🇩🇪
Hazzard
2026-09-12 22:06:18
(43 minutes ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
🇩🇪
fds.io
2026-09-12 22:06:01
(43 minutes ago)
detected and blocked multiple http 400 bad-request attempts
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 22:02:31
(47 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.80.203.69 (69.203.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.203.69 (69.203.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 18:02:26.777625 2026] [security2:error] [pid 21556:tid 21556] [client 34.80.203.69:49398] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||muebleriamac.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "muebleriamac.com"] [uri "/z9x8c7v6b5-debug-trigger-muebleriamac.com"] [unique_id "aqXL8glkGuEgcjRIvWEMhgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-12 21:54:38
(55 minutes ago)
Aggressive web scan
Web App Attack
🇩🇪
hero2026
2026-09-12 21:52:00
(58 minutes ago)
Blocked by Fail2ban
Web App Attack
🇨🇭
zynex
2026-09-12 21:37:27
(1 hour ago)
URL Probing: /@fs/src/.env
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 21:15:45
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.80.203.69 (69.203.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.203.69 (69.203.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 17:15:38.938432 2026] [security2:error] [pid 30588:tid 30653] [client 34.80.203.69:38522] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mtiminis.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mtiminis.com"] [uri "/z9x8c7v6b5-debug-trigger-mtiminis.com"] [unique_id "aqXA-utmFS6eNkBD98MRvwAAARE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-12 20:53:22
(1 hour ago)
Web attack/malicious scanning detected
Web App Attack
🇩🇪
ger-stg-sifi1
2026-09-12 20:31:12
(2 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-09-12 20:10:03
(2 hours ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
🇩🇪
palzer.IT
2026-09-12 20:01:11
(2 hours ago)
Fail2ban automatic report for plesk-apache-badbot: 34.80.203.69 - - [12/Sep/2026:22:00:52 +0200] GET ...
show more
Fail2ban automatic report for plesk-apache-badbot: 34.80.203.69 - - [12/Sep/2026:22:00:52 +0200] GET /wp-json [DOMAIN_REMOVED] 200 278934 [DOMAIN_REMOVED] Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +[DOMAIN_REMOVED]
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-12 19:57:59
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.203.69 (69.203.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.203.69 (69.203.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 15:57:53.742411 2026] [security2:error] [pid 27767:tid 27767] [client 34.80.203.69:53360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrzradio.org"] [uri "/config/.env"] [unique_id "aqWuwdx5OEp7JjAEXHWKQgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇬
naveeddaros
2026-09-12 19:55:58
(2 hours ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-12 19:33:22
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.203.69 (69.203.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.203.69 (69.203.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 15:33:17.003502 2026] [security2:error] [pid 17220:tid 17220] [client 34.80.203.69:42800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mroxygen.org"] [uri "/.env"] [unique_id "aqWo_f5EzP5qZK4KFXUPUgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
oja
2026-09-12 19:32:07
(3 hours ago)
Aggressive web scanner
Web App Attack