🇧🇪
cmbplf
2026-09-12 17:39:49
(1 hour ago)
2.153 requests with url.path *.env
342 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
🇮🇹
mgarofano80
2026-09-12 16:08:48
(3 hours ago)
Brute-Force
Web App Attack
🇮🇹
VHosting
2026-09-12 11:55:03
(7 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇨🇦
csnavarro2020
2026-09-12 09:50:31
(9 hours ago)
Automated scan for known vulnerable/nonexistent path: /.git/config
Web App Attack
Hacking
🇬🇧
gws-hostmaster
2026-09-12 08:58:23
(10 hours ago)
[Sat Sep 12 09:58:23.175455 2026] [authz_core:error] [pid 688652] [client 34.65.8.218:0] AH01630: cl ...
show more
[Sat Sep 12 09:58:23.175455 2026] [authz_core:error] [pid 688652] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env
[Sat Sep 12 09:58:23.349680 2026] [authz_core:error] [pid 688213] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env.local
[Sat Sep 12 09:58:23.479883 2026] [authz_core:error] [pid 688214] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env.production
[Sat Sep 12 09:58:23.536516 2026] [authz_core:error] [pid 688215] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env.staging
[Sat Sep 12 09:58:23.621259 2026] [authz_core:error] [pid 688212] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env.development
...
show less
Web App Attack
🇬🇧
venus.launch.bz
2026-09-12 07:09:25
(12 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.65.8.218 (CH/Switzerland/218.8.65.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.65.8.218 (CH/Switzerland/218.8.65.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-12 06:18:24
(13 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.65.8.218 (218.8.65.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:949110) triggered by 34.65.8.218 (218.8.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 02:18:19.102857 2026] [security2:error] [pid 13105:tid 13105] [client 34.65.8.218:51106] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "store.faimrepsonline.com"] [uri "/.git/config"] [unique_id "aqTuqz-9JJR_r9xreUdKNgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
gws-hostmaster
2026-09-12 05:50:46
(13 hours ago)
[Sat Sep 12 06:50:45.880973 2026] [authz_core:error] [pid 615850] [client 34.65.8.218:0] AH01630: cl ...
show more
[Sat Sep 12 06:50:45.880973 2026] [authz_core:error] [pid 615850] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env
[Sat Sep 12 06:50:46.052415 2026] [authz_core:error] [pid 615852] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env.local
[Sat Sep 12 06:50:46.101971 2026] [authz_core:error] [pid 615848] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env.production
[Sat Sep 12 06:50:46.245832 2026] [authz_core:error] [pid 645169] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env.staging
[Sat Sep 12 06:50:46.325287 2026] [authz_core:error] [pid 615849] [client 34.65.8.218:0] AH01630: client denied by server configuration: /var/www/vhosts/iqvisuals.uk/store.iqvisuals.uk/.env.development
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 05:15:40
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.8.218 (218.8.65.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.8.218 (218.8.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 01:15:35.522418 2026] [security2:error] [pid 10791:tid 10791] [client 34.65.8.218:43072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "store.drjaymissdiana.com"] [uri "/.git/config"] [unique_id "aqTf9y4C5gpHY8oeCzzS_gAAAHA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-12 04:22:04
(15 hours ago)
Web application attack detected.
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 04:19:35
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.8.218 (218.8.65.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.8.218 (218.8.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 00:19:31.558103 2026] [security2:error] [pid 6614:tid 6614] [client 34.65.8.218:41194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "store.go4food.com"] [uri "/.git/config"] [unique_id "aqTS06cryRbceVmVCQju4gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇴
Bots.go.to.hell
2026-09-12 03:30:38
(16 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇿🇦
conure.sh
2026-09-12 03:24:11
(16 hours ago)
csagent: score 21.5: 404 noise floor x6, secrets grab x2; 1 domain(s) in 1s
Web App Attack
Anonymous
2026-09-11 20:18:26
(23 hours ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
Anonymous
2026-09-11 18:50:04
(1 day ago)
suspicious request in access.log
Web App Attack