π©πͺ
reznekcs
2026-10-09 05:02:36
(16 minutes ago)
Blocked by UFW firewall
Brute-Force
π©πͺ
Hazzard
2026-10-09 04:51:40
(27 minutes ago)
(PERMBLOCK) 34.6.242.111 (NL/The Netherlands/Groningen/Groningen/111.242.6.34.bc.googleusercontent.c ...
show more
(PERMBLOCK) 34.6.242.111 (NL/The Netherlands/Groningen/Groningen/111.242.6.34.bc.googleusercontent.com/[redacted]) has had more than 4 temp blocks
show less
Hacking
π¨π±
Fernando Soto
2026-10-09 03:05:35
(2 hours ago)
WAF propio vps1 (CL): 404x32,sensMASx112 score 30 en 1h. sondeo rutas sensibles, barrido 404.
Port Scan
Web App Attack
πͺπΈ
el-brujo
2026-10-09 03:00:03
(2 hours ago)
Cloudflare WAF: Request Path: /feast/read-document Request Query: Host: api.elhacker.net userAgent: ...
show more
Cloudflare WAF: Request Path: /feast/read-document Request Query: Host: api.elhacker.net userAgent: Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot) Action: block Source: firewallManaged ASN Description: Google LLC Country: NL Method: POST Timestamp: 2026-10-09T03:00:03Z ruleId: e7e4b386797e417c998d872956c390a1. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Hacking
SQL Injection
Web App Attack
π©πͺ
Hazzard
2026-10-09 02:32:46
(2 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
Anonymous
2026-10-09 02:29:40
(2 hours ago)
Aggressive web scan
Web App Attack
πΊπΈ
dot.mg
2026-10-09 02:28:02
(2 hours ago)
Scan of subdomain
Port Scan
Anonymous
2026-10-09 02:27:25
(2 hours ago)
Web application attack detected.
Web App Attack
Anonymous
2026-10-09 01:48:20
(3 hours ago)
XSS Attempt
Hacking
πΊπΈ
TPI-Abuse
2026-10-09 01:30:28
(3 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.6.242.111 (111.242.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.6.242.111 (111.242.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 21:30:22.309022 2026] [security2:error] [pid 25732:tid 25732] [client 34.6.242.111:43978] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||systemcapacityoptimization.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "systemcapacityoptimization.com"] [uri "/z9x8c7v6b5-debug-trigger-systemcapacityoptimization.com"] [unique_id "ashDrp2XzvwBBff2-MWc_gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
neckaralb-admin.de
2026-10-09 01:30:05
(3 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-09 01:13:32
(4 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.6.242.111 (111.242.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.6.242.111 (111.242.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 21:13:27.885416 2026] [security2:error] [pid 13580:tid 13580] [client 34.6.242.111:32812] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||pamplonaserviciotecnico.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "pamplonaserviciotecnico.com"] [uri "/z9x8c7v6b5-debug-trigger-pamplonaserviciotecnico.com"] [unique_id "asg_t6ch19snCzmL0abN8QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πͺπΈ
robotstxt
2026-10-09 01:11:22
(4 hours ago)
34.6.242.111 - - [09/Oct/2026:01:10:24 +0000] "GET / HTTP/2.0" 403 189 "https://noudiari.es/" "Mozil ...
show more
34.6.242.111 - - [09/Oct/2026:01:10:24 +0000] "GET / HTTP/2.0" 403 189 "https://noudiari.es/" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )" "-" edge="34.6.242.111"
34.6.242.111 - - [09/Oct/2026:01:10:24 +0000] "GET /z9x8c7v6b5-debug-trigger-noudiari.es HTTP/2.0" 403 189 "https://noudiari.es/z9x8c7v6b5-debug-trigger-noudiari.es" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)" "-" edge="34.6.242.111"
34.6.242.111 - - [09/Oct/2026:01:10:25 +0000] "GET /auth/ HTTP/2.0" 403 165 "https://www.noudiari.es/auth" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0" "-" edge="34.6.242.111"
34.6.242.111 - - [09/Oct/2026:01:10:25 +0000] "GET /auth/login/ HTTP/2.0" 403 165 "https://www.noudiari.es/auth/login" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0" "-" edge="3
...
show less
Web App Attack
π¬π§
andypiper
2026-10-09 01:01:35
(4 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
π¨π¦
john doe
2026-10-09 00:51:22
(4 hours ago)
SentinelBot: Env File Hunting (score: 73)
Bad Web Bot