Anonymous
2026-08-28 14:29:00
(8 hours ago)
Excessive crawling/scraping. Vulnerable file probing.
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
ciccio diddo
2026-08-28 13:45:57
(9 hours ago)
High Burst multiple 40X port:Tcp/80,443
Brute-Force
Web App Attack
๐ช๐ธ
masterguru
2026-08-28 13:10:06
(9 hours ago)
BAD BOT - Detected and Blocked.. Matched phrase "OAI-SearchBot" at REQUEST_HEADERS:User-Agent. (1100 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "OAI-SearchBot" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
๐ฉ๐ช
zumbo.net
2026-08-28 12:37:38
(10 hours ago)
[Fri Aug 28 15:35:31.462315 2026] [proxy_fcgi:error] [pid 1873783:tid 1873839] [client 34.153.209.14 ...
show more
[Fri Aug 28 15:35:31.462315 2026] [proxy_fcgi:error] [pid 1873783:tid 1873839] [client 34.153.209.147:0] AH01071: Got error 'Primary script unknown'
[Fri Aug 28 15:35:31.473782 2026] [proxy_fcgi:error] [pid 1873783:tid 1873805] [client 34.153.209.147:0] AH01071: Got error 'Primary script unknown'
[Fri Aug 28 15:35:44.108811 2026] [proxy_fcgi:error] [pid 1873783:tid 1873790] [client 34.153.209.147:0] AH01071: Got error 'Primary script unknown'
[Fri Aug 28 15:35:44.143788 2026] [proxy_fcgi:error] [pid 1873783:tid 1873827] [client 34.153.209.147:0] AH01071: Got error 'Primary script unknown'
[Fri Aug 28 15:37:37.532808 2026] [proxy_fcgi:error] [pid 1873783:tid 1873795] [client 34.153.209.147:0] AH01071: Got error 'Primary script unknown', referer: https://www.surafikihkurulu.com/wp-config.php
...
show less
Brute-Force
Web App Attack
๐ธ๐ช
SkyDancer
2026-08-28 12:26:29
(10 hours ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
๐ณ๐ฑ
BlueWire Hosting
2026-08-28 11:55:33
(11 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ง๐พ
lns.bz
2026-08-28 10:57:57
(12 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-28 10:35:30
(12 hours ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
maxxsense
2026-08-28 10:11:09
(12 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.153.209.147 (JP/Japan/147.209.153.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.153.209.147 (JP/Japan/147.209.153.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
yvoictra
2026-08-28 09:01:11
(13 hours ago)
Bloqueado automรกticamente por CrowdSec. Escenario: crowdsecurity/http-probing
Web App Attack
๐ช๐ธ
el-brujo
2026-08-28 07:51:40
(15 hours ago)
28/Aug/2026:09:51:40.389011 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
28/Aug/2026:09:51:40.389011 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.153.209.147] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /@fs/app/.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "quads.ddns.net"] [uri "/@fs/app/.env"] [unique_id "apE-DAhEVuynNmRmOQzLFwAAAzw"]
...
show less
Hacking
Web App Attack
Anonymous
2026-08-28 07:33:27
(15 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 07:00:19
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.153.209.147 (147.209.153.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.153.209.147 (147.209.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:00:11.914425 2026] [security2:error] [pid 10857:tid 10857] [client 34.153.209.147:13024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.hamiltoncountyuca.org"] [uri "/@fs/.env"] [unique_id "apEx-wX4h0B30vK4cDK1VwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:09:03
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.153.209.147 (147.209.153.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.153.209.147 (147.209.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:08:55.521752 2026] [security2:error] [pid 22028:tid 22028] [client 34.153.209.147:42812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.xyncom.com"] [uri "/@fs/root/.env"] [unique_id "apEl9xI74jLL1n9Pp7mwowAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 05:42:32
(17 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.153.209.147 (147.209.153.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:949110) triggered by 34.153.209.147 (147.209.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:42:23.567881 2026] [security2:error] [pid 4665:tid 4665] [client 34.153.209.147:37394] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "hallemann.crazycontrols.com"] [uri "/@fs/root/.env"] [unique_id "apEfv3MX7BiYRh9Rt2dHKwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack