๐ณ๐ฑ
Site.eu
2026-09-23 11:00:17
(2 hours ago)
Excessive 404/403 errors
Brute-Force
๐ฎ๐ณ
evicky2002
2026-09-23 06:00:01
(7 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐บ๐ธ
kosada.com
2026-09-23 02:43:59
(10 hours ago)
Repeated requests for suspicious nonexistent URLs, for example: /webpack-stats.json (HTTP/2.0 port 4 ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /webpack-stats.json (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36")
show less
Web App Attack
๐บ๐ธ
[email protected]
2026-09-23 02:23:01
(11 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-23T02:23:01Z
Brute-Force
๐บ๐ธ
[email protected]
2026-09-23 01:50:57
(11 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-23T01:50:57Z
Brute-Force
๐บ๐ธ
Mundo Bueno
2026-09-23 00:55:30
(12 hours ago)
[ISILIA Protection v2.3] Tentative d'accรจs: /frontend/.env [RATE LIMITED - 1800s quarantine] | Pays: ...
show more
[ISILIA Protection v2.3] Tentative d'accรจs: /frontend/.env [RATE LIMITED - 1800s quarantine] | Pays: US | UA: Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 00:28:24
(13 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.83.169.237 (237.169.83.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.83.169.237 (237.169.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 20:28:17.815596 2026] [security2:error] [pid 29310:tid 29310] [client 34.83.169.237:40878] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||books2cherish.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "books2cherish.com"] [uri "/z9x8c7v6b5-debug-trigger-books2cherish.com"] [unique_id "arMdIdDFKxYiLeoVHFpOtgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
[email protected]
2026-09-22 23:40:56
(13 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-22T23:40:56Z
Brute-Force
๐บ๐ธ
[email protected]
2026-09-22 23:15:40
(14 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-22T23:15:40Z
Brute-Force
๐ช๐ธ
pepitogrillo
2026-09-22 23:12:45
(14 hours ago)
34.83.169.237 - - [22/Sep/2026:23:12:44 +0000] "GET /.env.local?raw HTTP/1.1" 404 99464 "-" "Mozilla ...
show more
34.83.169.237 - - [22/Sep/2026:23:12:44 +0000] "GET /.env.local?raw HTTP/1.1" 404 99464 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
DNS Compromise
DNS Poisoning
Fraud Orders
DDoS Attack
Ping of Death
Phishing
Fraud VoIP
Open Proxy
Web Spam
Email Spam
Port Scan
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
IoT Targeted
๐บ๐ธ
[email protected]
2026-09-22 22:57:42
(14 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-22T22:57:42Z
Brute-Force
๐ช๐ธ
robotstxt
2026-09-22 21:39:17
(15 hours ago)
34.83.169.237 - - [22/Sep/2026:21:38:51 +0000] "GET /.env.old HTTP/2.0" 403 49640 "-" "Mozilla/5.0 ( ...
show more
34.83.169.237 - - [22/Sep/2026:21:38:51 +0000] "GET /.env.old HTTP/2.0" 403 49640 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "-"
34.83.169.237 - - [22/Sep/2026:21:38:51 +0000] "GET /.env.save HTTP/2.0" 403 49649 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)" "-"
34.83.169.237 - - [22/Sep/2026:21:38:51 +0000] "GET /api/.env HTTP/2.0" 403 49652 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)" "-"
34.83.169.237 - - [22/Sep/2026:21:38:52 +0000] "GET /admin/.env HTTP/2.0" 403 49653 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot" "-"
34.83.169.237 - - [22/Sep/2026:21:38:52 +0000] "GET /backend/.env HTTP/2.0" 403 49649 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)" "-"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 21:22:21
(16 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.83.169.237 (237.169.83.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.83.169.237 (237.169.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 17:22:14.906478 2026] [security2:error] [pid 12929:tid 12929] [client 34.83.169.237:35554] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||elnixon.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elnixon.com"] [uri "/z9x8c7v6b5-debug-trigger-elnixon.com"] [unique_id "arLxhsQXLuQorUzGeMzbxQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 21:18:57
(16 hours ago)
PSCSERV WPSCAN 34.83.169.237
Bad Web Bot
Web App Attack
๐บ๐ธ
[email protected]
2026-09-22 21:08:52
(16 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-22T21:08:52Z
Brute-Force