๐ฉ๐ช
kkwemi
2026-08-27 19:38:25
(22 hours ago)
Blocked by block-exploit-paths on /wp-config.php~
Bad Web Bot
๐ฉ๐ช
big-cloud.nl
2026-08-27 17:41:05
(1 day ago)
Try to access /.env
Web App Attack
Anonymous
2026-08-27 17:14:51
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-27 16:56:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:56:46.453115 2026] [security2:error] [pid 28478:tid 28478] [client 34.64.250.76:45614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boxfactorylofts.com"] [uri "/wp-config.php.bak"] [unique_id "apBsTiba5K7JGfumLB7M0QAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 12:50:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:50:02.388234 2026] [security2:error] [pid 26088:tid 26088] [client 34.64.250.76:35534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cthog.z-mgmt.com"] [uri "/.env.dev"] [unique_id "apAyeulZk3S8CqiUp81AiwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 12:19:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:19:08.930876 2026] [security2:error] [pid 12258:tid 12258] [client 34.64.250.76:57826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wwfstudio.com"] [uri "/.env.example"] [unique_id "apArPFhsPcb6r4I5wGNc_AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 11:12:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:12:28.235332 2026] [security2:error] [pid 2348686:tid 2348696] [client 34.64.250.76:50746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "furball.co.uk"] [uri "/.env.production"] [unique_id "apAbnOOHrcvjtHED6cDlKwAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:25:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:25:31.108169 2026] [security2:error] [pid 16246:tid 16246] [client 34.64.250.76:48390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "toastergraphics.com"] [uri "/.env.bak"] [unique_id "apAQm5eqzPHI0krU5pWYqAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 10:06:40
(1 day ago)
Banned by Fail2Ban on server
Web App Attack
๐จ๐ญ
ca
2026-08-27 09:57:58
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 09:36:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.64.250.76 (76.250.64.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:36:38.814722 2026] [security2:error] [pid 5690:tid 5690] [client 34.64.250.76:57944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cdsolutions.help"] [uri "/.env.production"] [unique_id "apAFJpYm5x0osQbJMUEILgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mc4bbs
2026-08-27 09:18:58
(1 day ago)
Automated Apache detection on Windows host. 5 suspicious HTTP requests within 300 seconds. Examples: ...
show more
Automated Apache detection on Windows host. 5 suspicious HTTP requests within 300 seconds. Examples: GET /actuator/configprops -> 404 UA=""; GET /.env.backup -> 404 UA=""; GET /.env.example -> 404 UA=""; GET /.env.prod -> 404 UA=""; GET /actuator/env -> 404 UA=""
show less
Web App Attack
Hacking
๐ฉ๐ช
FeG Deutschland
2026-08-27 08:52:05
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-27 08:50:11
(1 day ago)
[27/Aug/2026:11:50:10 +0300] -- 34.64.250.76 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env. ...
show more
[27/Aug/2026:11:50:10 +0300] -- 34.64.250.76 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.example HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 08:10:53
(1 day ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack