π©πͺ
TheDjRider
2026-09-20 13:35:39
(17 hours ago)
CrowdSec detected Web application reconnaissance. Scenario: crowdsecurity/http-probing. Automatic ba ...
show more
CrowdSec detected Web application reconnaissance. Scenario: crowdsecurity/http-probing. Automatic ban triggered. Detection time (UTC): 2026-09-20T13:35:16.393084702Z. Context: http_status=404
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 20:38:32
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 34.27.154.163 (163.154.27.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.27.154.163 (163.154.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 16:38:27.800209 2026] [security2:error] [pid 27855:tid 27863] [client 34.27.154.163:32768] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.munatseng.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.munatseng.org"] [uri "/wp-content/uploads/2016/03/tsengkwongchi.com"] [unique_id "aoYUQ1NLEoGthT_WYfjYJAAAAQY"], referer: http://www.munatseng.org/wp-content/uploads/2016/03/20150822_113034.jpg
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
4server
2026-04-06 06:22:17
(5 months ago)
[MonApr0608:22:12.9636112026][security2:error][pid3722537:tid3722562][client34.27.154.163:0]ModSecur ...
show more
[MonApr0608:22:12.9636112026][security2:error][pid3722537:tid3722562][client34.27.154.163:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.8\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.farmaciaferrari.ch\"][uri\"/robots.txt\"][unique_id\"adNRFMPEHtsJ28ESzuNTSQAAAJY\"]
show less
Port Scan
Brute-Force
Web App Attack
π¬π§
Mendip_Defender
2026-03-15 05:17:26
(6 months ago)
34.27.154.163 - - [15/Mar/2026:05:17:14 +0000] "GET /robots.txt HTTP/1.1" 301 162 "-" "Mozilla/5.0 ( ...
show more
34.27.154.163 - - [15/Mar/2026:05:17:14 +0000] "GET /robots.txt HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/46.0.2486.0 Safari/537.36 Edge/13.10586"
34.27.154.163 - - [15/Mar/2026:05:17:21 +0000] "GET /robots.txt HTTP/1.0" 404 5016 "https://www.jackstringer.co.uk/photo-orders.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/46.0.2486.0 Safari/537.36 Edge/13.10586"
34.27.154.163 - - [15/Mar/2026:05:17:23 +0000] "GET /robots.txt HTTP/1.0" 404 4264 "https://lightning.jackstringer.co.uk/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/46.0.2486.0 Safari/537.36 Edge/13.10586"
...
show less
Hacking
Web App Attack
Anonymous
2025-05-16 16:35:35
(1 year ago)
Excessive crawling/scraping
Hacking
Brute-Force
π¦πΊ
MAGIC
2024-12-29 22:07:26
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2024-12-09 10:23:01
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
π¦πΊ
MAGIC
2024-12-03 00:02:51
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2024-11-25 03:09:04
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 34.27.154.163 (163.154.27.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.27.154.163 (163.154.27.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 24 22:08:58.251395 2024] [security2:error] [pid 7576:tid 7576] [client 34.27.154.163:23554] [client 34.27.154.163] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||climasyequipos.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "climasyequipos.com"] [uri "/[email protected] "] [unique_id "Z0PqSq0d_Sg2GQ8mUe9lbQAAAAU"], referer: http://climasyequipos.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
MAGIC
2024-11-20 11:00:59
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2024-11-11 01:23:48
(1 year ago)
Excessive crawling/scraping
Hacking
Brute-Force
π¦πΊ
MAGIC
2024-11-10 23:00:23
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π¦πΊ
MAGIC
2024-11-03 15:02:13
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π¦πΊ
MAGIC
2024-10-20 05:02:22
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2024-10-12 17:25:06
(1 year ago)
Excessive crawling/scraping
Hacking
Brute-Force