π«π·
dynamix
2026-10-07 13:53:23
(6 minutes ago)
Multiple WAF Violations
Web App Attack
π²πΎ
Rizzy
2026-10-07 13:49:32
(10 minutes ago)
Multiple WAF Violations
Brute-Force
Web App Attack
Anonymous
2026-10-07 13:45:07
(15 minutes ago)
suspicious request in access.log
Web App Attack
π©πͺ
maxpower
2026-10-07 13:42:54
(17 minutes ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.178.165.248 (248.165.178.34.bc.google ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.178.165.248 (248.165.178.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.178.165.248 - - [07/Oct/2026:15:42:48 +0200] "GET /.ssh/id_ed25519 HTTP/2.0" 403 0 "-" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)" "34.178.165.248" host=centrolarca.eu
show less
Port Scan
πͺπΈ
robotstxt
2026-10-07 13:40:19
(19 minutes ago)
34.178.165.248 - - [07/Oct/2026:13:39:49 +0000] "GET /assets/manifest.json HTTP/2.0" 403 34197 "http ...
show more
34.178.165.248 - - [07/Oct/2026:13:39:49 +0000] "GET /assets/manifest.json HTTP/2.0" 403 34197 "https://ccoo.cat/assets/manifest.json" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0" "34.178.165.248" edge="104.23.168.4"
34.178.165.248 - - [07/Oct/2026:13:39:49 +0000] "GET /asset-manifest.json HTTP/2.0" 403 34183 "https://ccoo.cat/asset-manifest.json" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0" "34.178.165.248" edge="104.23.168.4"
34.178.165.248 - - [07/Oct/2026:13:39:49 +0000] "GET /manifest.json HTTP/2.0" 403 34183 "https://ccoo.cat/manifest.json" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0" "34.178.165.248" edge="104.23.168.4"
34.178.165.248 - - [07/Oct/2026:13:39:49 +0000] "GET /dist/manifest.json HTTP/2.0" 403 34187 "https://ccoo.cat/di
...
show less
Web App Attack
π³π±
Savvii
2026-10-07 13:18:13
(42 minutes ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mad-abuseip
2026-10-07 13:04:38
(55 minutes ago)
SCORE:99 REASON:suspicious-score:100 | "GET /api/orders/..%2f..%2fproc/self/environ HTTP/1.1" SCORE ...
show more
SCORE:99 REASON:suspicious-score:100 | "GET /api/orders/..%2f..%2fproc/self/environ HTTP/1.1" SCORE:99 REASON:suspicious-score:100 - "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
show less
Web App Attack
π©πͺ
macrob
2026-10-07 13:00:53
(59 minutes ago)
2026/10/07 13:00:52 [error] 533535#533535: *26462160 access forbidden by rule, client: 34.178.165.24 ...
show more
2026/10/07 13:00:52 [error] 533535#533535: *26462160 access forbidden by rule, client: 34.178.165.248, server: binixo.co, request: "GET /firebase-admin.json HTTP/2.0", host: "binixo.co"
2026/10/07 13:00:52 [error] 533535#533535: *26462160 access forbidden by rule, client: 34.178.165.248, server: binixo.co, request: "GET /config/firebase-admin.json HTTP/2.0", host: "binixo.co"
2026/10/07 13:00:52 [error] 533535#533535: *26462160 access forbidden by rule, client: 34.178.165.248, server: binixo.co, request: "GET /public/admin.json HTTP/2.0", host: "binixo.co"
...
show less
Web App Attack
π³π±
e.fierstra
2026-10-07 12:51:13
(1 hour ago)
excessive HTTP 404 errors
Bad Web Bot
π¨π¦
Anytech
2026-10-07 12:49:14
(1 hour ago)
Blocked by Conn-Monitor: env-probing
Web App Attack
Hacking
π³π±
Savvii
2026-10-07 12:39:35
(1 hour ago)
20 attempts against mh-misbehave-ban on onion
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
taivas.nl
2026-10-07 12:32:13
(1 hour ago)
Bad_requests
Bad Web Bot
π©πͺ
konseptit
2026-10-07 12:30:54
(1 hour ago)
(mod_security) mod_security triggered on hostname [redacted] 34.178.165.248 (248.165.178.34.bc.googl ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.178.165.248 (248.165.178.34.bc.googleusercontent.com)
show less
SQL Injection
πΊπΈ
TPI-Abuse
2026-10-07 12:26:28
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.178.165.248 (248.165.178.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.178.165.248 (248.165.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 08:26:22.635138 2026] [security2:error] [pid 9970:tid 9970] [client 34.178.165.248:33216] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||armandselmwoodpark.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "armandselmwoodpark.com"] [uri "/z9x8c7v6b5-debug-trigger-armandselmwoodpark.com"] [unique_id "asY6boO8iKCnAdLFQOkfugAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πͺπΈ
masterguru
2026-10-07 12:24:20
(1 hour ago)
BAD BOT - Detected and Blocked.. Matched phrase "PerplexityBot" at REQUEST_HEADERS:User-Agent. (1100 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "PerplexityBot" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot