Anonymous
2026-10-01 17:13:21
(1 day ago)
Portscan: TCP/8080 (2x), TCP/8443 (2x), TCP/80, TCP/443
Port Scan
๐ฉ๐ช
updown.io
2026-10-01 14:35:24
(1 day ago)
{"level":"info","ts":1790865318.5560348,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1790865318.5560348,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.39.175.75","remote_port":"38658","client_ip":"34.39.175.75","proto":"HTTP/2.0","method":"GET","host":"weatherfordtexasglass.pro-epic.info","uri":"/static/manifest.json","headers":{"Sec-Ch-Ua":["\"Chromium\";v=\"153\", \"Google Chrome\";v=\"153\", \"Not_A Brand\";v=\"8\""],"Sec-Fetch-Mode":["navigate"],"User-Agent":["Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"],"Sec-Ch-Ua-Mobile":["?1"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"Priority":["u=0, i"],"Upgrade-Insecure-Requests":["1"],"Sec-Fetch-Site":["none"],"Accept-Language":["en-US,en;q=0.9"],"Sec-Fetch-User":["?1"],"X-Nextjs-Data":["1"],"Sec-Fetch-Dest":["document"],"Accept-Encoding":["gzip, deflate,
...
show less
DDoS Attack
Web App Attack
Anonymous
2026-10-01 14:05:13
(1 day ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:21:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.39.175.75 (75.175.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.175.75 (75.175.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:21:28.951536 2026] [security2:error] [pid 4383:tid 4383] [client 34.39.175.75:54646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.borzoi-pedigree.info"] [uri "/css../.env"] [unique_id "ar5eWMDzeSKxAQNaQYLRXQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
TaKeN
2026-10-01 13:01:36
(1 day ago)
Automated Wazuh observation. Wazuh rule 31151 lvl=10 detected repeated HTTP web application probing ...
show more
Automated Wazuh observation. Wazuh rule 31151 lvl=10 detected repeated HTTP web application probing from this source IP. Observed 7 matching Wazuh alert(s) between 2026-10-01T15:01:36+02:00 and 2026-10-01T15:01:37+02:00.
show less
Web App Attack
Hacking
๐ฉ๐ช
FD-IX
2026-10-01 12:53:36
(1 day ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 12:46:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.39.175.75 (75.175.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.175.75 (75.175.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 08:46:21.672771 2026] [security2:error] [pid 32010:tid 32010] [client 34.39.175.75:44706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "analytics.londongroup.info"] [uri "/static../.env"] [unique_id "ar5WHQCCHrM6gkYfMTpNQAAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-10-01 12:42:40
(1 day ago)
2026/10/01 13:42:38 [error] 3532286#3532286: *1946301 access forbidden by rule, client: 34.39.175.75 ...
show more
2026/10/01 13:42:38 [error] 3532286#3532286: *1946301 access forbidden by rule, client: 34.39.175.75, server: betatechnologies.info, request: "GET /admin%2F.env HTTP/2.0", host: "betatechnologies.info"
2026/10/01 13:42:39 [error] 3532286#3532286: *1946301 access forbidden by rule, client: 34.39.175.75, server: betatechnologies.info, request: "GET /static../.env HTTP/2.0", host: "betatechnologies.info"
2026/10/01 13:42:39 [error] 3532286#3532286: *1946301 access forbidden by rule, client: 34.39.175.75, server: betatechnologies.info, request: "GET /assets../.env HTTP/2.0", host: "betatechnologies.info"
show less
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-10-01 12:35:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-10-01 12:24:37
(1 day ago)
IP matched detection query 50 and more bad rqs apache.
Hacking
Bad Web Bot
Brute-Force
Web App Attack
Anonymous
2026-10-01 11:51:13
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-10-01 11:49:05
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ซ๐ท
dynamix
2026-10-01 11:44:51
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
iNetWorker
2026-10-01 10:34:53
(1 day ago)
trying to access non-authorized port
Port Scan