π©πͺ
FeG Deutschland
2026-08-19 19:53:15
(17 seconds ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 19:17:27
(36 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.173.171.129 (129.171.173.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.173.171.129 (129.171.173.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 15:17:23.580828 2026] [security2:error] [pid 26545:tid 26545] [client 34.173.171.129:36332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stmaarten-boatcharters.com"] [uri "/.git/HEAD"] [unique_id "aoYBQ-O_2oUTq4XM37nvKwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-08-19 19:03:17
(50 minutes ago)
20 attempts against mh-misbehave-ban on mensa
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
grassau.com
2026-08-19 19:01:17
(52 minutes ago)
(mod_security) mod_security triggered on hostname [redacted] 34.173.171.129 (US/United States/Iowa/C ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.173.171.129 (US/United States/Iowa/Council Bluffs/129.171.173.34.bc.googleusercontent.com)
show less
SQL Injection
π΅π±
dzpk
2026-08-19 18:50:21
(1 hour ago)
[19/Aug/2026:20:50:19 +0200] 178716541944.703975 34.173.171.129 37490 HOST 443 [19/Aug/2026:20:50:19 ...
show more
[19/Aug/2026:20:50:19 +0200] 178716541944.703975 34.173.171.129 37490 HOST 443 [19/Aug/2026:20:50:19 +0200] 17871654199.509156 34.173.171.129 37490 HOST 443 [19/Aug/2026:20:50:20 +0200] 178716542069.116018 34.173.171.129 37490 HOST 443
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 18:43:41
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.173.171.129 (129.171.173.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.173.171.129 (129.171.173.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 14:43:36.712722 2026] [security2:error] [pid 6243:tid 6243] [client 34.173.171.129:57580] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||alkahf.xyz|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "alkahf.xyz"] [uri "/rclone.conf"] [unique_id "aoX5WOlawyY8luyTcz9EvgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-19 18:28:07
(1 hour ago)
[Wed Aug 19 20:28:05.376275 2026] [proxy_fcgi:error] [pid 14523:tid 14557] [client 34.173.171.129:54 ...
show more
[Wed Aug 19 20:28:05.376275 2026] [proxy_fcgi:error] [pid 14523:tid 14557] [client 34.173.171.129:54430] AH01071: Got error 'Primary script unknown'
[Wed Aug 19 20:28:05.443502 2026] [proxy_fcgi:error] [pid 1628:tid 1812] [client 34.173.171.129:54450] AH01071: Got error 'Primary script unknown'
[Wed Aug 19 20:28:06.409672 2026] [proxy_fcgi:error] [pid 1630:tid 1775] [client 34.173.171.129:54438] AH01071: Got error 'Primary script unknown'
[Wed Aug 19 20:28:06.423675 2026] [proxy_fcgi:error] [pid 14523:tid 14570] [client 34.173.171.129:54430] AH01071: Got error 'Primary script unknown'
[Wed Aug 19 20:28:06.424307 2026] [proxy_fcgi:error] [pid 1628:tid 1806] [client 34.173.171.129:54460] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Web App Attack
π³π±
Mangelot Hosting
2026-08-19 18:24:31
(1 hour ago)
(modsecurity) srv103 ModSecurity 34.173.171.129 (US/United States/129.171.173.34.bc.googleuserconten ...
show more
(modsecurity) srv103 ModSecurity 34.173.171.129 (US/United States/129.171.173.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
π©πͺ
macrob
2026-08-19 18:17:07
(1 hour ago)
2026/08/19 18:17:05 [error] 481488#481488: *497855607 access forbidden by rule, client: 34.173.171.1 ...
show more
2026/08/19 18:17:05 [error] 481488#481488: *497855607 access forbidden by rule, client: 34.173.171.129, server: finami.es, request: "GET /dist/.vite/manifest.json HTTP/2.0", host: "finami.es"
2026/08/19 18:17:05 [error] 481488#481488: *497855612 access forbidden by rule, client: 34.173.171.129, server: finami.es, request: "GET /.aws/credentials HTTP/2.0", host: "finami.es"
2026/08/19 18:17:05 [error] 481488#481488: *497855617 access forbidden by rule, client: 34.173.171.129, server: finami.es, request: "GET /.aws/config HTTP/2.0", host: "finami.es"
...
show less
Web App Attack
π©πͺ
SΓ©fora Srl
2026-08-19 18:07:34
(1 hour ago)
crowdsecurity/http-sensitive-files detected by CrowdSec
Web App Attack
π§πͺ
voormedia
2026-08-19 17:58:07
(1 hour ago)
Accessed trap at '/.aws/credentials'
Web App Attack
Anonymous
2026-08-19 17:46:41
(2 hours ago)
Web Probe / Attack
Web App Attack
πͺπΈ
netfactotum
2026-08-19 17:25:30
(2 hours ago)
Hacking
Web App Attack
π©πͺ
paissangroup
2026-08-19 17:21:48
(2 hours ago)
Multiple WAF Violations
Web App Attack
π«π·
dynamix
2026-08-19 17:14:57
(2 hours ago)
Multiple WAF Violations
Web App Attack