๐ฉ๐ช
AetherFox
2026-10-09 15:44:50
(10 minutes ago)
AetherFox VoidGuard detected: [Fri Oct 09 15:44:50.058443 2026] [authz_core:error] [pid 2058140:tid ...
show more
AetherFox VoidGuard detected: [Fri Oct 09 15:44:50.058443 2026] [authz_core:error] [pid 2058140:tid 2058149] [client 34.6.183.148:41400] AH01630: client denied by server configuration: proxy:https://[MASKED]/
[Fri Oct 09 15:44:50.143764 2026] [authz_core:error] [pid 2058140:tid 2058165] [client 34.6.183.148:41412] AH01630: client denied by server configuration: proxy:https://[MASKED]/xc1gqqmfvekf4s2a8rhq
[Fri Oct 09 15:44:50.147261 2026] [authz_core:error] [pid 2058140:tid 2058148] [client 34.6.183.148:41416] AH01630: client denied by server configuration: proxy:https://[MASKED]/lcv4tggdrd5vag71hbro
[Fri Oct 09 15:44:50.152041 2026] [authz_core:error] [pid 2058169:tid 2058172] [client 34.6.183.148:41424] AH01630: client denied by server configuration: proxy:https://[MASKED]/users/login
[Fri Oct 09 15:44:50.153327 2026] [authz_core:error] [pid 2058169:tid 2058177] [client 34.6.183.148:41434] AH01630: client denied by server configuration: proxy:https://5.
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 15:41:54
(13 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.6.183.148 (148.183.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.183.148 (148.183.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 11:41:49.738584 2026] [security2:error] [pid 23901:tid 23901] [client 34.6.183.148:50462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dougwong.net"] [uri "/static../.env"] [unique_id "askLPSEwXcKopL7JImPl_gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dot.mg
2026-10-09 15:41:02
(13 minutes ago)
Bad behaviour
Web Spam
๐ซ๐ท
regishoussin
2026-10-09 15:29:46
(25 minutes ago)
Automated web scanning detected by Wazuh (rule 100240): repeated 400/404 errors from mass probing of ...
show more
Automated web scanning detected by Wazuh (rule 100240): repeated 400/404 errors from mass probing of admin/backdoor paths (e.g. wp-login.php, known CMS shell filenames) on an Apache web server, on 2026-10-09 15:29 UTC.
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 15:26:22
(28 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.6.183.148 (148.183.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.183.148 (148.183.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 11:26:18.459356 2026] [security2:error] [pid 9707:tid 9707] [client 34.6.183.148:32962] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "doctorc.net"] [uri "/.env.js"] [unique_id "askHmo1we-owdjK-SRSFagAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-09 15:19:20
(35 minutes ago)
[Fri Oct 09 11:18:44.539719 2026] [authz_core:error] [pid 30939] [client 34.6.183.148:11942] AH01630 ...
show more
[Fri Oct 09 11:18:44.539719 2026] [authz_core:error] [pid 30939] [client 34.6.183.148:11942] AH01630: client denied by server configuration: /home/divorceforms/public_html/public/.htpasswd
[Fri Oct 09 11:18:52.968051 2026] [access_compat:error] [pid 30943] [client 34.6.183.148:11589] AH01797: client denied by server configuration: /home/divorceforms/public_html/public/server-status
[Fri Oct 09 11:18:57.254336 2026] [authz_core:error] [pid 31084] [client 34.6.183.148:11590] AH01630: client denied by server configuration: /home/divorceforms/cgi-bin
[Fri Oct 09 11:18:57.377574 2026] [authz_core:error] [pid 30540] [client 34.6.183.148:9536] AH01630: client denied by server configuration: /home/divorceforms/cgi-bin
[Fri Oct 09 11:18:57.960827 2026] [authz_core:error] [pid 30540] [client 34.6.183.148:9536] AH01630: client denied by server configuration: /home/divorceforms/cgi-bin
...
show less
Brute-Force
๐ฌ๐ง
consul.to
2026-10-09 15:15:23
(39 minutes ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-10-09 15:12:54
(42 minutes ago)
XSS Attempt
Hacking
Anonymous
2026-10-09 15:09:38
(45 minutes ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฉ๐ช
LRob
2026-10-09 15:06:52
(48 minutes ago)
Crawler ignoring refusals | ua: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTB ...
show more
Crawler ignoring refusals | ua: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot, Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0, Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] ) (+1 more) | path: /lib/terminal-xhr.php, /.vite/manifest.json, /g2m0af5pmj30wcw5yrlg (+4 more)
show less
Bad Web Bot
๐ซ๐ท
dynamix
2026-10-09 14:51:40
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ฎ
pixiekat
2026-10-09 14:51:31
(1 hour ago)
Banned by fail2ban (apache-modsecurity, 3 hits) [msg "Inbound Anomaly Score Exceeded (Total Score: 5 ...
show more
Banned by fail2ban (apache-modsecurity, 3 hits) [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [msg "Next.js Server Action probe blocked (no Next.js apps on this server)"]
show less
Web App Attack
๐ซ๐ท
Octopuce
2026-10-09 14:51:12
(1 hour ago)
Aggressive web search of vulnerable pages: /_image?href=/../../../.env /api/openapi.json /openapi.js ...
show more
Aggressive web search of vulnerable pages: /_image?href=/../../../.env /api/openapi.json /openapi.json /swagger.json /api/v1/config/ ...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 14:50:26
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.6.183.148 (148.183.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.183.148 (148.183.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 10:50:22.351103 2026] [security2:error] [pid 17058:tid 17058] [client 34.6.183.148:37602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deserttrails.net"] [uri "/.env"] [unique_id "asj_Lm3d8NnnRmmH7xp9ZAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-09 14:50:10
(1 hour ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack