๐ฉ๐ช
Hazzard
2026-09-17 11:50:02
(8 minutes ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐ฉ๐ช
maxpower
2026-09-17 11:04:09
(54 minutes ago)
(junkbot) REGOLA 8 - Junk Bot Blocked 34.24.48.210 (US/United States/210.48.24.34.bc.googleuserconte ...
show more
(junkbot) REGOLA 8 - Junk Bot Blocked 34.24.48.210 (US/United States/210.48.24.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.24.48.210 - - [17/Sep/2026:13:04:05 +0200] "GET /z9x8c7v6b5-debug-trigger-yogiraji.it HTTP/2.0" 200 4816 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)" "34.24.48.210" host=yogiraji.it
show less
Port Scan
๐ซ๐ฎ
Christopher Hughes
2026-09-17 10:35:01
(1 hour ago)
34.24.48.210 - - [17/Sep/2026:11:35:00 +0100] "GET /.bash_profile HTTP/2.0" 302 50 "-" "Mozilla/5.0 ...
show more
34.24.48.210 - - [17/Sep/2026:11:35:00 +0100] "GET /.bash_profile HTTP/2.0" 302 50 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-17 10:23:47
(1 hour ago)
(mod_security) mod_security (id:949110) triggered by 34.24.48.210 (US/United States/210.48.24.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.24.48.210 (US/United States/210.48.24.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 10:16:54
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.24.48.210 (210.48.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.24.48.210 (210.48.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 06:16:50.871138 2026] [security2:error] [pid 29369:tid 29369] [client 34.24.48.210:34614] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||veneerdent.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "veneerdent.com"] [uri "/privatekey.key"] [unique_id "aqu-ElLJ8Va5PUEwVhI1agAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 09:58:18
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.48.210 (210.48.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.48.210 (210.48.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 05:58:10.310205 2026] [security2:error] [pid 847:tid 847] [client 34.24.48.210:49554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "twccsolutions.com"] [uri "/.github/.env"] [unique_id "aqu5snq_Q6p6K9as1q7_QAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2026-09-17 07:18:14
(4 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint: /.env.development | UA: Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/) โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
Alt255
2026-09-17 07:10:14
(4 hours ago)
[cb-01al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail ngin ...
show more
[cb-01al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail nginx-404. Example: 34.24.48.210 - - [17/Sep/2026:09:09:59 +0200] "GET /.vite/manifest.json HTTP/2.0" 404 1338 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
34.24.48.210 - - [17/Sep/2026:09:09:59 +0200] "GET /dist/.vite/manifest.json HTTP/2.0" 404 1338 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
34.24.48.210 - - [17/Sep/2026:09:10:00 +0200] "GET /rclone.conf HTTP/2.0" 404 62870 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)"
34.24.48.210 - - [17/Sep/2026:09:10:00 +0200] "POST /graphql HTTP/2.0" 404 61559 "https://schmuck-herren.de" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
strzonnek
2026-09-17 07:09:22
(4 hours ago)
attack on webform
Brute-Force
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-17 07:07:52
(4 hours ago)
20 attempts against mh-misbehave-ban on burne
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
jormaster3k
2026-09-17 06:47:04
(5 hours ago)
Attack against Apache (too many 404s)
Web App Attack
๐ง๐ช
taivas.nl
2026-09-17 06:32:15
(5 hours ago)
Site scraper
Web App Attack
๐ฎ๐ณ
evicky2002
2026-09-17 06:00:05
(5 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฉ๐ช
big-cloud.nl
2026-09-17 05:59:56
(5 hours ago)
Try to access /@fs/..%252f..%252f..%252f..%252f..%252froot/.env?raw??
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-17 05:14:01
(6 hours ago)
Excessive multi-domain requests
Brute-Force