๐ช๐ธ
pepitogrillo
2026-10-11 09:14:13
(4 hours ago)
34.34.159.106 - - [11/Oct/2026:09:14:12 +0000] "GET /bmyb7e6evr1yk3jrawdl HTTP/1.1" 404 463 "-" "Moz ...
show more
34.34.159.106 - - [11/Oct/2026:09:14:12 +0000] "GET /bmyb7e6evr1yk3jrawdl HTTP/1.1" 404 463 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
DNS Compromise
DNS Poisoning
Fraud Orders
DDoS Attack
Ping of Death
Phishing
Fraud VoIP
Open Proxy
Web Spam
Email Spam
Port Scan
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
IoT Targeted
Anonymous
2026-10-11 02:30:05
(10 hours ago)
CrowdSec decision: crowdsecurity/http-crawl-non_statics (origin: crowdsec)
Port Scan
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-10-11 02:16:52
(10 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
Shouddy Tarano
2026-10-11 01:57:25
(11 hours ago)
[Sat Oct 10 19:57:21.674090 2026] [authz_core:error] [pid 290036:tid 139792360617728] [client 34.34. ...
show more
[Sat Oct 10 19:57:21.674090 2026] [authz_core:error] [pid 290036:tid 139792360617728] [client 34.34.159.106:38734] AH01630: client denied by server configuration: /var/www/ccmApi/public/csewd0h3tzbl0i2478ej
[Sat Oct 10 19:57:22.884679 2026] [authz_core:error] [pid 290036:tid 139792285083392] [client 34.34.159.106:38784] AH01630: client denied by server configuration: /var/www/ccmApi/public/Dockerfile
[Sat Oct 10 19:57:23.354587 2026] [authz_core:error] [pid 262928:tid 139791916066560] [client 34.34.159.106:38858] AH01630: client denied by server configuration: /var/www/ccmApi/public/docker-compose.yml
[Sat Oct 10 19:57:23.772815 2026] [authz_core:error] [pid 262928:tid 139791488235264] [client 34.34.159.106:38886] AH01630: client denied by server configuration: /var/www/ccmApi/public/@fs
[Sat Oct 10 19:57:23.778302 2026] [authz_core:error] [pid 262716:tid 139792209647360] [client 34.34.159.106:38894] AH01630: client denied by server configuration: /var/www/ccmApi/public/terraform.tfsta
...
show less
DDoS Attack
Web Spam
Brute-Force
Web App Attack
๐บ๐ธ
1gz
2026-10-11 01:54:21
(11 hours ago)
Triggered Cloudflare WAF (firewallCustom) from BE.
Action taken: CHALLENGE
Protocol: HTTP/2 (GET met ...
show more
Triggered Cloudflare WAF (firewallCustom) from BE.
Action taken: CHALLENGE
Protocol: HTTP/2 (GET method)
Endpoint: /static//.env
UA: Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-10-11 01:34:26
(11 hours ago)
XSS Attempt
Hacking
Anonymous
2026-10-11 01:30:05
(11 hours ago)
CrowdSec decision: crowdsecurity/http-bad-user-agent (origin: crowdsec)
Port Scan
๐ธ๐ฌ
Cloudkul Cloudkul
2026-10-11 01:18:44
(11 hours ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-10-11 01:09:48
(12 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ฉ๐ช
Gwyneth Llewelyn
2026-10-11 01:04:07
(12 hours ago)
2026/10/11 02:04:05 [error] 4060693#4060693: *1999255 access forbidden by rule, client: 34.34.159.10 ...
show more
2026/10/11 02:04:05 [error] 4060693#4060693: *1999255 access forbidden by rule, client: 34.34.159.106, server: zonadetestes.com, request: "GET /api%2F.env HTTP/2.0", host: "zonadetestes.com"
2026/10/11 02:04:05 [error] 4060693#4060693: *1999255 access forbidden by rule, client: 34.34.159.106, server: zonadetestes.com, request: "GET /admin%2F.env HTTP/2.0", host: "zonadetestes.com"
2026/10/11 02:04:05 [error] 4060693#4060693: *1999255 access forbidden by rule, client: 34.34.159.106, server: zonadetestes.com, request: "GET /api/uploads/%2e%2e%2f%2e%2e%2f.env HTTP/2.0", host: "zonadetestes.com"
show less
Brute-Force
Web App Attack
๐ฌ๐ง
andypiper
2026-10-11 01:00:23
(12 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-11 00:42:37
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.34.159.106 (106.159.34.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.34.159.106 (106.159.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 20:42:29.598877 2026] [security2:error] [pid 1208:tid 1208] [client 34.34.159.106:46146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||techlinks.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "techlinks.com"] [uri "/z9x8c7v6b5-debug-trigger-techlinks.com"] [unique_id "asrbdYPA2zZ-jLa9Q5BQugAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-10-11 00:29:24
(12 hours ago)
(badbots) Bad bot user-agent [redacted] from 34.34.159.106 (BE/Belgium/106.159.34.34.bc.googleuserco ...
show more
(badbots) Bad bot user-agent [redacted] from 34.34.159.106 (BE/Belgium/106.159.34.34.bc.googleusercontent.com)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-11 00:26:23
(12 hours ago)
(mod_security) mod_security (id:210580) triggered by 34.34.159.106 (106.159.34.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210580) triggered by 34.34.159.106 (106.159.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 20:26:20.390666 2026] [security2:error] [pid 14833:tid 14833] [client 34.34.159.106:56674] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:path. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||roachranch.com|F|2"] [data "Matched Data: proc/self/environ found within ARGS:path: ../../../../proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "roachranch.com"] [uri "/userfiles/x"] [unique_id "asrXrCODvZSiBo8OK8eGFQAAAD0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-10-11 00:16:30
(12 hours ago)
Multiple WAF Violations
Web App Attack