🇩🇪
EGP Abuse Dept
2026-09-13 01:33:18
(41 seconds ago)
Scanning for web/db/file exploits on www.lenswebshop.nl
SQL Injection
Bad Web Bot
Web App Attack
🇷🇺
DZBOT
2026-09-13 01:31:52
(2 minutes ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 01:21:05
(12 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.69.74.177 (177.74.69.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.69.74.177 (177.74.69.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 21:20:59.543196 2026] [security2:error] [pid 17089:tid 17089] [client 34.69.74.177:35044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lenorasflowers.com"] [uri "/.git/config"] [unique_id "aqX6e2CaWnVh_Tk1mAk8YQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-13 01:12:15
(21 minutes ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 00:56:19
(37 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.69.74.177 (177.74.69.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.69.74.177 (177.74.69.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 20:56:13.119985 2026] [security2:error] [pid 18835:tid 18835] [client 34.69.74.177:46168] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lendren.com"] [uri "/static//app/.env"] [unique_id "aqX0rbvsLFXuQhUKySOw-gAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Alt255
2026-09-13 00:51:06
(42 minutes ago)
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.69.74.177 - - \[13/Sep/2026:02:51:03 +0200\] "GET /.ssh/known_hosts HTTP/1.1" 301 521 "-" "Mozilla/5.0 \(compatible\; Googlebot/2.1\; +http://www.google.com/bot.html\)"
...
show less
Bad Web Bot
Web App Attack
🇩🇪
ghostwarriors
2026-09-13 00:50:06
(43 minutes ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
🇳🇱
e.fierstra
2026-09-13 00:45:44
(48 minutes ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-13 00:45:12
(48 minutes ago)
Web App Attack
🇩🇪
yitzhaq
2026-09-13 00:30:56
(1 hour ago)
34.69.74.177 - - [13/Sep/2026:02:30:53 +0200] "GET /assets/manifest.json HTTP/2.0" 404 40736 "-" "Mo ...
show more
34.69.74.177 - - [13/Sep/2026:02:30:53 +0200] "GET /assets/manifest.json HTTP/2.0" 404 40736 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"
34.69.74.177 - - [13/Sep/2026:02:30:53 +0200] "GET /public/plugins/alertlist/../../../../../../../../proc/self/cmdline HTTP/2.0" 400 324 "-" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)"
34.69.74.177 - - [13/Sep/2026:02:30:53 +0200] "GET /var/run/secrets/kubernetes.io/serviceaccount/token HTTP/2.0" 404 41050 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)"
34.69.74.177 - - [13/Sep/2026:02:30:53 +0200] "GET /proc/self/cgroup HTTP/2.0" 404 41102 "-" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"
34.69.74.177 - - [13/Sep/2026:02:30:53 +0200] "GET /proc/self/cmdline HTTP/2.0" 404 41093 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)"
34.69.74.177 - - [13/Sep/2026:02:30:53 +0200] "GET /.dockerenv HTTP/2.0" 404 41093 "-" "CC
show less
Web App Attack
Hacking
🇩🇰
HostingGroup
2026-09-13 00:11:53
(1 hour ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 5. First blocked: 2026-09-13.
show less
Bad Web Bot
Web App Attack
🇳🇱
Alboweb B.V.
2026-09-13 00:11:06
(1 hour ago)
Bad web bot activity detected by Fail2Ban in plesk-apache-badbot jail
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-13 00:06:33
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.69.74.177 (177.74.69.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.69.74.177 (177.74.69.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 20:06:25.458286 2026] [security2:error] [pid 31381:tid 31381] [client 34.69.74.177:48588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lemay.design"] [uri "/.git/HEAD"] [unique_id "aqXpATj1vca69nwns6kaHQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
backslash
2026-09-13 00:06:11
(1 hour ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
🇧🇪
cmbplf
2026-09-13 00:05:52
(1 hour ago)
17.112 4xx requests in 1 hour (2w2d16h)
Brute-Force
Bad Web Bot