๐บ๐ธ
TPI-Abuse
2026-06-14 02:03:14
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.40.159.178 (178.159.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.40.159.178 (178.159.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 22:03:09.827306 2026] [security2:error] [pid 27705:tid 27705] [client 34.40.159.178:50576] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.connec-tek.com.simia.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.connec-tek.com.simia.com"] [uri "/full_backup.sql"] [unique_id "ai4L3afHSsH10yhwjfEcCQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
CryptoYakari
2026-06-13 20:21:13
(1 day ago)
34.40.159.178 - - [13/Jun/2026:23:21:11 +0300] "GET /.env.backup.txt HTTP/1.0" 404 6995 "-" "SonyEri ...
show more
34.40.159.178 - - [13/Jun/2026:23:21:11 +0300] "GET /.env.backup.txt HTTP/1.0" 404 6995 "-" "SonyEricssonW660i/R6AD Browser/NetFront/3.3 Profile/MIDP-2.0 Configuration/CLDC-1.1"
34.40.159.178 - - [13/Jun/2026:23:21:11 +0300] "GET /.env.txt HTTP/1.0" 404 6995 "-" "Mozilla/5.0 (Linux; Android 9; Pixel XL) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.89 Mobile Safari/537.36"
34.40.159.178 - - [13/Jun/2026:23:21:11 +0300] "GET /env HTTP/1.0" 404 6995 "-" "Mozilla/5.0 (X11; U; Linux x86_64; en-US; rv:1.9.2.9) Gecko/20100915 Gentoo Firefox/3.6.9"
34.40.159.178 - - [13/Jun/2026:23:21:11 +0300] "GET /env.txt HTTP/1.0" 404 6995 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36"
34.40.159.178 - - [13/Jun/2026:23:21:11 +0300] "GET /env.bak HTTP/1.0" 404 3515 "-" "Mozilla/5.0 (iPad; CPU OS 12_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/76.0.3809.81 Mobile/15E148 Safari/605.1"
...
show less
Web Spam
Blog Spam
Web App Attack
Bad Web Bot
๐ท๐ด
gtheo99
2026-05-30 05:03:46
(2 weeks ago)
(CT) IP 34.40.159.178 (AU/Australia/178.159.40.34.bc.googleusercontent.com) found to have 410 connec ...
show more
(CT) IP 34.40.159.178 (AU/Australia/178.159.40.34.bc.googleusercontent.com) found to have 410 connections
show less
Port Scan
๐ณ๐ฑ
Savvii
2026-05-30 03:33:42
(2 weeks ago)
383 attempts against mh-modsecurity-ban on neon
Brute-Force
Web App Attack
Anonymous
2026-05-30 01:35:11
(2 weeks ago)
Aggressive web scan
Web App Attack
Anonymous
2026-05-30 01:05:52
(2 weeks ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ณ๐ฑ
Savvii
2026-05-30 00:01:40
(2 weeks ago)
20 attempts against mh-misbehave-ban on lime
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lime
2026-05-29 23:49:40
(2 weeks ago)
34.40.159.178 - - [29/May/2026:23:49:39 +0000] "GET /api/aws.json HTTP/1.1" 302 542 "-" "Googlebot-I ...
show more
34.40.159.178 - - [29/May/2026:23:49:39 +0000] "GET /api/aws.json HTTP/1.1" 302 542 "-" "Googlebot-Image/1.0"
show less
Hacking
Web App Attack
๐ฉ๐ช
Live Home Cams
2026-05-29 23:48:02
(2 weeks ago)
WebApp brute force attack detected. Multiple file scanning attempts from 34.40.159.178. Detected by ...
show more
WebApp brute force attack detected. Multiple file scanning attempts from 34.40.159.178. Detected by fail2ban.
show less
Web App Attack
Brute-Force
๐ณ๐ฟ
Antinson
2026-05-29 23:43:18
(2 weeks ago)
Scraping with a high error ratio and request rate
Bad Web Bot
Anonymous
2026-05-29 04:02:30
(2 weeks ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ซ๐ท
masterguru
2026-05-29 01:23:07
(2 weeks ago)
Host header is a numeric IP address. Pattern match "^ (920350-143)
Hacking
Bad Web Bot
๐ง๐พ
lns.bz
2026-05-29 00:50:31
(2 weeks ago)
.env scanning [BY]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 00:48:56
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.40.159.178 (178.159.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.40.159.178 (178.159.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 20:48:51.804600 2026] [security2:error] [pid 32112:tid 32112] [client 34.40.159.178:59908] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||192.64.150.33|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "192.64.150.33"] [uri "/.config/gcloud/credentials.db"] [unique_id "ahjic1jhMQ2AACKEeJJeTQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Mediashaker
2026-05-28 22:18:04
(2 weeks ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 34.40.159.178 (AU/Austra ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 34.40.159.178 (AU/Australia/178.159.40.34.bc.googleusercontent.com)
show less
Port Scan