๐บ๐ธ
gu-alvareza
2026-05-30 07:05:33
(1 week ago)
Spring.Boot.Actuator.Unauthorized.Access
Brute-Force
๐ณ๐ฑ
Savvii
2026-05-30 04:32:31
(1 week ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
gadix
2026-05-30 03:52:27
(1 week ago)
[30/May/2026:05:52:24.258653 +0200] ahpe-K1tu5ucJtOco0d28gAAAEM 34.178.82.221 44856 127.0.0.1 7080
[ ...
show more
[30/May/2026:05:52:24.258653 +0200] ahpe-K1tu5ucJtOco0d28gAAAEM 34.178.82.221 44856 127.0.0.1 7080
[30/May/2026:05:52:25.605415 +0200] ahpe-a1tu5ucJtOco0d3QQAAAE0 34.178.82.221 45624 127.0.0.1 7080
[30/May/2026:05:52:25.659173 +0200] ahpe-a1tu5ucJtOco0d3QgAAAEE 34.178.82.221 45634 127.0.0.1 7080
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-30 03:38:58
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.178.82.221 (221.82.178.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.178.82.221 (221.82.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 23:38:55.642279 2026] [security2:error] [pid 25414:tid 25414] [client 34.178.82.221:51222] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||192.64.150.189|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "192.64.150.189"] [uri "/.config/gcloud/credentials.db"] [unique_id "ahpbzwyN8OF2UrVl774KQgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-05-30 02:03:21
(1 week ago)
20 attempts against mh-misbehave-ban on star
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Moby
2026-05-30 01:04:57
(1 week ago)
34.178.82.221 - - [29/May/2026:20:04:55 -0500] "GET /actuator/heapdump HTTP/1.1" 404 985 "-" "Mozill ...
show more
34.178.82.221 - - [29/May/2026:20:04:55 -0500] "GET /actuator/heapdump HTTP/1.1" 404 985 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.100 Safari/537.36" "98.194.227.56" "98.194.227.56"
34.178.82.221 - - [29/May/2026:20:04:55 -0500] "GET /actuator/env HTTP/1.1" 404 985 "-" "Mozilla/5.0 (Linux; Android 7.0; Nexus 9 Build/NRD90R) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/53.0.2785.124 Safari/537.36" "98.194.227.56" "98.194.227.56"
34.178.82.221 - - [29/May/2026:20:04:55 -0500] "GET /actuator/configprops HTTP/1.1" 404 985 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.80 Safari/537.36" "98.194.227.56" "98.194.227.56"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 22:40:44
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.178.82.221 (221.82.178.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.178.82.221 (221.82.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 18:40:39.130972 2026] [security2:error] [pid 25702:tid 25706] [client 34.178.82.221:57758] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||192.64.150.132|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "192.64.150.132"] [uri "/.config/gcloud/credentials.db"] [unique_id "ahoV50Mvc_zDPBOdX4dmNwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-05-29 03:44:40
(1 week ago)
20 attempts against mh-misbehave-ban on eris
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
Albram
2026-05-29 02:41:31
(1 week ago)
Tries find Web server vulnerability (IP: 34.178.82.221)
Hacking
Web App Attack
Anonymous
2026-05-29 02:05:32
(1 week ago)
Aggressive web scan
Web App Attack
๐ณ๐ฑ
Savvii
2026-05-29 01:42:55
(1 week ago)
20 attempts against mh-misbehave-ban on soil
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Bouncer
2026-05-29 01:37:27
(1 week ago)
(CT) IP 34.178.82.221 (NL/The Netherlands/221.82.178.34.bc.googleusercontent.com) found to have 316 ...
show more
(CT) IP 34.178.82.221 (NL/The Netherlands/221.82.178.34.bc.googleusercontent.com) found to have 316 connections
show less
Brute-Force
๐บ๐ธ
doll.gl
2026-05-29 01:30:23
(1 week ago)
34.178.82.221 - - [29/May/2026:01:30:22 +0000] "GET /wp-config.php~ HTTP/1.1" 404 197 "-" "Mozilla/5 ...
show more
34.178.82.221 - - [29/May/2026:01:30:22 +0000] "GET /wp-config.php~ HTTP/1.1" 404 197 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.110 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 01:23:55
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.178.82.221 (221.82.178.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.178.82.221 (221.82.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 21:23:48.971287 2026] [security2:error] [pid 11495:tid 11495] [client 34.178.82.221:45246] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||192.64.150.46|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "192.64.150.46"] [uri "/.config/gcloud/credentials.db"] [unique_id "ahjqpCL-dW6LoTkp_0dAzwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-05-29 00:30:17
(1 week ago)
Scraping with a high error ratio and request rate
Bad Web Bot