๐ฉ๐ช
Bedios GmbH
2026-09-01 09:55:50
(3 hours ago)
Login credentials theft attempt
Hacking
๐ฒ๐พ
Rizzy
2026-09-01 09:54:44
(3 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 09:48:55
(3 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
Anonymous
2026-09-01 09:34:26
(3 hours ago)
(config_exploit_scan) Configuratie Scanner / Nep GPTBot 34.88.59.172 (172.59.88.34.bc.googleusercont ...
show more
(config_exploit_scan) Configuratie Scanner / Nep GPTBot 34.88.59.172 (172.59.88.34.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.88.59.172 - - [01/Sep/2026:11:34:23 +0200] "GET /.env.dev HTTP/1.1" 406 4830 "-" "crusader-worker/1.0"
34.88.59.172 - - [01/Sep/2026:11:34:23 +0200] "GET /.env.example HTTP/1.1" 406 4829 "-" "crusader-worker/1.0"
34.88.59.172 - - [01/Sep/2026:11:34:23 +0200] "GET /.env.backup HTTP/1.1" 406 4830 "-" "crusader-worker/1.0"
show less
Port Scan
๐ฉ๐ช
LRob
2026-09-01 08:35:30
(4 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /wp-config.php.bak (+9 more) | 2026-09-01 08:35 UTC
show less
Hacking
Web App Attack
๐จ๐ฆ
Anytech
2026-09-01 08:28:57
(4 hours ago)
Blocked by ConnMonitor
Web App Attack
๐ซ๐ฎ
paissangroup
2026-09-01 08:24:29
(4 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-01 07:14:06
(5 hours ago)
[01/Sep/2026:10:14:05 +0300] -- 34.88.59.172 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /w ...
show more
[01/Sep/2026:10:14:05 +0300] -- 34.88.59.172 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /wp-config.php.bak HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
sthoyer.de
2026-09-01 06:28:31
(6 hours ago)
34.88.59.172 - - [01/Sep/2026:08:28:30 +0200] "GET /wp-config.php.swp HTTP/1.1" 302 794 "-" "crusade ...
show more
34.88.59.172 - - [01/Sep/2026:08:28:30 +0200] "GET /wp-config.php.swp HTTP/1.1" 302 794 "-" "crusader-worker/1.0"
34.88.59.172 - - [01/Sep/2026:08:28:30 +0200] "GET /.env.example HTTP/1.1" 302 794 "-" "crusader-worker/1.0"
34.88.59.172 - - [01/Sep/2026:08:28:30 +0200] "GET /.env.dev HTTP/1.1" 302 794 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:08:50
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.59.172 (172.59.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.59.172 (172.59.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:08:44.093553 2026] [security2:error] [pid 226452:tid 226485] [client 34.88.59.172:35612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cmykdesign.com"] [uri "/wp-config.php.bak"] [unique_id "apZr7N8rDBwRmC-l-5gF6wAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-01 04:46:02
(8 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 04:25:53
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.59.172 (172.59.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.59.172 (172.59.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 00:25:46.171513 2026] [security2:error] [pid 4359:tid 4359] [client 34.88.59.172:34832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boat-registration-italy.com"] [uri "/.env.example"] [unique_id "apZTyhAhZUXj71n2Tyl7gQAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 04:18:54
(8 hours ago)
Web scanner: GET /wp-config.php.swp
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 03:38:52
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.59.172 (172.59.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.59.172 (172.59.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 23:38:47.135554 2026] [security2:error] [pid 19235:tid 19235] [client 34.88.59.172:33906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amazingfittings.amazinghydraulics.com"] [uri "/.env.example"] [unique_id "apZIx5feKFa_7Pnd83sjeAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 02:39:01
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.59.172 (172.59.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.59.172 (172.59.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 22:38:55.181931 2026] [security2:error] [pid 27078:tid 27078] [client 34.88.59.172:36294] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.petersonzeyerlaw.com"] [uri "/.env.prod"] [unique_id "apY6v-6_m3orfEMsKj84rgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack