๐ฉ๐ช
klaus_ph
2026-09-26 17:07:30
(1 week ago)
2026-09-25 18:36:06,885 fail2ban.actions [594716]: NOTICE [ipblocklist] Ban 34.75.239.99
...
Bad Web Bot
๐ฎ๐ณ
evicky2002
2026-09-23 06:00:01
(2 weeks ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ซ๐ท
SpaceHost-Server
2026-09-22 22:24:42
(2 weeks ago)
Brute-Force
Web App Attack
๐บ๐ธ
Secure Gatewayยฎ๏ธ
2026-09-22 22:00:32
(2 weeks ago)
Report By Secure Gateway Security Team: Unauthorized Connection Attempt
Hacking
๐บ๐ธ
ALSCOยฎ๏ธ
2026-09-22 22:00:32
(2 weeks ago)
Report By ALSCO Security Team: Potential CSRF Attack Detected
Web App Attack
๐บ๐ธ
drewking
2026-09-22 15:49:42
(2 weeks ago)
Rate-limit abuse โ 46 requests in a short window (brute-force / scraping). Targeted paths: /.bashrc, ...
show more
Rate-limit abuse โ 46 requests in a short window (brute-force / scraping). Targeted paths: /.bashrc, /service_account.json, /api/v1/models, /serverless.yaml, /Dockerfile.
show less
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ธ
digitalbrat
2026-09-22 13:00:58
(2 weeks ago)
Auto-banned by traffic-hub: webshell-style file extension
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 12:53:48
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.75.239.99 (99.239.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.239.99 (99.239.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 08:53:43.199051 2026] [security2:error] [pid 696331:tid 696331] [client 34.75.239.99:52468] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||anneoday.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "anneoday.com"] [uri "/z9x8c7v6b5-debug-trigger-anneoday.com"] [unique_id "arJ6V4Xl9znV9USioXp46QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-22 12:35:26
(2 weeks ago)
This address swept through a list of pages that do not exist on our site within seconds โ a scanner ...
show more
This address swept through a list of pages that do not exist on our site within seconds โ a scanner working through its wordlist of exploitable paths. Blocked; please check the machine behind it for a scanner or malware. | method: GET | path: /mcldhiq6fxk9vl4c1g4m (+5 more) | 2026-09-22 12:35 UTC
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 12:17:06
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.75.239.99 (99.239.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.239.99 (99.239.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 08:17:03.079564 2026] [security2:error] [pid 24757:tid 24757] [client 34.75.239.99:37482] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||anrfilters.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "anrfilters.com"] [uri "/z9x8c7v6b5-debug-trigger-anrfilters.com"] [unique_id "arJxv6xc190nqahw5oCTuQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 11:53:57
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.75.239.99 (99.239.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.239.99 (99.239.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 07:53:50.797991 2026] [security2:error] [pid 13720:tid 13863] [client 34.75.239.99:37704] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||anthonydalessandro.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "anthonydalessandro.com"] [uri "/z9x8c7v6b5-debug-trigger-anthonydalessandro.com"] [unique_id "arJsTirMyVdROKIIOGLCRQAAApY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 11:23:29
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.75.239.99 (99.239.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.239.99 (99.239.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 07:23:22.917971 2026] [security2:error] [pid 5504:tid 5504] [client 34.75.239.99:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||antitribu.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "antitribu.com"] [uri "/z9x8c7v6b5-debug-trigger-antitribu.com"] [unique_id "arJlKtI2KSclRpz5wJs6JwAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-22 11:20:32
(2 weeks ago)
[ti-29al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-29al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.75.239.99 - - [22/Sep/2026:13:20:28 +0200] "GET /.env.development HTTP/2.0" 301 530 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-22 11:18:04
(2 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
macrob
2026-09-22 10:55:16
(2 weeks ago)
2026/09/22 10:55:15 [error] 1465258#1465258: *24705622 access forbidden by rule, client: 34.75.239.9 ...
show more
2026/09/22 10:55:15 [error] 1465258#1465258: *24705622 access forbidden by rule, client: 34.75.239.99, server: antzfund.com, request: "GET /.env.old HTTP/1.1", host: "antzfund.com"
2026/09/22 10:55:15 [error] 1465258#1465258: *24705636 access forbidden by rule, client: 34.75.239.99, server: antzfund.com, request: "GET /.env.save HTTP/1.1", host: "antzfund.com"
2026/09/22 10:55:15 [error] 1465258#1465258: *24705637 access forbidden by rule, client: 34.75.239.99, server: antzfund.com, request: "GET /.env.prod HTTP/1.1", host: "antzfund.com"
...
show less
Web App Attack