๐ฒ๐ฝ
octageeks.com
2026-09-23 04:17:42
(21 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
Anonymous
2026-09-22 16:15:35
(1 day ago)
[ssd5.kdns.gr] httpd-config-scan: sites=www.dentallaboratory.gr; logs=/var/log/httpd/domains/dentall ...
show more
[ssd5.kdns.gr] httpd-config-scan: sites=www.dentallaboratory.gr; logs=/var/log/httpd/domains/dentallaboratory.gr.log; samples=/%2eenv | /api/.env/public/.env | //.env
show less
Hacking
Web App Attack
๐จ๐ฆ
Anytech
2026-09-22 16:09:24
(1 day ago)
Blocked by ConnMonitor
Web App Attack
Anonymous
2026-09-22 15:32:30
(1 day ago)
2026/09/22 17:32:24 [error] 2433724#2433724: *119365 access forbidden by rule, client: 34.148.150.13 ...
show more
2026/09/22 17:32:24 [error] 2433724#2433724: *119365 access forbidden by rule, client: 34.148.150.137, server: freeflight.org.za, request: "GET /.vite/manifest.json HTTP/2.0", host: "freeflight.org.za"
2026/09/22 17:32:24 [error] 2433724#2433724: *119365 access forbidden by rule, client: 34.148.150.137, server: freeflight.org.za, request: "GET /dist/.vite/manifest.json HTTP/2.0", host: "freeflight.org.za"
2026/09/22 17:32:29 [error] 2433724#2433724: *119365 access forbidden by rule, client: 34.148.150.137, server: freeflight.org.za, request: "GET /api/.env HTTP/2.0", host: "freeflight.org.za"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 15:03:20
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.148.150.137 (137.150.148.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.148.150.137 (137.150.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:03:13.437393 2026] [security2:error] [pid 21501:tid 21501] [client 34.148.150.137:36058] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||hierrosbernal.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hierrosbernal.com"] [uri "/z9x8c7v6b5-debug-trigger-hierrosbernal.com"] [unique_id "arKYsT2jbT236MUA6Is2fwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-22 14:09:24
(1 day ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-22 14:05:45
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 14:04:20
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.148.150.137 (137.150.148.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.148.150.137 (137.150.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 10:04:15.979540 2026] [security2:error] [pid 19153:tid 19153] [client 34.148.150.137:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||luisguacache.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "luisguacache.com"] [uri "/z9x8c7v6b5-debug-trigger-luisguacache.com"] [unique_id "arKK3-nNXEzmhMFDFh9-RAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
thezelijah
2026-09-22 13:59:25
(1 day ago)
Instant triage triggered (malicious-request | suspicious-query | query-attack | high | query-travers ...
show more
Instant triage triggered (malicious-request | suspicious-query | query-attack | high | query-traversal). AbuseIPDB 68 (12 reports) | VirusTotal: 0/89 engines flagged (none)
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
LoneRider
2026-09-22 13:56:31
(1 day ago)
[22/Sep/2026:15:56:29.030817 +0200] arKJDeZUfkfIx709xpzQIAAAAAE 34.148.150.137 56922 127.0.0.1 7081
...
show more
[22/Sep/2026:15:56:29.030817 +0200] arKJDeZUfkfIx709xpzQIAAAAAE 34.148.150.137 56922 127.0.0.1 7081
[22/Sep/2026:15:56:29.672839 +0200] arKJDeZUfkfIx709xpzQIwAAAAE 34.148.150.137 57170 127.0.0.1 7081
[22/Sep/2026:15:56:30.791140 +0200] arKJDp4EYIU4mmaCJ1OL3wAAAAI 34.148.150.137 52392 127.0.0.1 7081
...
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-22 13:46:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.150.137 (137.150.148.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.150.137 (137.150.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 09:46:11.254098 2026] [security2:error] [pid 29444:tid 29444] [client 34.148.150.137:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mindmaterial.io"] [uri "/.env.example"] [unique_id "arKGo9SWK0abN_n26M60DAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Niko's Stuff
2026-09-22 13:26:01
(1 day ago)
Triggered crowdsecurity/http-probing. More information at: https://app.crowdsec.net/cti/34.148.150.1 ...
show more
Triggered crowdsecurity/http-probing. More information at: https://app.crowdsec.net/cti/34.148.150.137
show less
Web App Attack
Hacking
๐ฉ๐ช
YF
2026-09-22 13:00:16
(1 day ago)
404 errors Vulnerability scan
Web App Attack
๐ฉ๐ช
33three
2026-09-22 12:25:30
(1 day ago)
Fail2Ban jail WebAttack triggered
Brute-Force
๐ณ๐ฑ
Site.eu
2026-09-22 11:58:43
(1 day ago)
Excessive 404/403 errors
Brute-Force