๐ซ๐ท
IRISIO
2026-09-30 13:06:49
(6 hours ago)
scans/SQL injection/spam posts : 5410 queries
Web App Attack
SQL Injection
๐ช๐ธ
robotstxt
2026-09-30 05:10:23
(14 hours ago)
34.74.3.124 - - [30/Sep/2026:05:09:29 +0000] "GET /.env HTTP/2.0" 403 189 "-" "Mozilla/5.0 AppleWebK ...
show more
34.74.3.124 - - [30/Sep/2026:05:09:29 +0000] "GET /.env HTTP/2.0" 403 189 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
34.74.3.124 - - [30/Sep/2026:05:09:29 +0000] "GET /.env.production HTTP/2.0" 403 197 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot"
34.74.3.124 - - [30/Sep/2026:05:09:29 +0000] "GET /.env.local HTTP/2.0" 403 189 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)"
34.74.3.124 - - [30/Sep/2026:05:09:29 +0000] "GET /dist/.env HTTP/2.0" 403 189 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)"
34.74.3.124 - - [30/Sep/2026:05:09:30 +0000] "GET /src/.env HTTP/2.0" 403 189 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 04:19:55
(15 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.74.3.124 (124.3.74.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.74.3.124 (124.3.74.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:19:49.420711 2026] [security2:error] [pid 25499:tid 25499] [client 34.74.3.124:42846] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cgdougm.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cgdougm.com"] [uri "/z9x8c7v6b5-debug-trigger-cgdougm.com"] [unique_id "aryN5RPKxX3yXCOFpqHAggAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 03:50:55
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.74.3.124 (124.3.74.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.74.3.124 (124.3.74.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 23:50:51.158079 2026] [security2:error] [pid 3140:tid 3140] [client 34.74.3.124:38428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cfcameron.cygnetsilks.com"] [uri "/frontend/.env"] [unique_id "aryHG7Gby0-4Z5SrjDSKEwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-30 03:01:19
(16 hours ago)
2.920 requests from abuseipdb.com blacklisted IP (1yr10mos3w)
Brute-Force
Bad Web Bot
๐ซ๐ฎ
KTSTechnology
2026-09-30 03:00:36
(16 hours ago)
Web vulnerability scanning detected by our ISP firewall
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-30 02:47:19
(17 hours ago)
Scanning for web/db/file exploits on www.chateautjes.nl
SQL Injection
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-09-30 01:00:45
(18 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 00:39:16
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.74.3.124 (124.3.74.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.74.3.124 (124.3.74.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 20:39:10.558572 2026] [security2:error] [pid 14492:tid 14492] [client 34.74.3.124:39594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "charityroast.net"] [uri "/.env.js"] [unique_id "arxaLr0Et9kFm-zZXxnznQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-30 00:33:19
(19 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
Hazzard
2026-09-30 00:15:46
(19 hours ago)
(PERMBLOCK) 34.74.3.124 (US/United States/South Carolina/North Charleston/124.3.74.34.bc.googleuserc ...
show more
(PERMBLOCK) 34.74.3.124 (US/United States/South Carolina/North Charleston/124.3.74.34.bc.googleusercontent.com/[redacted]) has had more than 4 temp blocks
show less
Hacking
๐บ๐ธ
9LEVEL.com.br
2026-09-30 00:11:03
(19 hours ago)
Blocked by Fail2ban for traefik-404 abuse
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 23:43:53
(20 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.74.3.124 (124.3.74.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.74.3.124 (124.3.74.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 19:43:49.232153 2026] [security2:error] [pid 20768:tid 20768] [client 34.74.3.124:52858] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||centrovision21.opticasprisma.com|F|2"] [data ".opticasprisma.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "centrovision21.opticasprisma.com"] [uri "/z9x8c7v6b5-debug-trigger-centrovision21.opticasprisma.com"] [unique_id "arxNNYTNUQK2MpB0p0FcaAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-29 23:06:09
(20 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-29 22:41:35
(21 hours ago)
by Attack Lagwatch(gw)
DDoS Attack
Web Spam
Hacking
Bad Web Bot
Web App Attack