๐ณ๐ฑ
homeshowdomain.nl
2026-10-10 21:59:07
(20 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-10-09.
show less
Web App Attack
SSH
Hacking
๐ฎ๐น
paoloartone
2026-10-10 05:00:25
(1 day ago)
Reverse proxy TCO: 360 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 09/10/202 ...
show more
Reverse proxy TCO: 360 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 09/10/2026.
show less
Web App Attack
Hacking
Port Scan
Anonymous
2026-10-09 06:05:07
(2 days ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐ฉ๐ช
Marc
2026-10-09 04:26:49
(2 days ago)
34.61.178.209 - - [09/Oct/2026:06:26:48 +0200] "GET /account/login HTTP/2.0" 404 291 "-" "Mozilla/5. ...
show more
34.61.178.209 - - [09/Oct/2026:06:26:48 +0200] "GET /account/login HTTP/2.0" 404 291 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" 34.61.178.209 - - [09/Oct/2026:06:26:48 +0200] "GET /login HTTP/2.0" 404 269 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" 34.61.178.209 - - [09/Oct/2026:06:26:48 +0200] "GET /z9x8c7v6b5-debug-trigger-account.bente-gruppe.de HTTP/2.0" 404 269 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)"
show less
Brute-Force
๐ฉ๐ช
Hazzard
2026-10-09 03:49:25
(2 days ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted]): (CF_ENABLE)
Bad Web Bot
Anonymous
2026-10-09 03:46:38
(2 days ago)
Banned by Fail2Ban on server
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-10-09 03:41:31
(2 days ago)
2026/10/09 04:41:29 [error] 4060693#4060693: *1404400 access forbidden by rule, client: 34.61.178.20 ...
show more
2026/10/09 04:41:29 [error] 4060693#4060693: *1404400 access forbidden by rule, client: 34.61.178.209, server: vp-arc.org, request: "GET //.env HTTP/2.0", host: "vp-arc.org"
34.61.178.209 - - [09/Oct/2026:04:41:29 +0100] "GET //.env HTTP/2.0" 403 1045 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)"
2026/10/09 04:41:30 [error] 4060693#4060693: *1404400 access forbidden by rule, client: 34.61.178.209, server: vp-arc.org, request: "GET /static../.env HTTP/2.0", host: "vp-arc.org"
show less
Brute-Force
Web App Attack
๐ฉ๐ช
altenglaner
2026-10-09 03:03:22
(2 days ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-09 02:57:29
(2 days ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 02:46:39
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 34.61.178.209 (209.178.61.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.61.178.209 (209.178.61.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 22:46:33.946048 2026] [security2:error] [pid 5902:tid 5951] [client 34.61.178.209:42136] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vote4joegardner.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vote4joegardner.com"] [uri "/z9x8c7v6b5-debug-trigger-vote4joegardner.com"] [unique_id "ashViZvARnNEQ7SSMIN5xgAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-10-09 02:35:27
(2 days ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.61.178.209 (US/United States/209.178. ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.61.178.209 (US/United States/209.178.61.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.61.178.209 - - [09/Oct/2026:04:35:22 +0200] "GET /.ssh/id_rsa HTTP/2.0" 403 0 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)" "34.61.178.209" host=vortici.it
show less
Port Scan
๐ธ๐ช
vaia.cloud
2026-10-09 02:35:03
(2 days ago)
crowdsecurity/http-path-traversal-probing
Brute-Force
Web App Attack
๐บ๐ธ
agenciahypelab.com.br
2026-10-09 02:18:31
(2 days ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-10-09 02:13:11
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ณ๐ฑ
OrangeFlamingo
2026-10-09 02:12:21
(2 days ago)
2026-10-09 02:12:19 WARN Probe detected: uri=/api/songs/static../.env ip=34.61.178.209
...
Web App Attack