๐ฉ๐ช
updown.io
2026-10-03 15:43:03
(55 minutes ago)
{"level":"info","ts":1791042183.423587,"logger":"http.log.access.log1","msg":"handled request","requ ...
show more
{"level":"info","ts":1791042183.423587,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.7.107.198","remote_port":"33194","client_ip":"34.7.107.198","proto":"HTTP/2.0","method":"GET","host":"status.goworkabit.com","uri":"/","headers":{"Sec-Fetch-Mode":["navigate"],"Accept-Encoding":["gzip, deflate, br, zstd"],"User-Agent":["Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"],"Sec-Fetch-Site":["none"],"Sec-Fetch-User":["?1"],"Sec-Fetch-Dest":["document"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"Upgrade-Insecure-Requests":["1"],"Accept":["text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,*/*;q=0.8"],"Sec-Ch-Ua-Platform":["\"Windows\""],"Sec-Ch-Ua":["\"Chromium\";v=\"152\", \"Not?A_Brand\";v=\"24\", \"Microso
...
show less
DDoS Attack
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-03 15:15:52
(1 hour ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-03 12:38:20
(4 hours ago)
XSS Attempt
Hacking
Anonymous
2026-10-03 09:54:13
(6 hours ago)
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /z9x8c7v6b5-debug-trigger-www.crypcool.com HTTP/1 ...
show more
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /z9x8c7v6b5-debug-trigger-www.crypcool.com HTTP/1.1" 404 30020
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /model/info HTTP/1.1" 404 30020
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /dist/manifest.json HTTP/1.1" 404 30020
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /jni5vxlvgq0zxupbzakb HTTP/1.1" 404 30020
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /dist/.vite/manifest.json HTTP/1.1" 404 30020
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /build/manifest.json HTTP/1.1" 404 30020
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /wrqyebcix2g0xxs8mgch HTTP/1.1" 404 30020
34.7.107.198 - - [03/Oct/2026:11:54:04 +0200] "GET /lib/terminal-xhr.php HTTP/1.1" 404 29382
34.7.107.198 - - [03/Oct/2026:11:54:06 +0200] "GET /model/info HTTP/1.1" 404 28480
34.7.107.198 - - [03/Oct/2026:11:54:06 +0200] "GET /graphql HTTP/1.1" 404 30020
...
show less
Web Spam
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-03 09:37:41
(7 hours ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ท
masterguru
2026-10-03 08:38:32
(8 hours ago)
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .backup/ ...
show more
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .backup/ .bak/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .com/ .compositefont/ .config/ .conf/ .crt/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dist/ .dll/ .dos/ .dpkg-dist/ .drv/ .gadget/ .hta/ .htr/ .htw/ .ida/ .idc/ .idq/ .inc/ .inf/ .ini/ .jse/ .key/ .licx/ .lnk/ .log/ .mdb/ .msc/ .ocx/ .old/ .pass/ .pdb/ .pfx/ .pif/ .pem/ .pol/ .prf/ .printer/ .pwd/ .rdb/ .rdp/ .reg/ .resources/ .resx/ .scr/ .sct/ .shs/ .sql/ .swp/ .sys/ .tlb/ .tmp/ .url/ .vb/ .vbe/ .vbs/ .vbproj/ .vsdisco/ .vxd/ .webinfo/ .ws/ .wsc/ .wsf/ .wsh/ .xsd/ .xsx/" at TX:extension. (920440-195)
show less
Hacking
๐ซ๐ท
pm33
2026-10-03 04:25:27
(12 hours ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-10-03 04:23:45
(12 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 02:21:35
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.7.107.198 (198.107.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.7.107.198 (198.107.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 22:21:30.170000 2026] [security2:error] [pid 5742:tid 5742] [client 34.7.107.198:37496] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.murciafm.com|F|2"] [data ".murciafm.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.murciafm.com"] [uri "/z9x8c7v6b5-debug-trigger-www.murciafm.com"] [unique_id "asBmqiNBHZQnEqbYc61tgQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-10-03 01:56:35
(14 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
masterguru
2026-10-03 00:17:25
(16 hours ago)
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .backup/ ...
show more
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .backup/ .bak/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .com/ .compositefont/ .config/ .conf/ .crt/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dist/ .dll/ .dos/ .dpkg-dist/ .drv/ .gadget/ .hta/ .htr/ .htw/ .ida/ .idc/ .idq/ .inc/ .inf/ .ini/ .jse/ .key/ .licx/ .lnk/ .log/ .mdb/ .msc/ .ocx/ .old/ .pass/ .pdb/ .pfx/ .pif/ .pem/ .pol/ .prf/ .printer/ .pwd/ .rdb/ .rdp/ .reg/ .resources/ .resx/ .scr/ .sct/ .shs/ .sql/ .swp/ .sys/ .tlb/ .tmp/ .url/ .vb/ .vbe/ .vbs/ .vbproj/ .vsdisco/ .vxd/ .webinfo/ .ws/ .wsc/ .wsf/ .wsh/ .xsd/ .xsx/" at TX:extension. (920440-196)
show less
Hacking
๐ณ๐ฑ
Alt255
2026-10-02 22:49:35
(17 hours ago)
[cb-01al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-01al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.7.107.198 - - [03/Oct/2026:00:49:20 +0200] "GET /cache/original/%2e%2e/%2e%2e/.env HTTP/2.0" 404 1338 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
HostingGroup
2026-10-02 20:31:53
(20 hours ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 3. First blocked: 2026-10-02.
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-10-02 18:07:39
(22 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
paissangroup
2026-10-02 15:59:13
(1 day ago)
Multiple WAF Violations
Web App Attack