๐ณ๐ฑ
Savvii
2026-09-22 01:59:27
(2 minutes ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 01:45:56
(15 minutes ago)
Portscan: TCP/8443 (3x), TCP/8080 (3x)
Port Scan
๐ณ๐ฑ
debestelapp
2026-09-22 01:45:12
(16 minutes ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 01:36:01
(25 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.22.130.232 (232.130.22.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.22.130.232 (232.130.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 21:35:55.652914 2026] [security2:error] [pid 9218:tid 9218] [client 34.22.130.232:56954] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.sporttaekwondo.net|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.sporttaekwondo.net"] [uri "/ssl/localhost.key"] [unique_id "arHbexTYw7TYmIynUHuKpgAAADs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-09-22 01:23:12
(38 minutes ago)
Domain : saraoldfield.net
Rule : config
2026-09-22 01:21:51 ***hidden-privacy***46 GET /.aws/config ...
show more
Domain : saraoldfield.net
Rule : config
2026-09-22 01:21:51 ***hidden-privacy***46 GET /.aws/config - 443 - 34.22.130.232 HTTP/2.0 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; https://openai.com/searchbot - www.saraoldfield.net 404 0 2 1465 509 0 - -
show less
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-22 01:13:27
(48 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.22.130.232 (232.130.22.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.130.232 (232.130.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 21:13:22.508534 2026] [security2:error] [pid 3659:tid 3659] [client 34.22.130.232:50040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "upperbearcreek.net"] [uri "/admin/.env"] [unique_id "arHWMsltJUOXWwyFPk7n8QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-09-22 01:01:28
(1 hour ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 00:31:13
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.22.130.232 (232.130.22.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.130.232 (232.130.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:31:09.126430 2026] [security2:error] [pid 24804:tid 24804] [client 34.22.130.232:38872] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sjstauffer.net"] [uri "/appearance/../../.env"] [unique_id "arHMTT4h4eKfppG7qVFo5QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-22 00:21:07
(1 hour ago)
Excessive multi-domain requests
Brute-Force
๐ต๐ฑ
sefinek.net
2026-09-22 00:19:29
(1 hour ago)
Triggered Cloudflare WAF (firewallCustom) from BE.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from BE.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /userfiles/x | UA: CCBot/2.0 (https://commoncrawl.org/faq/) โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
Mangelot Hosting
2026-09-22 00:13:52
(1 hour ago)
(modsecurity) srv101 ModSecurity 34.22.130.232 (BE/Belgium/232.130.22.34.bc.googleusercontent.com): ...
show more
(modsecurity) srv101 ModSecurity 34.22.130.232 (BE/Belgium/232.130.22.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-09-22 00:08:09
(1 hour ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-21 23:57:22
(2 hours ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
Rip
2026-09-21 23:33:44
(2 hours ago)
403 Errors: Access Forbidden
Brute-Force
๐ณ๐ฑ
Savvii
2026-09-21 23:20:11
(2 hours ago)
20 attempts against mh-misbehave-ban on chive
Brute-Force
Bad Web Bot
Web App Attack