๐ฎ๐ณ
kharigo
2026-10-11 03:10:56
(2 hours ago)
Hacking
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
Skyrider
2026-10-11 02:03:16
(3 hours ago)
crowdsecurity/http-probing
Web App Attack
Anonymous
2026-10-11 01:56:16
(3 hours ago)
Bot / seems abusive / Apache connections: 35
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
factor1
2026-10-11 01:01:41
(4 hours ago)
CrowdSec at atlas Reports Abuse
Web App Attack
๐ฆ๐บ
clapper
2026-10-11 00:35:23
(5 hours ago)
(mod_security) mod_security (id:980001) triggered by 34.80.61.229 (TW/Taiwan/229.61.80.34.bc.googleu ...
show more
(mod_security) mod_security (id:980001) triggered by 34.80.61.229 (TW/Taiwan/229.61.80.34.bc.googleusercontent.com): 5 in the last 3600 secs; ID: Clar
show less
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-11 00:23:45
(5 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.80.61.229 (229.61.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.61.229 (229.61.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 20:23:38.937043 2026] [security2:error] [pid 3650:tid 3650] [client 34.80.61.229:56730] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||truthsabouthealthcare.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "truthsabouthealthcare.com"] [uri "/z9x8c7v6b5-debug-trigger-truthsabouthealthcare.com"] [unique_id "asrXClS59Mh6sVBQWPq9jgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
AWW-Admin
2026-10-11 00:18:37
(5 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.80.61.229 (TW/Taiwan/229.61.80.34.bc ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.80.61.229 (TW/Taiwan/229.61.80.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-10-11 00:07:30
(5 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.80.61.229 (229.61.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.61.229 (229.61.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 20:07:22.703820 2026] [security2:error] [pid 20356:tid 20356] [client 34.80.61.229:58668] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||spyasociados.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "spyasociados.com"] [uri "/z9x8c7v6b5-debug-trigger-spyasociados.com"] [unique_id "asrTOq5S74zvB6epulEeVAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-10-11 00:03:41
(5 hours ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - ๐ก Port Scan (Non Decay-Based) - โ Excessive 4 ...
show more
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - ๐ก Port Scan (Non Decay-Based) - โ Excessive 40X Errors (Decay-Based)
show less
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
Skyrider
2026-10-10 23:57:55
(5 hours ago)
crowdsecurity/http-bad-user-agent
Bad Web Bot
๐บ๐ธ
factor1
2026-10-10 23:14:13
(6 hours ago)
CrowdSec at churndash Reports Abuse
Web App Attack
๐บ๐ธ
WizardsToolkit
2026-10-10 23:12:22
(6 hours ago)
tried to access forbidden files; attempted to access /app/.env
Web App Attack
๐บ๐ธ
pachec
2026-10-10 23:00:42
(6 hours ago)
Automated vulnerability scanning blocked by fail2ban
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-10 22:55:41
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.80.61.229 (229.61.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.61.229 (229.61.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 18:55:34.990463 2026] [security2:error] [pid 4588:tid 4611] [client 34.80.61.229:34398] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||joeandlane.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "joeandlane.com"] [uri "/z9x8c7v6b5-debug-trigger-joeandlane.com"] [unique_id "asrCZpfCtfhSra_F53X2UwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 22:39:51
(7 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.80.61.229 (229.61.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.61.229 (229.61.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 18:39:47.536046 2026] [security2:error] [pid 23369:tid 23369] [client 34.80.61.229:38826] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||h-mod.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "h-mod.com"] [uri "/z9x8c7v6b5-debug-trigger-h-mod.com"] [unique_id "asq-sw7Bp02B17NWxBvR5gAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack