Anonymous
2026-06-22 00:05:57
(26 minutes ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Malicious User-Agent
show less
Bad Web Bot
Web App Attack
Anonymous
2026-06-21 05:04:13
(19 hours ago)
Portscan: TCP/80 (6x), TCP/443 (3x)
Port Scan
๐ซ๐ท
Octopuce
2026-06-21 01:16:36
(23 hours ago)
Aggressive web search of vulnerable pages: /wordpress/ /backup/ /old/ /new/ /wp/ /blog/ /wordpress/ ...
show more
Aggressive web search of vulnerable pages: /wordpress/ /backup/ /old/ /new/ /wp/ /blog/ /wordpress/ /blog/ /backup/ /old/ /new/ /wp/ /wordpress ...
show less
Web App Attack
๐ฉ๐ช
roxyapi
2026-06-21 01:03:00
(23 hours ago)
Honeypot: automated vulnerability scan / web app attack. Last probe: HEAD /old
Web App Attack
Bad Web Bot
๐ซ๐ท
masterguru
2026-06-21 00:26:05
(1 day ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.162.251.154 (154.251.162.34.bc.googleuserco ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.162.251.154 (154.251.162.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-196)
show less
Hacking
๐ฌ๐ท
setupgr
2026-06-21 00:25:40
(1 day ago)
(mod_security) mod_security (id:11000011) triggered by 34.162.251.154 (-): 1 in the last 86400 secs; ...
show more
(mod_security) mod_security (id:11000011) triggered by 34.162.251.154 (-): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 21 03:25:37.756960 2026] [security2:error] [pid 554249:tid 554283] [client 34.162.251.154:41576] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "131"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 154.251.162.34.bc.googleusercontent.com"] [severity "CRITICAL"] [hostname "www.davids.gr"] [uri "/wordpress/"] [unique_id "ajcvge6odY7VUE--6TEwHgAAAMU"]
show less
Port Scan
๐บ๐ธ
technojoe99
2026-06-21 00:10:10
(1 day ago)
Exploit scan from 34.162.251.154. HEAD /wordpress/ HTTP/1.1.
Web App Attack
Anonymous
2026-06-20 23:20:04
(1 day ago)
Automatic report - Vulnerability scan
/wordpress/
Web App Attack
Anonymous
2026-06-20 23:06:26
(1 day ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Malicious User-Agent
show less
Bad Web Bot
Web App Attack
๐ฆ๐ฑ
router.al
2026-06-20 23:01:57
(1 day ago)
06/20/2026-23:01:57.172182 34.162.251.154 Protocol: 6 GPL WEB_SERVER 403 Forbidden
Port Scan
๐ฉ๐ช
AetherFox
2026-06-20 22:49:23
(1 day ago)
AetherFox VoidGuard detected: [Sat Jun 20 22:49:22.492671 2026] [authz_core:error] [pid 1404588:tid ...
show more
AetherFox VoidGuard detected: [Sat Jun 20 22:49:22.492671 2026] [authz_core:error] [pid 1404588:tid 1404628] [client 34.162.251.154:60956] AH01630: client denied by server configuration: proxy:https://[MASKED]/wordpress/, referer: http://www.dranet.de/wordpress/
[Sat Jun 20 22:49:22.688920 2026] [authz_core:error] [pid 1404588:tid 1404592] [client 34.162.251.154:60956] AH01630: client denied by server configuration: proxy:https://[MASKED]/blog/, referer: http://www.dranet.de/blog/
[Sat Jun 20 22:49:22.885784 2026] [authz_core:error] [pid 1404588:tid 1404619] [client 34.162.251.154:60956] AH01630: client denied by server configuration: proxy:https://[MASKED]/backup/, referer: http://www.dranet.de/backup/
[Sat Jun 20 22:49:23.082210 2026] [authz_core:error] [pid 1404588:tid 1404612] [client 34.162.251.154:60956] AH01630: client denied by server configuration: proxy:https://[MASKED]/old/, referer: http://www.dranet.de/old/
[Sat Jun 20 22:49:23.278365 2026]
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
rellik
2026-06-20 22:47:00
(1 day ago)
Brute Force Scanning Critical Directories
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
todix
2026-06-20 21:25:36
(1 day ago)
WebAttack or semilar from 34.162.251.154
Web App Attack
๐ฌ๐ท
setupgr
2026-06-20 20:40:29
(1 day ago)
(mod_security) mod_security (id:11000011) triggered by 34.162.251.154 (-): 1 in the last 86400 secs; ...
show more
(mod_security) mod_security (id:11000011) triggered by 34.162.251.154 (-): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 23:40:25.487131 2026] [security2:error] [pid 554249:tid 554301] [client 34.162.251.154:43654] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "131"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 154.251.162.34.bc.googleusercontent.com"] [severity "CRITICAL"] [hostname "www.cpanagiotou.gr"] [uri "/wordpress/"] [unique_id "ajb6ue6odY7VUE--6TEpsgAAANc"]
show less
Port Scan
๐ญ๐บ
bcsaba
2026-06-20 20:22:12
(1 day ago)
Probing for /backup
34.162.251.154 - - [20/Jun/2026:22:22:06 +0200] "HEAD /backup/ HTTP/2.0" 404 0 " ...
show more
Probing for /backup
34.162.251.154 - - [20/Jun/2026:22:22:06 +0200] "HEAD /backup/ HTTP/2.0" 404 0 "http://www.*REDACTED*/backup/" "Mozilla/5.0 (Linux; Android 12; Redmi Note 11) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.6312.112 Mobile Safari/537.36"
show less
Web App Attack