🇫🇷
dwmp
2026-09-06 06:06:16
(14 hours ago)
[06/Sep/2026:08:06:15.849826 +0200] ap0C17c9fa4h608zNMbTrQAAAEo 34.65.57.231 56624 38.242.227.117 70 ...
show more
[06/Sep/2026:08:06:15.849826 +0200] ap0C17c9fa4h608zNMbTrQAAAEo 34.65.57.231 56624 38.242.227.117 7080
[06/Sep/2026:08:06:15.850455 +0200] ap0C17c9fa4h608zNMbTqgAAAEA 34.65.57.231 56590 38.242.227.117 7080
[06/Sep/2026:08:06:15.851971 +0200] ap0C17c9fa4h608zNMbTrgAAAEY 34.65.57.231 56640 38.242.227.117 7080
...
show less
Brute-Force
SSH
🇬🇧
consul.to
2026-09-06 03:38:19
(16 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:36:41
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:36:33.825893 2026] [security2:error] [pid 29818:tid 29833] [client 34.65.57.231:46374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "po.absurdotron.com"] [uri "/.env.bak"] [unique_id "apzfweoUBvlQaBz6B_yVLQAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
COMAITE
2026-09-06 03:28:00
(16 hours ago)
Suspicious URL access.
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 02:59:23
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:59:17.159566 2026] [security2:error] [pid 16207:tid 16207] [client 34.65.57.231:46618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.allisonannestudios.com"] [uri "/.env.dev"] [unique_id "apzXBZL6iWVYuzJX9r9aUwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FD-IX
2026-09-06 02:56:30
(17 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 02:48:50
(17 hours ago)
[server.tmg.gr] httpd-config-scan: sites=www.aidshep2026.gr; logs=/var/log/httpd/domains/aidshep2026 ...
show more
[server.tmg.gr] httpd-config-scan: sites=www.aidshep2026.gr; logs=/var/log/httpd/domains/aidshep2026.gr.log; samples=/wp-config.php~ | /.env.local | /.env.prod
show less
Hacking
Web App Attack
Anonymous
2026-09-06 02:45:03
(17 hours ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 02:10:11
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:10:03.758891 2026] [security2:error] [pid 3013:tid 3013] [client 34.65.57.231:51754] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "serranolopezarquitectos.com"] [uri "/wp-config.php.bak"] [unique_id "apzLezDCAOQ-h-71ia4cGgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-06 02:03:54
(18 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-06 01:56:05
(18 hours ago)
CrowdSec: crowdsecurity/crowdsec-appsec-outofband
Hacking
Web App Attack
🇩🇪
raph
2026-09-06 01:33:08
(18 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 00:02:13
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 20:02:05.651723 2026] [security2:error] [pid 3472805:tid 3472805] [client 34.65.57.231:56146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kcpeople.com.loudenlow.com"] [uri "/.env.old"] [unique_id "apytfUE6NSyJLzOfNlHXtgAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:30:25
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.57.231 (231.57.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:30:19.292699 2026] [security2:error] [pid 3505780:tid 3505894] [client 34.65.57.231:60814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lzmarketingsolutions.com"] [uri "/.env.example"] [unique_id "apymC6eVUu6W99IeSwEI_QAAAgQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
MatCat
2026-09-05 23:05:10
(21 hours ago)
Banned by fail2ban: apache-webprobe
Port Scan
Bad Web Bot