๐ซ๐ท
masterguru
2026-06-11 03:08:37
(2 weeks ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.79.230.100 (BE/Belgium/100.230.79.34.bc.goo ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.79.230.100 (BE/Belgium/100.230.79.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฎ๐น
Progetto1
2026-06-10 19:35:02
(2 weeks ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ณ๐ฑ
melroy89
2026-06-10 05:52:07
(2 weeks ago)
34.79.230.100 - - [10/Jun/2026:07:42:56 +0200] "GET /apps/theming/l10n/nl.js.map HTTP/2.0" 404 1790 ...
show more
34.79.230.100 - - [10/Jun/2026:07:42:56 +0200] "GET /apps/theming/l10n/nl.js.map HTTP/2.0" 404 1790 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36" "cloud.melroy.org" 0.039
34.79.230.100 - - [10/Jun/2026:07:42:57 +0200] "GET /core/l10n/nl.js.map HTTP/2.0" 404 1791 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36" "cloud.melroy.org" 0.034
34.79.230.100 - - [10/Jun/2026:07:51:06 +0200] "GET /dist/be.js HTTP/2.0" 404 1793 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36" "cloud.melroy.org" 0.042
34.79.230.100 - - [10/Jun/2026:07:51:06 +0200] "GET /dist/ar-dz.js HTTP/2.0" 404 1789 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36" "cloud.melroy.org" 0.039
34.79.230.100 - - [10/Jun/2026:07:51:06 +0200] "GET /dist/ar-tn.js HTTP/2.0" 404 1790 "-" "Mozilla/5.0 (X11; Linux x86
...
show less
Web App Attack
๐ท๐บ
DZBOT
2026-06-10 01:09:22
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:00:24
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
FeG Deutschland
2026-06-09 21:01:33
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-06-09 03:02:48
(2 weeks ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐ญ๐บ
bcsaba
2026-06-08 20:30:40
(2 weeks ago)
Probing for .git:
34.79.230.100 - - [08/Jun/2026:22:30:39 +0200] "GET /.git/config HTTP/1.1" 400 230 ...
show more
Probing for .git:
34.79.230.100 - - [08/Jun/2026:22:30:39 +0200] "GET /.git/config HTTP/1.1" 400 230 "-" "SonyEricssonW660i/R6AD Browser/NetFront/3.3 Profile/MIDP-2.0 Configuration/CLDC-1.1"
show less
Web App Attack
๐บ๐ธ
lnklnx
2026-06-08 17:37:04
(2 weeks ago)
www.lnklnx.com:80 34.79.230.100 - - [08/Jun/2026:12:37:02 -0500] "GET /.git/config HTTP/1.1" 301 595 ...
show more
www.lnklnx.com:80 34.79.230.100 - - [08/Jun/2026:12:37:02 -0500] "GET /.git/config HTTP/1.1" 301 595 "-" "w3m/0.5.1"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 17:21:07
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.79.230.100 (100.230.79.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.230.100 (100.230.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:21:03.023979 2026] [security2:error] [pid 27054:tid 27054] [client 34.79.230.100:45550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hanascrystals.com.nilestree.com"] [uri "/.git/config"] [unique_id "aib5_zT_PX3nWimLshCqTQAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 16:41:06
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.79.230.100 (100.230.79.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.230.100 (100.230.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 12:40:58.806463 2026] [security2:error] [pid 19918:tid 19918] [client 34.79.230.100:58116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sentinelonfifth.aarce.me"] [uri "/.git/config"] [unique_id "aibwmjUADWJy_YXv2a8dZQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-08 16:17:46
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ซ๐ท
masterguru
2026-06-08 14:38:46
(2 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.79.230.100 (BE/Belgium/100.230.79. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.79.230.100 (BE/Belgium/100.230.79.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-08 14:10:33
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.79.230.100 (100.230.79.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.230.100 (100.230.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 10:10:28.172819 2026] [security2:error] [pid 4404:tid 4404] [client 34.79.230.100:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.infocard.atlascoombs.com"] [uri "/.git/config"] [unique_id "aibNVDnIIPNGf82z69i-WwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 11:24:05
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.79.230.100 (100.230.79.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.230.100 (100.230.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 07:24:01.729343 2026] [security2:error] [pid 4084:tid 4084] [client 34.79.230.100:56170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "baystreet.news"] [uri "/.git/config"] [unique_id "aiamUQDfNhs16E2KYRRfqgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack