🇩🇪
FeG Deutschland
2026-08-29 03:24:43
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇬🇧
consul.to
2026-08-29 02:58:08
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
🇳🇱
BlueWire Hosting
2026-08-29 02:54:02
(1 week ago)
Probing websites for vulnerabilities
Web App Attack
🇫🇷
✨
2026-08-29 01:32:10
(1 week ago)
Domain : brightek.co.uk
Rule : hack
2026-08-29 01:30:16 ***hidden-privacy*** GET /wp-config.php.bak ...
show more
Domain : brightek.co.uk
Rule : hack
2026-08-29 01:30:16 ***hidden-privacy*** GET /wp-config.php.bak - 443 - 34.75.215.252 HTTP/1.1 crusader-worker/1.0 - brightek.co.uk 301 0 0 458 103 90 - -
show less
Hacking
SQL Injection
Brute-Force
🇺🇸
TAY
2026-08-28 23:32:52
(1 week ago)
34.75.215.252 - - [29/Aug/2026:07:32:49 +0800] "GET /wp-config.php.bak HTTP/1.1" 200 811 "-" "crusad ...
show more
34.75.215.252 - - [29/Aug/2026:07:32:49 +0800] "GET /wp-config.php.bak HTTP/1.1" 200 811 "-" "crusader-worker/1.0"
34.75.215.252 - - [29/Aug/2026:07:32:49 +0800] "GET /wp-config.php~ HTTP/1.1" 200 811 "-" "crusader-worker/1.0"
34.75.215.252 - - [29/Aug/2026:07:32:49 +0800] "GET /wp-config.php.swp HTTP/1.1" 200 811 "-" "crusader-worker/1.0"
34.75.215.252 - - [29/Aug/2026:07:32:50 +0800] "GET /wp-config.php.swp HTTP/1.1" 301 457 "-" "crusader-worker/1.0"
34.75.215.252 - - [29/Aug/2026:07:32:51 +0800] "GET /wp-config.php~ HTTP/1.1" 301 451 "-" "crusader-worker/1.0"
34.75.215.252 - - [29/Aug/2026:07:32:51 +0800] "GET /wp-config.php.bak HTTP/1.1" 301 457 "-" "crusader-worker/1.0"
...
show less
Brute-Force
🇺🇸
Victor López
2026-08-28 20:36:05
(1 week ago)
empresarioexpress.com 34.75.215.252 - - [28/Aug/2026:15:36:05 -0500] "GET /_ignition/health-check HT ...
show more
empresarioexpress.com 34.75.215.252 - - [28/Aug/2026:15:36:05 -0500] "GET /_ignition/health-check HTTP/1.1" 444 0 "-" "crusader-worker/1.0" -
empresarioexpress.com 34.75.215.252 - - [28/Aug/2026:15:36:05 -0500] "GET /env HTTP/1.1" 444 0 "-" "crusader-worker/1.0" -
empresarioexpress.com 34.75.215.252 - - [28/Aug/2026:15:36:05 -0500] "GET /.env.example HTTP/1.1" 444 0 "-" "crusader-worker/1.0" -
...
show less
Hacking
Web App Attack
🇳🇱
i-turnradio.nl
2026-08-28 19:29:57
(1 week ago)
2026-08-28 @ 21:29:57 (CET) ~ Blocked for trying to access: /env
Web App Attack
🇸🇪
vaia.cloud
2026-08-28 18:45:48
(1 week ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇩🇪
neckaralb-admin.de
2026-08-28 17:23:49
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
Lee Daniel
2026-08-28 16:41:28
(1 week ago)
34.75.215.252 - - [28/Aug/2026:12:41:27 -0400] "GET /.env HTTP/1.1" 403 6284 "-" "crusader-worker/1. ...
show more
34.75.215.252 - - [28/Aug/2026:12:41:27 -0400] "GET /.env HTTP/1.1" 403 6284 "-" "crusader-worker/1.0"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 15:10:01
(1 week ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 13:42:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.75.215.252 (252.215.75.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.215.252 (252.215.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 09:42:25.029274 2026] [security2:error] [pid 23688:tid 23688] [client 34.75.215.252:34726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boederinteriordesign.com"] [uri "/.env.local"] [unique_id "apGQQVAQZsu4T5GAYnTDQAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-08-28 13:39:28
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇧🇷
Halux
2026-08-28 12:47:21
(1 week ago)
34.75.215.252 Probing protected path or service
Web App Attack
🇩🇪
AetherFox
2026-08-28 12:19:19
(1 week ago)
AetherFox VoidGuard detected: [Fri Aug 28 14:19:18.591255 2026] [authz_core:error] [pid 241729:tid 2 ...
show more
AetherFox VoidGuard detected: [Fri Aug 28 14:19:18.591255 2026] [authz_core:error] [pid 241729:tid 241749] [client 34.75.215.252:46940] AH01630: client denied by server configuration: proxy:https://136.243.123.86/.env.dev
[Fri Aug 28 14:19:18.595061 2026] [authz_core:error] [pid 241698:tid 241701] [client 34.75.215.252:47002] AH01630: client denied by server configuration: proxy:https://136.243.123.86/storage/logs/laravel.log
[Fri Aug 28 14:19:18.595126 2026] [authz_core:error] [pid 241698:tid 241701] [client 34.75.215.252:47002] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html
[Fri Aug 28 14:19:18.598111 2026] [authz_core:error] [pid 241698:tid 241703] [client 34.75.215.252:47020] AH01630: client denied by server configuration: proxy:https://136.243.123.86/wp-config.php.bak
[Fri Aug 28 14:19:18.598174 2026] [authz_core:error] [pid 241698:tid 241703] [client 34.75.215.252:47020] AH01630: client denied by server configuration: /var/www/ERR
...
show less
Bad Web Bot
Web App Attack