๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 21:59:50
(2 weeks ago)
Auto-ban: 264 malicious requests on 2026-06-08 (e.g., env/backup probes, brute-force, or error burst ...
show more
Auto-ban: 264 malicious requests on 2026-06-08 (e.g., env/backup probes, brute-force, or error bursts).
show less
Web App Attack
SSH
Hacking
Anonymous
2026-06-08 17:01:57
(3 weeks ago)
scanning for potential vulnerable apps (wordpress etc.) and database accesses (GHR). Requested URI: ...
show more
scanning for potential vulnerable apps (wordpress etc.) and database accesses (GHR). Requested URI: /actuator/configprops
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-06-08 11:29:11
(3 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
MakoWish
2026-06-08 09:48:16
(3 weeks ago)
Fuzzing for misconfigured web servers.
Hacking
Web App Attack
๐จ๐ญ
zynex
2026-06-08 09:36:13
(3 weeks ago)
URL Probing: /config/settings.php
Web App Attack
๐บ๐ธ
mnsf
2026-06-08 09:08:06
(3 weeks ago)
Too many Status 40X (11)
Scanning/Probing (61)
Request Overload (383)
Brute-Force
Web App Attack
๐ฉ๐ช
Marc
2026-06-08 08:36:00
(3 weeks ago)
34.141.39.67 - - [08/Jun/2026:10:36:00 +0200] "GET /.gitlab-ci.yml HTTP/1.1" 404 3234 "-" "Nokia6630 ...
show more
34.141.39.67 - - [08/Jun/2026:10:36:00 +0200] "GET /.gitlab-ci.yml HTTP/1.1" 404 3234 "-" "Nokia6630/1.0 (2.39.15) SymbianOS/8.0 Series60/2.6 Profile/MIDP-2.0 Configuration/CLDC-1.1" 34.141.39.67 - - [08/Jun/2026:10:36:00 +0200] "GET /.github/workflows/ci.yml HTTP/1.1" 404 3233 "-" "Links (2.3pre1; Linux 2.6.38-8-generic x86_64; 170x48)" 34.141.39.67 - - [08/Jun/2026:10:36:00 +0200] "GET /.github/workflows/production.yml HTTP/1.1" 404 3234 "-" "Mozilla/5.0 (Linux; Android 9; moto x4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
show less
Brute-Force
๐ซ๐ท
masterguru
2026-06-08 07:31:30
(3 weeks ago)
BAD BOT - Detected and Blocked.. Matched phrase "jaunt" at REQUEST_HEADERS:User-Agent. (1100000-196)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-08 06:09:19
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.141.39.67 (67.39.141.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.141.39.67 (67.39.141.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 02:09:14.591571 2026] [security2:error] [pid 15288:tid 15288] [client 34.141.39.67:60264] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||deweysearch.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "deweysearch.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiZcii59NpOU8aycnFnDtAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 03:30:36
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.141.39.67 (67.39.141.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.141.39.67 (67.39.141.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 23:30:30.989645 2026] [security2:error] [pid 14842:tid 14842] [client 34.141.39.67:47586] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.mcfdemos.kmelson.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.mcfdemos.kmelson.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiY3VlRyTiBvaQs76Q4xoQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 02:47:16
(3 weeks ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ฎ๐น
VHosting
2026-06-08 01:40:04
(3 weeks ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-08 01:20:10
(3 weeks ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 00:58:12
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.141.39.67 (67.39.141.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.141.39.67 (67.39.141.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 20:58:08.149143 2026] [security2:error] [pid 32118:tid 32118] [client 34.141.39.67:43046] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||brianchancemusic.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brianchancemusic.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiYToEQcKeSvb38VEdT8iAAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
todix
2026-06-08 00:34:32
(3 weeks ago)
WebAttack or semilar from 34.141.39.67
Web App Attack