🇳🇱
melroy89
2026-09-04 18:35:50
(1 day ago)
34.174.106.84 - - [04/Sep/2026:20:35:21 +0200] "GET / HTTP/1.1" 403 93 "-" "Mozilla/5.0 (X11; Linux ...
show more
34.174.106.84 - - [04/Sep/2026:20:35:21 +0200] "GET / HTTP/1.1" 403 93 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "dbviewer.info" 0.000
34.174.106.84 - - [04/Sep/2026:20:35:21 +0200] "POST / HTTP/1.1" 403 93 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "dbviewer.info" 0.003
34.174.106.84 - - [04/Sep/2026:20:35:21 +0200] "POST / HTTP/1.1" 403 93 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "dbviewer.info" 0.001
34.174.106.84 - - [04/Sep/2026:20:35:21 +0200] "POST / HTTP/1.1" 403 93 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "dbviewer.info" 0.000
34.174.106.84 - - [04/Sep/2026:20:35:22 +0200] "POST / HTTP/1.1" 403 93 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "dbviewe
...
show less
Web App Attack
🇳🇱
Mangelot Hosting
2026-09-04 17:02:40
(1 day ago)
(modsecurity) srv201 ModSecurity 34.174.106.84 (US/United States/84.106.174.34.bc.googleusercontent. ...
show more
(modsecurity) srv201 ModSecurity 34.174.106.84 (US/United States/84.106.174.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
🇳🇱
NL-crowdsec-reporter
2026-09-04 16:33:47
(1 day ago)
CrowdSec | Unauthorized Access | Country:US | AS:GOOGLE-CLOUD-PLATFORM
Web App Attack
Bad Web Bot
🇮🇹
VHosting
2026-09-04 16:20:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇩🇪
dbmwebdesign
2026-09-04 15:55:08
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇩🇪
Hary74656
2026-09-04 15:28:47
(1 day ago)
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3. No raw log data included.
Web App Attack
🇳🇱
Site.eu
2026-09-04 15:11:32
(1 day ago)
Excessive multi-domain requests
Brute-Force
🇧🇪
cmbplf
2026-09-04 15:04:36
(1 day ago)
7.475 requests from abuseipdb.com blacklisted IP (1yr4mos5d)
Brute-Force
Bad Web Bot
🇮🇹
VHosting
2026-09-03 01:20:03
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-03 00:34:04
(2 days ago)
[ns65.kdns.gr] httpd-config-scan: sites=www.dcon.gr; logs=/var/log/httpd/domains/dcon.gr.log; sample ...
show more
[ns65.kdns.gr] httpd-config-scan: sites=www.dcon.gr; logs=/var/log/httpd/domains/dcon.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 18:27:54
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 34.174.106.84 (84.106.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.174.106.84 (84.106.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 14:27:49.726550 2026] [security2:error] [pid 31834:tid 31834] [client 34.174.106.84:54836] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "dcagroupusa.com"] [uri "/.git/config"] [unique_id "aphqpVZAEUQL7jzaizl3XgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
hmt
2026-09-02 18:14:59
(3 days ago)
34.174.106.84 - - [02/Sep/2026:20:14:57 +0200] "GET /.git/config HTTP/1.1" 404 181 "-" "Mozilla/5.0 ...
show more
34.174.106.84 - - [02/Sep/2026:20:14:57 +0200] "GET /.git/config HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" host="dca.hmt.ovh"
34.174.106.84 - - [02/Sep/2026:20:14:57 +0200] "GET /.env HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" host="dca.hmt.ovh"
34.174.106.84 - - [02/Sep/2026:20:14:57 +0200] "GET /.env.local HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" host="dca.hmt.ovh"
34.174.106.84 - - [02/Sep/2026:20:14:57 +0200] "GET /.env.production HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" host="dca.hmt.ovh"
34.174.106.84 - - [02/Sep/2026:20:14:57 +0200] "GET /.env.staging HTTP/1.1" 404 181 "-" "Mozilla/5.0
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 17:33:27
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.174.106.84 (84.106.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.106.84 (84.106.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:33:19.128730 2026] [security2:error] [pid 24070:tid 24070] [client 34.174.106.84:36626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dc406.net"] [uri "/.git/config"] [unique_id "aphd329wyCXQ_aUPzveC-gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
MPL
2026-09-02 17:12:40
(3 days ago)
tcp/443 (12 or more attempts)
Port Scan
🇩🇪
arnisolutions
2026-09-02 11:06:53
(3 days ago)
Vulnerability scanning (requests for admin panels, shells, backup files etc.) against a production s ...
show more
Vulnerability scanning (requests for admin panels, shells, backup files etc.) against a production server. Observed on 1 day(s) between 2026-09-02 and 2026-09-02 (UTC). Sample request: GET /.env.production HTTP/1.1
show less
Web App Attack
Hacking