๐ซ๐ท
โจ
2026-09-23 02:47:12
(12 hours ago)
Domain : business2oz.com
Rule : hack
2026-09-23 02:45:22 ***hidden-privacy*** GET /z9x8c7v6b5-debug- ...
show more
Domain : business2oz.com
Rule : hack
2026-09-23 02:45:22 ***hidden-privacy*** GET /z9x8c7v6b5-debug-trigger-www.business2oz.com - 443 - 34.80.162.247 HTTP/2 Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 - www.business2oz.com 404 0 2 103 510 222 - -
show less
Hacking
SQL Injection
Brute-Force
๐ซ๐ท
โจ
2026-09-23 01:19:05
(14 hours ago)
Domain : bedworthrc.com
Rule : hack
2026-09-23 01:16:53 ***hidden-privacy*** GET /z9x8c7v6b5-debug-t ...
show more
Domain : bedworthrc.com
Rule : hack
2026-09-23 01:16:53 ***hidden-privacy*** GET /z9x8c7v6b5-debug-trigger-www.bedworthrc.com - 443 - 34.80.162.247 HTTP/2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1) - www.bedworthrc.com 301 0 0 541 492 516 - -
show less
Hacking
SQL Injection
Brute-Force
๐ธ๐ฌ
naveeddaros
2026-09-22 20:40:23
(18 hours ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
๐ซ๐ท
dynamix
2026-09-22 20:32:47
(18 hours ago)
Multiple WAF Violations
Web App Attack
๐จ๐ฆ
Mediashaker
2026-09-22 20:24:21
(19 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.80.162.247 (TW/Ta ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.80.162.247 (TW/Taiwan/247.162.80.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-22 19:10:37
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.162.247 (247.162.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.162.247 (247.162.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 15:10:31.719107 2026] [security2:error] [pid 23905:tid 23905] [client 34.80.162.247:37556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "al-harbi.com"] [uri "/.env.old"] [unique_id "arLSp--dV4vWics--dzNkwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-22 17:51:58
(21 hours ago)
34.80.162.247 - - [22/Sep/2026:17:50:57 +0000] "GET / HTTP/2.0" 403 26725 "https://anagavilan.com/" ...
show more
34.80.162.247 - - [22/Sep/2026:17:50:57 +0000] "GET / HTTP/2.0" 403 26725 "https://anagavilan.com/" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)" "-" edge="34.80.162.247"
34.80.162.247 - - [22/Sep/2026:17:50:57 +0000] "GET /wp-content/cache/autoptimize/js/autoptimize_2ccafc2a375017913b7d01404d6d7b22.js HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0" "-" edge="34.80.162.247"
34.80.162.247 - - [22/Sep/2026:17:50:59 +0000] "GET /dist/manifest.json HTTP/2.0" 403 19327 "https://anagavilan.com/dist/manifest.json" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0" "-" edge="34.80.162.247"
34.80.162.247 - - [22/Sep/2026:17:50:59 +0000] "GET /webpack-stats.json HTTP/2.0" 403 19327 "https://anagavilan.com/webpack-stats.json" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome
...
show less
Web App Attack
๐บ๐ธ
oralunal
2026-09-22 17:50:12
(21 hours ago)
IP banned by Fail2Ban in jail ah-suss access.log mvfnds
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:46:13
(21 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.80.162.247 (247.162.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.162.247 (247.162.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:46:09.650099 2026] [security2:error] [pid 14971:tid 14971] [client 34.80.162.247:50958] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||andiamocomputers.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "andiamocomputers.com"] [uri "/z9x8c7v6b5-debug-trigger-andiamocomputers.com"] [unique_id "arK-4bLud6PEG0Fs4cCuxQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 16:20:08
(23 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 16:19:06
(23 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.80.162.247 (247.162.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.162.247 (247.162.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 12:19:02.254296 2026] [security2:error] [pid 18054:tid 18054] [client 34.80.162.247:39324] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||astrologydemo.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "astrologydemo.com"] [uri "/z9x8c7v6b5-debug-trigger-astrologydemo.com"] [unique_id "arKqdiWYtyVx658u0zyUzAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bazter.pro
2026-09-22 16:02:43
(23 hours ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐ท๐ธ
pexodelic
2026-09-22 15:46:14
(23 hours ago)
Automated report from web, SSH and FTP server logs: 160 requests probing for exposed secrets (.env, ...
show more
Automated report from web, SSH and FTP server logs: 160 requests probing for exposed secrets (.env, .git, config files). Reported by our automated log scan at 2026-09-22 15:05 UTC; counts cover the current log rotation window.
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 15:04:59
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.80.162.247 (247.162.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.162.247 (247.162.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:04:54.765832 2026] [security2:error] [pid 25563:tid 25563] [client 34.80.162.247:37148] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||basselier.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "basselier.com"] [uri "/z9x8c7v6b5-debug-trigger-basselier.com"] [unique_id "arKZFgmQsvOU4_PcFGkG0AAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 13:55:30
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.80.162.247 (247.162.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.162.247 (247.162.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 09:55:25.526364 2026] [security2:error] [pid 31046:tid 31046] [client 34.80.162.247:58544] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bigislandhawaiicoffee.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bigislandhawaiicoffee.com"] [uri "/z9x8c7v6b5-debug-trigger-bigislandhawaiicoffee.com"] [unique_id "arKIzfGCmoAF24X8ZKmh1QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack