๐ณ๐ฑ
Savvii
2026-06-15 03:38:34
(2 days ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 19:34:53
(3 days ago)
20 attempts against mh-misbehave-ban on pf221105
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-06-14 17:13:56
(3 days ago)
34.175.212.61 - - [14/Jun/2026:17:13:52 +0000] "GET /mail.zip HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Li ...
show more
34.175.212.61 - - [14/Jun/2026:17:13:52 +0000] "GET /mail.zip HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Linux; Android 8.0.0; SM-G935V) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36" "-"
34.175.212.61 - - [14/Jun/2026:17:13:52 +0000] "GET /mailer.zip HTTP/1.1" 404 146 "-" "Mozilla/5.0 (compatible; Konqueror/4.4; Linux 2.6.32-22-generic; X11; en_US) KHTML/4.4.3 (like Gecko) Kubuntu" "-"
34.175.212.61 - - [14/Jun/2026:17:13:56 +0000] "GET /mailer/sendgrid.js HTTP/1.1" 404 146 "-" "SuperBot/4.4.0.60 (Windows XP)" "-"
34.175.212.61 - - [14/Jun/2026:17:13:56 +0000] "GET /mailer/sendgrid.py HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Linux; Android 9; Pixel 2 XL) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.18 Mobile Safari/537.36" "-"
34.175.212.61 - - [14/Jun/2026:17:13:56 +0000] "GET /mail/sendgrid.py HTTP/1.1" 404 146 "-" "Mozilla/5.0 (Android; Mobile; rv:35.0) Gecko/35.0 Firefox/35.0" "-"
...
show less
Bad Web Bot
๐บ๐ธ
Shouddy Tarano
2026-06-14 15:53:18
(3 days ago)
[Sun Jun 14 09:53:00.516641 2026] [authz_core:error] [pid 2707780:tid 139791328839424] [client 34.17 ...
show more
[Sun Jun 14 09:53:00.516641 2026] [authz_core:error] [pid 2707780:tid 139791328839424] [client 34.175.212.61:50028] AH01630: client denied by server configuration: /var/www/erpcampestremty/public/aws_credentials.json
[Sun Jun 14 09:53:01.201002 2026] [authz_core:error] [pid 2707547:tid 139792150898432] [client 34.175.212.61:50258] AH01630: client denied by server configuration: /var/www/erpcampestremty/public/info.php
[Sun Jun 14 09:53:01.341895 2026] [authz_core:error] [pid 2711049:tid 139792285083392] [client 34.175.212.61:50302] AH01630: client denied by server configuration: /var/www/erpcampestremty/public/_profiler
[Sun Jun 14 09:53:01.633417 2026] [authz_core:error] [pid 2707780:tid 139792192894720] [client 34.175.212.61:50376] AH01630: client denied by server configuration: /var/www/erpcampestremty/public/docker-compose.prod.yaml
[Sun Jun 14 09:53:02.340607 2026] [authz_core:error] [pid 2707780:tid 139792192894720] [client 34.175.212.61:50626] AH01630: client denied by server co
...
show less
DDoS Attack
Web Spam
Brute-Force
Web App Attack
Anonymous
2026-06-14 14:40:10
(3 days ago)
Aggressive web scan
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-14 04:50:58
(3 days ago)
Excessive 404/403 errors
Brute-Force
๐ฎ๐น
VHosting
2026-06-14 03:35:04
(3 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 02:44:33
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.175.212.61 (61.212.175.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.212.61 (61.212.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 22:44:26.886981 2026] [security2:error] [pid 15907:tid 15907] [client 34.175.212.61:54518] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/config/config.yml" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.capestfrancistransfers.jbaycabs.com"] [uri "/config/config.yml"] [unique_id "ai4VigeVGwKd5kPHH0UkswAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Origon
2026-06-14 02:35:16
(3 days ago)
http-probing - IP: 34.175.212.61 - time="2026-06-14T04:35:15+02:00" level=info msg="(555f66b4f6a745 ...
show more
http-probing - IP: 34.175.212.61 - time="2026-06-14T04:35:15+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-probing by ip 34.175.212.61 (ES/396982) : 4h ban on Ip 34.175.212.61" module=db
show less
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-13 23:15:38
(3 days ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.175.212.61 (ES/Spain/-): 2 in the ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.175.212.61 (ES/Spain/-): 2 in the last 3600 secs
show less
Web App Attack