๐ณ๐ฑ
Site.eu
2026-06-08 23:42:42
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-08 16:48:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.78.121.169 (169.121.78.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.78.121.169 (169.121.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 12:48:29.213701 2026] [security2:error] [pid 7276:tid 7295] [client 34.78.121.169:51524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/config/config.yml" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.testproperty.pref-realestate.com"] [uri "/config/config.yml"] [unique_id "aibyXYxdjp2NQDXFnbmWyQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 12:41:03
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.78.121.169 (169.121.78.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.78.121.169 (169.121.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 08:40:56.221800 2026] [security2:error] [pid 11752:tid 11752] [client 34.78.121.169:33532] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mobileonlinecasinos.co|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mobileonlinecasinos.co"] [uri "/.config/gcloud/credentials.db"] [unique_id "aia4WEu6YTzRyRVwHsp4QgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
hostseries
2026-06-08 12:11:22
(1 week ago)
Trigger: CT_LIMIT
Brute-Force
Anonymous
2026-06-08 11:55:07
(1 week ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐บ๐ธ
mnsf
2026-06-08 10:10:17
(1 week ago)
Too many Status 40X (11)
Scanning/Probing (61)
Request Overload (383)
Brute-Force
Web App Attack
๐ณ๐ฑ
melroy89
2026-06-08 10:09:18
(1 week ago)
2026/06/08 12:09:16 [error] 2332198#2332198: *1795771 limiting requests, excess: 50.091 by zone "ip" ...
show more
2026/06/08 12:09:16 [error] 2332198#2332198: *1795771 limiting requests, excess: 50.091 by zone "ip", client: 34.78.121.169, server: cryptobot.melroy.org, request: "GET /aws-credentials.json HTTP/1.1", host: "cryptobot.melroy.org"
2026/06/08 12:09:16 [error] 2332198#2332198: *1795773 limiting requests, excess: 50.082 by zone "ip", client: 34.78.121.169, server: cryptobot.melroy.org, request: "GET /serviceaccount.json HTTP/1.1", host: "cryptobot.melroy.org"
2026/06/08 12:09:16 [error] 2332198#2332198: *1795774 limiting requests, excess: 50.064 by zone "ip", client: 34.78.121.169, server: cryptobot.melroy.org, request: "GET /google-credentials.json HTTP/1.1", host: "cryptobot.melroy.org"
2026/06/08 12:09:16 [error] 2332198#2332198: *1795775 limiting requests, excess: 50.034 by zone "ip", client: 34.78.121.169, server: cryptobot.melroy.org, request: "GET /gcp-credentials.json HTTP/1.1", host: "cryptobot.melroy.org"
2026/06/08 12:09:16 [error] 2332198#2332198: *1795776 limiting requests, e
...
show less
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-08 08:55:29
(1 week ago)
Scraping with a high error ratio and request rate
Bad Web Bot
Anonymous
2026-06-08 06:45:10
(1 week ago)
Aggressive web scan
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-08 04:07:23
(1 week ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 02:15:30
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.78.121.169 (169.121.78.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.78.121.169 (169.121.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 22:15:23.287703 2026] [security2:error] [pid 29065:tid 29140] [client 34.78.121.169:41960] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||toubaomaha.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "toubaomaha.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiYlu0l4u55VRzMyo8bbXgAAAgU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-06-08 01:40:04
(1 week ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ซ๐ท
Octopuce
2026-06-08 01:20:56
(1 week ago)
Aggressive web search of vulnerable pages: /info.php /phpinfo.php /php.php /test.php /debug.php /php ...
show more
Aggressive web search of vulnerable pages: /info.php /phpinfo.php /php.php /test.php /debug.php /phptest.php /api/phpinfo.php /admin/phpinfo.ph ...
show less
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-08 01:10:15
(1 week ago)
20 attempts against mh-misbehave-ban on choy
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 00:31:54
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.78.121.169 (169.121.78.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.78.121.169 (169.121.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 20:31:51.169730 2026] [security2:error] [pid 14348:tid 14348] [client 34.78.121.169:52894] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||aupapierjaponais.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "aupapierjaponais.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiYNd6KCfvWTRm3joPY3KwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack