๐ณ๐ฑ
homeshowdomain.nl
2026-10-02 21:59:32
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-10-01.
show less
Web App Attack
SSH
Hacking
๐ช๐ธ
robotstxt
2026-10-02 05:17:33
(3 days ago)
34.78.238.57 - - [02/Oct/2026:05:16:42 +0000] "GET /dist/manifest.json HTTP/2.0" 403 1968 "-" "Mozil ...
show more
34.78.238.57 - - [02/Oct/2026:05:16:42 +0000] "GET /dist/manifest.json HTTP/2.0" 403 1968 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36" "-" edge="34.78.238.57"
34.78.238.57 - - [02/Oct/2026:05:16:42 +0000] "GET /assets/manifest.json HTTP/2.0" 403 1968 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36" "-" edge="34.78.238.57"
34.78.238.57 - - [02/Oct/2026:05:16:42 +0000] "GET /asset-manifest.json HTTP/2.0" 403 1968 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36" "-" edge="34.78.238.57"
34.78.238.57 - - [02/Oct/2026:05:16:42 +0000] "GET /z9x8c7v6b5-debug-trigger-nworkshop.org HTTP/2.0" 403 2130 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)" "-" edge="34.78.238.57"
34.78.238.57 - - [02/Oct/2026:05:16:42 +0000] "GET /yvav67kxlybc4c3btuyk/ HTTP/2.0" 403 2130 "ht
...
show less
Web App Attack
๐จ๐ญ
๐จ๐ญ Hosting
2026-10-02 05:10:23
(3 days ago)
Automated WAF report: 125-150 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-10-02 04:42:36
(3 days ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.78.238.57 (BE/Bel ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.78.238.57 (BE/Belgium/57.238.78.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-02 02:34:57
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.78.238.57 (57.238.78.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.78.238.57 (57.238.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 22:34:50.232025 2026] [security2:error] [pid 14468:tid 14468] [client 34.78.238.57:50792] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.notariaarauco.tecnoconce.com|F|2"] [data ".notariaarauco.tecnoconce.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.notariaarauco.tecnoconce.com"] [uri "/z9x8c7v6b5-debug-trigger-www.notariaarauco.tecnoconce.com"] [unique_id "ar8YSmZSWy_295TjN00XTgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-10-02 01:53:30
(3 days ago)
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encod ...
show more
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encoding/ /proxy/ /lock-token/ /content-range/ /if/ /x-http-method-override/ /x-http-method/ /x-method-override/ /x-middleware-subrequest/ /expect/" at TX:header_name_920450_x-middleware-subrequest. (920450-201)
show less
Bad Web Bot
๐ณ๐ฑ
ConsulHosting
2026-10-02 01:51:23
(3 days ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
Anonymous
2026-10-02 00:33:15
(3 days ago)
Bot / seems abusive / Apache connections: 28
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐จ๐ฆ
csnavarro2020
2026-10-01 23:20:29
(3 days ago)
Automated scan for known vulnerable/nonexistent path: /lib/terminal-xhr.php
Web App Attack
Hacking
๐ง๐ท
radardatelecom
2026-10-01 22:26:04
(3 days ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐บ๐ธ
RLDD
2026-10-01 21:40:02
(3 days ago)
WP probing for vulnerabilities -nov
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-10-01 21:03:05
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1248
Exploited Host
Web App Attack
๐จ๐ญ
zynex
2026-10-01 20:35:22
(3 days ago)
URL Probing: /@fs/app/.env
Web App Attack
๐ซ๐ท
masterguru
2026-10-01 20:25:11
(3 days ago)
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .back/ .b ...
show more
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .back/ .backup/ .bak/ .bck/ .bk/ .bkp/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .cnf/ .com/ .compositefont/ .config/ .conf/ .copy/ .crt/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dist/ .dll/ .dos/ .dpkg-dist/ .drv/ .gadget/ .hta/ .htr/ .htw/ .ida/ .idc/ .idq/ .inc/ .inf/ .ini/ .jks/ .jse/ .key/ .licx/ .lnk/ .log/ .mdb/ .msc/ .ocx/ .old/ .pass/ .pdb/ .pfx/ .pif/ .pem/ .pol/ .prf/ .printer/ .pwd/ .rdb/ .rdp/ .reg/ .resources/ .resx/ .sav/ .save/ .scr/ .sct/ .sh/ .shs/ .sql/ .sqlite/ .sqlite3/ .swap/ .swo/ .swp/ .sys/ .temp/ .tfstate/ .tlb/ .tmp/ .vb/ .vbe/ .vbs/ .vbproj/ .vsdisco/ .vxd/ .webinfo/ .ws/ .wsc/ .wsf/ .wsh/ .xsd/ .xsx/" at TX:extension. (920440-193)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-01 17:49:38
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.78.238.57 (57.238.78.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.78.238.57 (57.238.78.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 13:49:34.742851 2026] [security2:error] [pid 20762:tid 20785] [client 34.78.238.57:43570] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.kylight.com|F|2"] [data ".kylight.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.kylight.com"] [uri "/z9x8c7v6b5-debug-trigger-www.kylight.com"] [unique_id "ar6dLjnRGI_nGvJ87GDj2QAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack