Anonymous
2026-10-05 00:05:07
(3 days ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐ฉ๐ช
rh24
2026-10-04 23:13:19
(3 days ago)
(badbots) Bad bot user-agent [redacted] from 34.146.220.70 (JP/Japan/70.220.146.34.bc.googleusercont ...
show more
(badbots) Bad bot user-agent [redacted] from 34.146.220.70 (JP/Japan/70.220.146.34.bc.googleusercontent.com)
show less
Hacking
๐ณ๐ฑ
Alt255
2026-10-04 23:10:35
(3 days ago)
[ti-02ov] Web exploit scanning: 3 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-02ov] Web exploit scanning: 3 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.146.220.70 - - [05/Oct/2026:01:10:28 +0200] "GET /assets../.env HTTP/2.0" 403 538 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)"
34.146.220.70 - - [05/Oct/2026:01:10:28 +0200] "GET /images../.env HTTP/2.0" 404 2004 "-" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)"
34.146.220.70 - - [05/Oct/2026:01:10:28 +0200] "GET /build../.env HTTP/2.0" 404 2004 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)"
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-10-04 23:05:03
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-10-04 23:00:23
(3 days ago)
34.146.220.70 detected on srv01
Brute-Force
๐ฉ๐ช
LRob
2026-10-04 22:51:54
(3 days ago)
Wordlist path sweep | method: GET, POST | path: /asset-manifest.json, /667sb1qkxydxu9ji5lh4, /bhue1m ...
show more
Wordlist path sweep | method: GET, POST | path: /asset-manifest.json, /667sb1qkxydxu9ji5lh4, /bhue1mm7k087ap1npd80 (+9 more) | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36, Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/), Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 22:37:19
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.220.70 (70.220.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.220.70 (70.220.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 18:37:09.080754 2026] [security2:error] [pid 5984:tid 5984] [client 34.146.220.70:58364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tckgbookkeeping.biz"] [uri "/.htpasswd"] [unique_id "asLVFTqcWjB5XK69hJRjpwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-04 22:35:35
(3 days ago)
Excessive multi-domain requests
Brute-Force
๐ง๐ช
cmbplf
2026-10-04 22:33:30
(3 days ago)
932 requests with url.path */@fs/*
111 requests with url.path *.ssh/*
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Savvii
2026-10-04 22:24:37
(3 days ago)
20 attempts against mh_ha-misbehave-ban on pf221116
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 22:10:58
(3 days ago)
Fail2Ban apache-noscript
Bad Web Bot
๐ช๐ธ
scaballe
2026-10-04 22:03:33
(3 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 21:35:53
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.220.70 (70.220.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.220.70 (70.220.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 17:35:50.293216 2026] [security2:error] [pid 6674:tid 6674] [client 34.146.220.70:59354] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "neneh.biz"] [uri "/appearance/../../.env"] [unique_id "asLGthoIf1a140LAwHqeigAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 21:19:27
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.220.70 (70.220.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.220.70 (70.220.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 17:19:20.827199 2026] [security2:error] [pid 3178947:tid 3178971] [client 34.146.220.70:53316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marinkovich.biz"] [uri "/.htpasswd"] [unique_id "asLC2DoRuw15HhY8aj27hAAAANY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-04 21:11:04
(3 days ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack