๐ณ๐ฑ
wlt-blocker
2026-06-10 04:40:40
(33 minutes ago)
Unauthorized access to webpage admin
Web App Attack
๐ฌ๐ง
andypiper
2026-06-10 01:02:09
(4 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-10 00:13:02
(5 hours ago)
Too many Status 40X (75)
Scanning/Probing (87)
Brute-Force
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-06-09 20:52:04
(8 hours ago)
categories: DDoS Attack
DDoS Attack
๐ฎ๐ฉ
Burayot
2026-06-09 17:39:14
(11 hours ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.64.244.188 (KR/South Korea/188.24 ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.64.244.188 (KR/South Korea/188.244.64.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-09 15:56:15
(13 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-09 13:00:35
(16 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.64.244.188 (188.244.64.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.64.244.188 (188.244.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:59:59.408570 2026] [security2:error] [pid 4530:tid 4530] [client 34.64.244.188:46836] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "lenukuhivabookings.com"] [uri "/.env.production.bak"] [unique_id "aigOT96LsKo6n7MxcMah-AAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:45:04
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.64.244.188 (188.244.64.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.244.188 (188.244.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:44:55.637774 2026] [security2:error] [pid 18283:tid 18283] [client 34.64.244.188:49748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.calvet1937.marcelacalvet.com"] [uri "/app/.env.staging"] [unique_id "aifupzKU__hMxm3iEOqJlwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ISPLtd
2026-06-09 06:36:24
(22 hours ago)
Jun 9 00:36:23 34.64.244.188 TCP SPT=50142 DPT=443 SYN
Jun 9 00:36:23 34.64.244.188 TCP SPT=50144 ...
show more
Jun 9 00:36:23 34.64.244.188 TCP SPT=50142 DPT=443 SYN
Jun 9 00:36:23 34.64.244.188 TCP SPT=50144 DPT=443 SYN
Jun 9 00:36:23 34.64.244.188 TCP SPT=50148 DPT=443
...
show less
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:36:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.244.188 (188.244.64.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.244.188 (188.244.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:36:14.039607 2026] [security2:error] [pid 13713:tid 13713] [client 34.64.244.188:55322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abilityimprinting.abilityengraving.com"] [uri "/.env.old"] [unique_id "aieYPpAzi1g1arVyvX0BWQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
todix
2026-06-08 22:22:07
(1 day ago)
Web App Attack Exploid from 34.64.244.188
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 22:11:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.244.188 (188.244.64.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.244.188 (188.244.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 18:11:41.375405 2026] [security2:error] [pid 9394:tid 9394] [client 34.64.244.188:41452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "davidsonmanagement.net"] [uri "/.env"] [unique_id "aic-HZ40ux29Rz1GTLu5zgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
enjoyably
2026-06-08 21:07:15
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-06-08 18:55:48
(1 day ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-08 14:30:03
(1 day ago)
Excessive multi-domain requests
Brute-Force