๐จ๐ฆ
Mediashaker
2026-10-02 21:25:20
(13 minutes ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.146.8.54 (JP/Japa ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.146.8.54 (JP/Japan/54.8.146.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐ฑ๐น
Evag Touf
2026-10-02 18:24:47
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.146.8.54 (JP/Japan/54.8.146.34.bc.go ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.146.8.54 (JP/Japan/54.8.146.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
raph
2026-10-02 18:14:09
(3 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ฆ๐น
Renรฉ Hickersberger
2026-10-02 18:10:01
(3 hours ago)
malicious bot detected: violations="ignored-robots-policy"; user_agent="DuckAssistBot/1.1 (https://d ...
show more
malicious bot detected: violations="ignored-robots-policy"; user_agent="DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)"
show less
Bad Web Bot
๐ณ๐ฑ
Alt255
2026-10-02 17:36:16
(4 hours ago)
[ti-26al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[ti-26al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 34.146.8.54 - - [02/Oct/2026:19:36:00 +0200] "GET /z9x8c7v6b5-debug-trigger-internal.ngurepair.com HTTP/1.1" 404 2065 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
34.146.8.54 - - [02/Oct/2026:19:36:00 +0200] "GET /reset-password HTTP/1.1" 404 2065 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.146.8.54 - - [02/Oct/2026:19:36:00 +0200] "GET /nezno5pa6bcdjpk2yj2a HTTP/1.1" 404 2065 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)"
34.146.8.54 - - [02/Oct/2026:19:36:00 +0200] "GET /admin HTTP/1.1" 404 7783 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 15:55:42
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.146.8.54 (54.8.146.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.8.54 (54.8.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 11:55:38.554313 2026] [security2:error] [pid 24365:tid 24365] [client 34.146.8.54:43376] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.flyingdodopublications.com"] [uri "/@fs/../.env"] [unique_id "ar_T-q2ABgzEg37KPlGqAQAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-10-02 15:29:00
(6 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-10-02 14:46:05
(6 hours ago)
34.146.8.54 - - [02/Oct/2026:09:46:04 -0500] "GET /.env?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (comp ...
show more
34.146.8.54 - - [02/Oct/2026:09:46:04 -0500] "GET /.env?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)" 34.146.8.54
34.146.8.54 - - [02/Oct/2026:09:46:04 -0500] "GET /.env?import&raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot" 34.146.8.54
34.146.8.54 - - [02/Oct/2026:09:46:04 -0500] "GET /.env?import&url&inline HTTP/1.1" 403 199 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )" 34.146.8.54
34.146.8.54 - - [02/Oct/2026:09:46:04 -0500] "GET /.env.local?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 34.146.8.54
34.146.8.54 - - [02/Oct/2026:09:46:04 -0500] "GET /.env.local?import&raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.ama
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
strefapi_com
2026-10-02 13:46:23
(7 hours ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐ฌ๐ง
WebNiraj
2026-10-02 12:56:43
(8 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.146.8.54 (JP/Japan/54.8.146.34.bc.googleuser ...
show more
(mod_security) mod_security (id:949110) triggered by 34.146.8.54 (JP/Japan/54.8.146.34.bc.googleusercontent.com): 5 in the last 3600 secs [SIGMA]
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-02 12:42:08
(8 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.146.8.54 (54.8.146.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.146.8.54 (54.8.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 08:42:03.714921 2026] [security2:error] [pid 7718:tid 7718] [client 34.146.8.54:42212] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||newlistings.iainrealtor.com|F|2"] [data ".iainrealtor.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "newlistings.iainrealtor.com"] [uri "/z9x8c7v6b5-debug-trigger-newlistings.iainrealtor.com"] [unique_id "ar-mm2fatgpEdLyNGIkubAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-02 11:58:48
(9 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฆ๐บ
AWW-Admin
2026-10-02 11:50:17
(9 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.146.8.54 (JP/Japan/54.8.146.34.bc.go ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.146.8.54 (JP/Japan/54.8.146.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-10-02 11:19:47
(10 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.146.8.54 (54.8.146.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.146.8.54 (54.8.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 07:19:42.129322 2026] [security2:error] [pid 611:tid 611] [client 34.146.8.54:54604] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.netstatsolutions.com|F|2"] [data ".netstatsolutions.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.netstatsolutions.com"] [uri "/z9x8c7v6b5-debug-trigger-www.netstatsolutions.com"] [unique_id "ar-TTktWxNFDv12c0xdRtQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-02 10:56:54
(10 hours ago)
Banned by Fail2Ban on server
Web App Attack