🇫🇷
LoneRider
2026-09-06 15:14:10
(25 minutes ago)
[06/Sep/2026:17:13:58.923622 +0200] ap2DNiJmCpYOd8B94RW5DwAAAAE 34.82.219.36 43564 127.0.0.1 7081
[0 ...
show more
[06/Sep/2026:17:13:58.923622 +0200] ap2DNiJmCpYOd8B94RW5DwAAAAE 34.82.219.36 43564 127.0.0.1 7081
[06/Sep/2026:17:14:04.266490 +0200] ap2DPFqgqQkKN59kBH5wbAAAAAI 34.82.219.36 57680 127.0.0.1 7081
[06/Sep/2026:17:14:09.326626 +0200] ap2DQcqRrnSZmm0pbJJH_wAAAAw 34.82.219.36 58220 127.0.0.1 7081
...
show less
Hacking
🇧🇷
Sysadmin-CLC
2026-09-06 15:11:59
(27 minutes ago)
Probing and trying to access sensitive files caught in f2b nginx-forbidden filter
Web App Attack
Port Scan
🇩🇪
itsolon
2026-09-06 14:30:30
(1 hour ago)
[06/Sep/2026:16:30:29 +0200] 178870502915.160804 34.82.219.36 55514 217.154.7.177 443
[06/Sep/2026:1 ...
show more
[06/Sep/2026:16:30:29 +0200] 178870502915.160804 34.82.219.36 55514 217.154.7.177 443
[06/Sep/2026:16:30:29 +0200] 178870502969.899194 34.82.219.36 55514 217.154.7.177 443
[06/Sep/2026:16:30:29 +0200] 178870502996.910689 34.82.219.36 55514 217.154.7.177 443
[06/Sep/2026:16:30:29 +0200] 178870502925.378912 34.82.219.36 55514 217.154.7.177 443
[06/Sep/2026:16:30:29 +0200] 178870502988.781462 34.82.219.36 55514 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
🇳🇱
maxxsense
2026-09-06 14:02:08
(1 hour ago)
(mod_security) mod_security triggered on hostname [redacted] 34.82.219.36 (US/United States/36.219.8 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.82.219.36 (US/United States/36.219.82.34.bc.googleusercontent.com)
show less
SQL Injection
🇩🇪
Roper123
2026-09-06 13:18:48
(2 hours ago)
Web exploits - access forbidden
Web App Attack
🇩🇪
KiekerJan
2026-09-06 13:04:51
(2 hours ago)
34.82.219.36 - - [06/Sep/2026:15:04:50 +0200] "GET /.git/HEAD HTTP/2.0" 301 162 "-" "Mozilla/5.0 (co ...
show more
34.82.219.36 - - [06/Sep/2026:15:04:50 +0200] "GET /.git/HEAD HTTP/2.0" 301 162 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36"
34.82.219.36 - - [06/Sep/2026:15:04:50 +0200] "GET /.git/config HTTP/2.0" 301 162 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1)"
...
show less
Web App Attack
🇩🇪
big-cloud.nl
2026-09-06 13:01:02
(2 hours ago)
Try to access /.env?raw
Web App Attack
🇫🇷
dynamix
2026-09-06 12:42:48
(2 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
mutebot.net
2026-09-06 12:00:20
(3 hours ago)
SRC=34.82.219.36, PROTO=TCP, SPT=36988, DPT=8080
Port Scan
🇺🇸
TPI-Abuse
2026-09-06 10:44:39
(4 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.82.219.36 (36.219.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.82.219.36 (36.219.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 06:44:33.354305 2026] [security2:error] [pid 6070:tid 6070] [client 34.82.219.36:48280] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||clowaterart.com.aromatherapyricebags.com|F|2"] [data ".com.aromatherapyricebags.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "clowaterart.com.aromatherapyricebags.com"] [uri "/z9x8c7v6b5-debug-trigger-clowaterart.com.aromatherapyricebags.com"] [unique_id "ap1EEafnSzX_rJqANYAycAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Alboweb B.V.
2026-09-06 10:11:07
(5 hours ago)
Bad web bot activity detected by Fail2Ban in plesk-apache-badbot jail
Bad Web Bot
🇫🇷
sthoyer.de
2026-09-06 10:10:57
(5 hours ago)
34.82.219.36 - - [06/Sep/2026:12:10:55 +0200] "GET /assets../.env HTTP/2" 302 495 "-" "Mozilla/5.0 ( ...
show more
34.82.219.36 - - [06/Sep/2026:12:10:55 +0200] "GET /assets../.env HTTP/2" 302 495 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
34.82.219.36 - - [06/Sep/2026:12:10:55 +0200] "GET /z9x8c7v6b5-debug-trigger-new.sthoyer.de HTTP/2" 302 495 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
34.82.219.36 - - [06/Sep/2026:12:10:55 +0200] "GET /rclone.conf HTTP/2" 302 495 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
...
show less
Web App Attack
🇬🇧
rakkor
2026-09-06 10:03:28
(5 hours ago)
2026-09-06T11:03:28+01:00 NAS [Sun Sep 06 11:03:28.138711 2026] [authz_core:error] [pid 22310:tid 22 ...
show more
2026-09-06T11:03:28+01:00 NAS [Sun Sep 06 11:03:28.138711 2026] [authz_core:error] [pid 22310:tid 22313] [client 34.82.219.36:39192] AH01630: client denied by server configuration: /var/services/web/.htpasswd
...
show less
Brute-Force
Hacking
🇮🇹
VHosting
2026-09-06 09:40:03
(5 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 08:36:55
(7 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.82.219.36 (36.219.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.82.219.36 (36.219.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 04:36:50.117269 2026] [security2:error] [pid 14686:tid 14686] [client 34.82.219.36:54164] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||parkhan.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "parkhan.com"] [uri "/z9x8c7v6b5-debug-trigger-parkhan.com"] [unique_id "ap0mIshkk9PG_M3L-ToQNwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack