๐ช๐ธ
el-brujo
2026-10-08 05:48:16
(1 day ago)
08/Oct/2026:07:48:16.104411 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
08/Oct/2026:07:48:16.104411 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.151.241.137] ModSecurity: Warning. Pattern match "(?i)(?:\\\\\\\\x5c|(?:%(?:c(?:0%(?:[2aq]f|5c|9v)|1%(?:[19p]c|8s|af))|2(?:5(?:c(?:0%25af|1%259c)|2f|5c)|%46|f)|(?:(?:f(?:8%8)?0%8|e)0%80%a|bg%q)f|%3(?:2(?:%(?:%6|4)6|F)|5%%63)|u(?:221[56]|002f|EFC8|F025)|1u|5c)|0x(?:2f|5c)|\\\\\\\\/))(?:%(?:(?:f(?:(?:c%80|8)%8)?0%8 ..." at REQUEST_URI_RAW. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "48"] [id "930100"] [msg "Path Traversal Attack (/../)"] [data "Matched Data: /..%252f found within REQUEST_URI_RAW: /@fs/..%252f..%252f..%252f..%252f..%252fproc/self/environ?raw??"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [hostname "grafana.elhacker.net"] [uri "/@fs/..%2f..%2f..%2f..%2f..
...
show less
Hacking
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-10-08 04:18:35
(1 day ago)
Wordpress malicious attack:[octamissingdomain]
Web App Attack
๐บ๐ธ
abuse-opdc
2026-10-07 23:10:59
(1 day ago)
Malicious HTTP requests matching injection/exploit signatures.
Web App Attack
Brute-Force
๐ซ๐ท
SpaceHost-Server
2026-10-07 22:21:43
(1 day ago)
Brute-Force
Web App Attack
๐ช๐ธ
robotstxt
2026-10-07 20:32:10
(1 day ago)
34.151.241.137 - - [07/Oct/2026:20:31:38 +0000] "GET /build/manifest.json HTTP/2.0" 403 16174 "https ...
show more
34.151.241.137 - - [07/Oct/2026:20:31:38 +0000] "GET /build/manifest.json HTTP/2.0" 403 16174 "https://wpsysadmin.com/build/manifest.json" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "-" edge="34.151.241.137"
34.151.241.137 - - [07/Oct/2026:20:31:39 +0000] "GET /afmqzjzg2o3jd4pcq3xl/ HTTP/2.0" 403 16898 "https://www.wpsysadmin.com/afmqzjzg2o3jd4pcq3xl" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)" "-" edge="34.151.241.137"
34.151.241.137 - - [07/Oct/2026:20:31:40 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 16174 "https://wpsysadmin.com/.vite/manifest.json" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "-" edge="34.151.241.137"
34.151.241.137 - - [07/Oct/2026:20:31:40 +0000] "GET /dist/manifest.json HTTP/2.0" 403 16174 "https://wpsysadmin.com/dist/manifest.json" "Mozilla/5.0 (Macintosh; Intel
...
show less
Web App Attack
๐ซ๐ท
GabrielJST
2026-10-07 19:52:28
(1 day ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.151.241.137 (BR/B ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.151.241.137 (BR/Brazil/137.241.151.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐ฒ๐พ
Rizzy
2026-10-07 19:24:34
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 18:28:28
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.151.241.137 (137.241.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.151.241.137 (137.241.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 14:28:22.665993 2026] [security2:error] [pid 27355:tid 27355] [client 34.151.241.137:46680] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||rimworld.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "rimworld.com"] [uri "/z9x8c7v6b5-debug-trigger-rimworld.com"] [unique_id "asaPRkMPLGU7_bkxPojSQwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
Telemetry2U.com
2026-10-07 17:52:59
(2 days ago)
Unauthorized connection attempt to port 8080
Hacking
๐ง๐ช
voormedia
2026-10-07 17:35:22
(2 days ago)
Accessed trap at '/.env'
Web App Attack
๐บ๐ธ
RLDD
2026-10-07 17:35:02
(2 days ago)
WP probing for vulnerabilities -nov
Web App Attack
๐ซ๐ฎ
sibahota
2026-10-07 17:23:31
(2 days ago)
34.151.241.137 - - [07/Oct/2026:17:23:28 +0000] nidandiagnostic.com "GET /.npmrc HTTP/2.0" 403 26 0. ...
show more
34.151.241.137 - - [07/Oct/2026:17:23:28 +0000] nidandiagnostic.com "GET /.npmrc HTTP/2.0" 403 26 0.000 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)" - - - "http://nidandiagnostic.com"
...
show less
Web App Attack
Brute-Force
๐น๐ญ
MWA SOC
2026-10-07 17:15:57
(2 days ago)
Hacking
๐ฉ๐ช
Sรฉfora Srl
2026-10-07 17:12:47
(2 days ago)
crowdsecurity/http-sensitive-files detected by CrowdSec
Web App Attack
๐ซ๐ท
COMAITE
2026-10-07 17:01:25
(2 days ago)
Suspicious URL access.
Web App Attack