๐ฉ๐ช
HandyTreff.de
2026-06-11 16:14:53
(2 days ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -63.387 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -63.387 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36
show less
Web App Attack
Bad Web Bot
๐ฆ๐บ
MAGIC
2026-06-11 00:34:01
(3 days ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
Lee Daniel
2026-06-10 02:38:57
(4 days ago)
34.40.108.122 - - [09/Jun/2026:22:38:56 -0400] "GET /modules/contrib/webform/js/webform.element.mess ...
show more
34.40.108.122 - - [09/Jun/2026:22:38:56 -0400] "GET /modules/contrib/webform/js/webform.element.message.js.map HTTP/1.1" 404 32419 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
34.40.108.122 - - [09/Jun/2026:22:38:56 -0400] "GET /modules/jquery_migrate/assets/jquery-migrate/jquery-migrate.js.map HTTP/1.1" 404 32423 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
34.40.108.122 - - [09/Jun/2026:22:38:56 -0400] "GET /core/assets/vendor/modernizr/modernizr.min.js.map HTTP/1.1" 404 32411 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
34.40.108.122 - - [09/Jun/2026:22:38:56 -0400] "GET /core/misc/form.js.map HTTP/1.1" 404 32383 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
34.40.108.122 - - [09/Jun/2026:22:38:56 -0400] "GET /core/misc/date.js.map HTTP/1.1" 404 32383
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-10 00:53:09
(4 days ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.40.108.122 (DE/Germany/122.108.40.34.bc.goo ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.40.108.122 (DE/Germany/122.108.40.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:00:00
(4 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
FeG Deutschland
2026-06-09 02:49:06
(5 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:04:37
(5 days ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-08 21:01:33
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.108.122 (122.108.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.108.122 (122.108.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 17:01:29.735634 2026] [security2:error] [pid 20334:tid 20334] [client 34.40.108.122:51558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "foamnoodlejousting.com"] [uri "/.git/config"] [unique_id "aictqQoxi9YUfD7NbgBRMQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 13:49:09
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.108.122 (122.108.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.108.122 (122.108.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 09:49:02.694586 2026] [security2:error] [pid 11850:tid 11850] [client 34.40.108.122:51672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scoutmountaindistrict.org"] [uri "/.git/config"] [unique_id "aibITuRlyvHwd6m7Z__SzQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MM-bot
2026-06-08 12:54:37
(5 days ago)
URL-probe: HTTP/1.1 GET request on /.git/config (2026-06-08 14:54:37 UTC+2)
Web App Attack
Hacking
๐ง๐ช
voormedia
2026-06-08 12:21:44
(5 days ago)
Accessed trap at '/.git/config'
Web App Attack
๐จ๐ญ
TheCoon
2026-06-08 12:15:01
(5 days ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-08 11:02:51
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.108.122 (122.108.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.108.122 (122.108.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 07:02:44.923309 2026] [security2:error] [pid 6518:tid 6518] [client 34.40.108.122:60966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "waterspell.net"] [uri "/.git/config"] [unique_id "aiahVJLGzSZ0OuOu8bN-oQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-08 09:24:03
(5 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-08 08:33:14
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.108.122 (122.108.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.108.122 (122.108.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 04:33:08.383299 2026] [security2:error] [pid 24985:tid 24985] [client 34.40.108.122:40754] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.therealseska.com"] [uri "/.git/config"] [unique_id "aiZ-RM1w64R6OyBliVPDCQAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack