๐ง๐ท
Halux
2026-06-22 15:09:54
(3 hours ago)
34.24.134.159 Web Application Firewall multiple violations
Hacking
Web App Attack
๐ง๐ช
cmbplf
2026-06-22 15:07:08
(3 hours ago)
7.771 requests in 1 hour (1mo2w2d)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-22 15:05:26
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.24.134.159 (159.134.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.24.134.159 (159.134.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 11:05:21.716198 2026] [security2:error] [pid 19779:tid 19779] [client 34.24.134.159:51537] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.drayvian.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.drayvian.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ajlPMUl3OIFR6XTVHqELVQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-06-22 15:02:43
(3 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ Excessive 40X Errors (Decay-Based) - โช๏ธ Exc ...
show more
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ Excessive 40X Errors (Decay-Based) - โช๏ธ Excessive 30X Errors (Decay-Based)
show less
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
AetherFox
2026-06-22 15:00:53
(3 hours ago)
AetherFox VoidGuard detected: [Mon Jun 22 15:00:51.890673 2026] [authz_core:error] [pid 1704952:tid ...
show more
AetherFox VoidGuard detected: [Mon Jun 22 15:00:51.890673 2026] [authz_core:error] [pid 1704952:tid 1704974] [client 34.24.134.159:56026] AH01630: client denied by server configuration: proxy:http://[MASKED]/
[Mon Jun 22 15:00:51.890899 2026] [authz_core:error] [pid 1704952:tid 1704974] [client 34.24.134.159:56026] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Mon Jun 22 15:00:51.995349 2026] [authz_core:error] [pid 1704952:tid 1705001] [client 34.24.134.159:56026] AH01630: client denied by server configuration: proxy:http://[MASKED]/wp-includes/ID3/license.txt
[Mon Jun 22 15:00:51.995583 2026] [authz_core:error] [pid 1704952:tid 1705001] [client 34.24.134.159:56026] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Mon Jun 22 15:00:52.099110 2026] [authz_core:error] [pid 1704952:tid 1704979] [client 34.24.134.159:56026] AH01630: client denied by server configuration: proxy:http://5.75.191.3
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-22 14:45:03
(3 hours ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-22 14:43:52
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 34.24.134.159 (159.134.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.24.134.159 (159.134.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 10:43:49.009796 2026] [security2:error] [pid 18235:tid 18235] [client 34.24.134.159:55731] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doncody.disio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doncody.disio.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ajlKJa9S-kOLS9Z2ssYtpgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-06-22 14:40:03
(3 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-22 14:35:47
(3 hours ago)
34.24.134.159 - - [22/Jun/2026:17:35:46 +0300] "GET //wp-includes/ID3/license.txt HTTP/1.1" 404 3153 ...
show more
34.24.134.159 - - [22/Jun/2026:17:35:46 +0300] "GET //wp-includes/ID3/license.txt HTTP/1.1" 404 3153 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
34.24.134.159 - - [22/Jun/2026:17:35:46 +0300] "GET //xmlrpc.php?rsd HTTP/1.1" 404 712 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
...
show less
Web App Attack
๐ง๐พ
lns.bz
2026-06-22 14:18:00
(3 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2026-06-22 14:15:26
(4 hours ago)
2026-06-22 @ 16:15:26 (CET) ~ Blocked for trying to access: /wp-includes/ID3/license.txt
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-22 14:09:56
(4 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐ฉ๐ช
Blexyel
2026-06-22 14:08:41
(4 hours ago)
34.24.134.159 - - [22/Jun/2026:16:08:41 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 401 ...
show more
34.24.134.159 - - [22/Jun/2026:16:08:41 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 401 581 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" "disk-monitoring.pingusmc.org"
...
show less
Brute-Force
Web App Attack