2026:04:26:02 +0200] "GET /wp-config.php.bak HTTP/1.1" 200 11873 "-" "crusader-worker/1.0" "-" host=squalettiacademy.it
show less
Port Scan
🇫🇷
masterguru
2026-09-06 01:39:37
(16 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
🇺🇸
mnsf
2026-09-06 00:05:35
(17 hours ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:53:57
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:53:47.637054 2026] [security2:error] [pid 6401:tid 6401] [client 34.60.34.215:48446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.possmartterminal.com"] [uri "/wp-config.php.bak"] [unique_id "apyri3EuE142z6fGR6yAEwAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:19:17
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:19:11.253534 2026] [security2:error] [pid 20119:tid 20119] [client 34.60.34.215:42992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.register-yacht-bvi.com"] [uri "/.htaccess"] [unique_id "apyjb3novPO0cAEjvVfQLwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
SOC [GOLINE SA]
2026-09-05 23:05:20
(18 hours ago)
FortiGate detected IPS attack from IPv4 address 34.60.34.215
Hacking
🇬🇧
consul.to
2026-09-05 21:50:18
(20 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 21:37:27
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:37:22.650059 2026] [security2:error] [pid 30575:tid 30575] [client 34.60.34.215:41538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thestillwatergroup.com"] [uri "/.env.production"] [unique_id "apyLkg8Cn_cYsiZb1_o--gAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-05 21:17:45
(20 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇳🇱
debestelapp
2026-09-05 20:45:11
(21 hours ago)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 20:44:52
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.34.215 (215.34.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 16:44:48.156663 2026] [security2:error] [pid 16427:tid 16427] [client 34.60.34.215:50132] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "appsdips.com"] [uri "/wp-config.php.swp"] [unique_id "apx_QJcABeBSYrWmFhZv8AAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack