๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:08:54
(1 week ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking
๐ซ๐ท
Baking333
2026-06-08 10:49:41
(1 week ago)
[redacted] 34.19.165.228 - - [08/Jun/2026:11:49:38 +0100] "GET /[redacted] HTTP/1.1" 302 5288 0/5314 ...
show more
[redacted] 34.19.165.228 - - [08/Jun/2026:11:49:38 +0100] "GET /[redacted] HTTP/1.1" 302 5288 0/531428 "-" "Gregarius/0.5.2 ( http://[redacted]/docs/ua)" [redacted] 34.19.165.228 - - [08/Jun/2026:11:49:38 +0100] "GET /.aws/config HTTP/1.1" 302 5288 0/755165 "-" "Mozilla/5.0 (iPad; CPU OS 6_0 like Mac OS X) AppleWebKit/536.26 (KHTML, like Gecko) Version/6.0 Mobile/10A5355d Safari/8536.25"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-08 07:07:46
(1 week ago)
Scanning/Probing (61)
Request Overload (383)
Brute-Force
Web App Attack
๐ง๐ท
Halux
2026-06-08 05:51:38
(1 week ago)
34.19.165.228 Web Application Firewall multiple violations
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 05:01:47
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.19.165.228 (228.165.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.165.228 (228.165.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 01:01:41.083370 2026] [security2:error] [pid 32372:tid 32372] [client 34.19.165.228:42282] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.rasp.oxfordgliding.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.rasp.oxfordgliding.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiZMtcLbLYVqYOaU8oPLwgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
gtheo99
2026-06-08 03:34:15
(1 week ago)
(CT) IP 34.19.165.228 (CA/Canada/228.165.19.34.bc.googleusercontent.com) found to have 765 connectio ...
show more
(CT) IP 34.19.165.228 (CA/Canada/228.165.19.34.bc.googleusercontent.com) found to have 765 connections
show less
Port Scan
๐ณ๐ฑ
Site.eu
2026-06-08 03:32:24
(1 week ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-06-08 02:45:15
(1 week ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐จ๐ญ
4server
2026-06-08 02:30:10
(1 week ago)
[MonJun0804:30:04.9342522026][security2:error][pid2013391:tid2013679][client34.19.165.228:0]ModSecur ...
show more
[MonJun0804:30:04.9342522026][security2:error][pid2013391:tid2013679][client34.19.165.228:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"webdisk.creazione-siti-ticino.ch\"][uri\"/secrets.env\"][unique_id\"aiYpLB7O9SuBK6nKibcxNAAAANE\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 01:25:58
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.19.165.228 (228.165.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.165.228 (228.165.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 21:25:53.964923 2026] [security2:error] [pid 9139:tid 9139] [client 34.19.165.228:36084] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.admin.workzoap.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.admin.workzoap.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiYaIVY_PAL3VTBMatHPIwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-08 01:20:13
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack