Anonymous
2026-09-23 00:00:33
(2 hours ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-22 23:59:36
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.75.73.152 (152.73.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.73.152 (152.73.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 19:59:30.388178 2026] [security2:error] [pid 26426:tid 26426] [client 34.75.73.152:37074] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||15cherryavenue.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "15cherryavenue.com"] [uri "/z9x8c7v6b5-debug-trigger-15cherryavenue.com"] [unique_id "arMWYqrbNCXNawhXagV7TgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
[email protected]
2026-09-22 23:40:50
(3 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-22T23:40:50Z
Brute-Force
๐บ๐ธ
kosada.com
2026-09-22 23:22:31
(3 hours ago)
Repeated requests for suspicious nonexistent URLs, for example: /asset-manifest.json (HTTP/2.0 port ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /asset-manifest.json (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36")
show less
Web App Attack
๐บ๐ธ
[email protected]
2026-09-22 23:15:35
(3 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-22T23:15:35Z
Brute-Force
๐บ๐ธ
[email protected]
2026-09-22 22:57:36
(3 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-22T22:57:36Z
Brute-Force
๐ซ๐ฎ
albionfreemarket.com
2026-09-22 22:44:31
(3 hours ago)
34.75.73.152 - - [22/Sep/2026:22:44:29 +0000] "GET /index.php?s=index/\x5Cthink\x5Capp/invokefunctio ...
show more
34.75.73.152 - - [22/Sep/2026:22:44:29 +0000] "GET /index.php?s=index/\x5Cthink\x5Capp/invokefunction&function=call_user_func_array&vars[0]=file_get_contents&vars[1][]=/proc/self/environ HTTP/2.0" 403 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )" 0.000 "-" "US"
34.75.73.152 - - [22/Sep/2026:22:44:29 +0000] "POST /graphql HTTP/2.0" 403 555 "https://albionfreemarket.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" 0.000 "-" "US"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
oralunal
2026-09-22 22:22:02
(4 hours ago)
IP banned by Fail2Ban in jail ah-suss access.log mvfnds
...
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-22 22:06:07
(4 hours ago)
Too many Status 40X (20)
Scanning/Probing (11)
Request Overload (140)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 22:01:43
(4 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.75.73.152 (152.73.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.73.152 (152.73.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 18:01:38.836961 2026] [security2:error] [pid 7778:tid 7778] [client 34.75.73.152:49906] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||anywheregarden.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "anywheregarden.com"] [uri "/z9x8c7v6b5-debug-trigger-anywheregarden.com"] [unique_id "arL6wubAajwHEuC9RDWJZQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
safeinternet
2026-09-22 21:40:57
(5 hours ago)
Fail2ban: Nginx Bad Request
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 21:27:42
(5 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.75.73.152 (152.73.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.73.152 (152.73.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 17:27:38.435117 2026] [security2:error] [pid 15809:tid 15860] [client 34.75.73.152:47918] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||apada.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "apada.com"] [uri "/z9x8c7v6b5-debug-trigger-apada.com"] [unique_id "arLyyv7DGBg3Q0wF2JaOZAAAAQc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 21:10:11
(5 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.75.73.152 (152.73.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.73.152 (152.73.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 17:10:05.468853 2026] [security2:error] [pid 10956:tid 10956] [client 34.75.73.152:41820] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||apcalculusexamprep.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "apcalculusexamprep.com"] [uri "/z9x8c7v6b5-debug-trigger-apcalculusexamprep.com"] [unique_id "arLurer0mKLfNkcoyiTGiAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
[email protected]
2026-09-22 21:08:46
(5 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-22T21:08:46Z
Brute-Force
๐จ๐ฆ
Mediashaker
2026-09-22 20:35:56
(6 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.75.73.152 (US/Uni ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.75.73.152 (US/United States/152.73.75.34.bc.googleusercontent.com)
show less
Bad Web Bot