Anonymous
2026-08-23 20:14:24
(1 week ago)
LH-Watcher: FAKE_ID [Fake Googlebot]
Bad Web Bot
Anonymous
2026-07-18 15:18:02
(1 month ago)
LH-Watcher: FAKE_ID [Fake Googlebot]
Bad Web Bot
🇫🇷
masterguru
2026-07-02 10:23:06
(2 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-135)
show less
Bad Web Bot
🇪🇸
librebit
2026-06-21 15:14:35
(2 months ago)
Brute force
Brute-Force
🇺🇦
URAN Publishing Service
2026-05-04 15:09:14
(3 months ago)
104.234.32.32 - - [04/May/2026:18:09:11 +0300] "GET /wp-login.php HTTP/1.1" 404 3360 "https://www.go ...
show more
104.234.32.32 - - [04/May/2026:18:09:11 +0300] "GET /wp-login.php HTTP/1.1" 404 3360 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:121.0) Gecko/20100101 Firefox/121.0"
104.234.32.32 - - [04/May/2026:18:09:13 +0300] "GET /wp-admin/ HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
...
show less
Web App Attack
🇬🇧
thetomtaylor.co.uk
2026-05-02 17:07:01
(4 months ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
maxxsense
2026-04-14 03:00:21
(4 months ago)
104.234.32.32 (US/United States/-), 12 distributed imapd attacks on account [redacted]
Brute-Force
🇩🇪
todix
2026-04-07 02:48:44
(4 months ago)
Wordpress brute force or spam attempt from 104.234.32.32
Brute-Force
🇦🇺
screwlooseit.com.au
2026-04-07 01:35:55
(4 months ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
CA/Canada/-
Web App Attack
🇳🇱
Pornomens
2026-02-09 18:00:14
(6 months ago)
104.234.32.32 - - [09/Feb/2026:18:59:47 +0100] "GET /aws.json HTTP/1.1" 403 4001 "-" "Mozilla/5.0 (W ...
show more
104.234.32.32 - - [09/Feb/2026:18:59:47 +0100] "GET /aws.json HTTP/1.1" 403 4001 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
104.234.32.32 - - [09/Feb/2026:18:59:58 +0100] "GET /_wpeprivate/config.json HTTP/1.1" 403 4001 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
104.234.32.32 - - [09/Feb/2026:19:00:13 +0100] "GET /assets/env.js HTTP/1.1" 403 4001 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-02-03 11:20:16
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 06:20:11.660092 2026] [security2:error] [pid 28140:tid 28140] [client 104.234.32.32:37019] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.215"] [uri "/wp-admin/.env"] [unique_id "aYHZ68_1Nfuu21MimuLzTwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-03 09:08:02
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 04:07:57.466006 2026] [security2:error] [pid 31883:tid 31883] [client 104.234.32.32:64983] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.51"] [uri "/conf/.env"] [unique_id "aYG67cU9dhtovUO-3cAbbwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-03 07:05:58
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 02:05:54.877132 2026] [security2:error] [pid 2454928:tid 2454928] [client 104.234.32.32:38661] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.99"] [uri "/.env"] [unique_id "aYGeUslhRnbpCIwJFCmZJQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-03 03:27:52
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 02 22:27:43.626436 2026] [security2:error] [pid 10727:tid 10727] [client 104.234.32.32:21019] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.209"] [uri "/.env"] [unique_id "aYFrL4dgDUhaUTbpNK1SQwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-02 12:15:49
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 02 07:15:44.173713 2026] [security2:error] [pid 3228:tid 3228] [client 104.234.32.32:43591] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.108"] [uri "/conf/.env"] [unique_id "aYCVcBsgT7t8kN8aJvnqMwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack