Anonymous
2026-09-08 07:19:23
(4 days ago)
DNS Compromise
DDoS Attack
🇫🇷
Thibault Millant
2026-09-07 13:58:23
(4 days ago)
34.53.234.155 - - [07/Sep/2026:13:57:55 +0000] "GET /mysql.sql HTTP/1.1" 404 548 "-" "Mozilla/5.0 (X ...
show more
34.53.234.155 - - [07/Sep/2026:13:57:55 +0000] "GET /mysql.sql HTTP/1.1" 404 548 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
...
show less
Brute-Force
Exploited Host
SSH
🇸🇬
nayumi
2026-09-07 07:13:19
(5 days ago)
CrowdSec detection: crowdsecurity/http-sensitive-files | Service: http, http, http, http, http
Web App Attack
Anonymous
2026-09-07 04:49:58
(5 days ago)
Attempted known web exploits
Brute-Force
Web App Attack
🇩🇪
Hugopvigo
2026-09-06 21:36:23
(5 days ago)
"2026-09-06 21:36:22+00:00 34.53.234.155 IP con score alto (100) detectada en el log."
Brute-Force
SSH
🇩🇪
pltcldvlpr
2026-09-06 06:49:10
(6 days ago)
CMS/framework probe: 34.53.234.155 - - [06/Sep/2026:08:49:09 +0200] "GET /.vscode/mcp.json HTTP/1.1" ...
show more
CMS/framework probe: 34.53.234.155 - - [06/Sep/2026:08:49:09 +0200] "GET /.vscode/mcp.json HTTP/1.1" 404 564 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36" asn=396982 org="Google LLC" country=BE
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:49:12
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.234.155 (155.234.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.234.155 (155.234.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:49:05.672973 2026] [security2:error] [pid 12900:tid 12900] [client 34.53.234.155:38622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.shukrisharawico.com"] [uri "/.env.local"] [unique_id "apzisdlYcohtqDCtJkIrEAAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:01:19
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.234.155 (155.234.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.234.155 (155.234.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:01:12.384034 2026] [security2:error] [pid 19182:tid 19182] [client 34.53.234.155:41306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.anniversaryweddingfavors.com"] [uri "/wp-config.php~"] [unique_id "apzXeGfCIPhaOff8bJncsgAAAIw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
AWW-Admin
2026-09-06 02:28:07
(6 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.53.234.155 (BE/Belgium/155.234.53.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.53.234.155 (BE/Belgium/155.234.53.34.bc.googleusercontent.com)
show less
SQL Injection
🇦🇺
2000cn.com.au
2026-09-06 02:17:41
(6 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-06 02:17:10
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.234.155 (155.234.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.234.155 (155.234.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:17:04.042114 2026] [security2:error] [pid 21541:tid 21541] [client 34.53.234.155:53208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "switkoprofiri.org"] [uri "/.env"] [unique_id "apzNIICVn0j6XM1v7eAhyAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-06 02:01:14
(6 days ago)
Multiple WAF Violations
Web App Attack
🇩🇪
dbmwebdesign
2026-09-06 02:00:07
(6 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇳🇱
e.fierstra
2026-09-06 01:45:53
(6 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 01:20:55
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.53.234.155 (155.234.53.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.53.234.155 (155.234.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:20:50.352079 2026] [security2:error] [pid 11498:tid 11516] [client 34.53.234.155:57360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thatspecial.com"] [uri "/wp-config.php~"] [unique_id "apy_8j1yipf3j8T44v8bZwAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack