๐ช๐ธ
robotstxt
2026-09-29 21:04:20
(38 minutes ago)
34.84.214.225 - - [29/Sep/2026:21:03:19 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 10983 "-" "Mo ...
show more
34.84.214.225 - - [29/Sep/2026:21:03:19 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 10983 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0" "-" edge="34.84.214.225"
34.84.214.225 - - [29/Sep/2026:21:03:19 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 10983 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0" "-" edge="34.84.214.225"
34.84.214.225 - - [29/Sep/2026:21:03:19 +0000] "GET /z9x8c7v6b5-debug-trigger-www.geoposicionamiento.com HTTP/2.0" 403 11460 "-" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)" "-" edge="34.84.214.225"
34.84.214.225 - - [29/Sep/2026:21:03:19 +0000] "GET /build/manifest.json HTTP/2.0" 403 10983 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0" "-" edge="34.84.214.225"
34
...
show less
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-09-29 20:09:37
(1 hour ago)
Login credentials theft attempt
Hacking
Anonymous
2026-09-29 20:09:13
(1 hour ago)
Portscan: TCP/8080 (6x), TCP/8443 (7x), TCP/443, TCP/80
Port Scan
๐ฌ๐ง
G4zabus3r
2026-09-29 20:05:02
(1 hour ago)
(mod_security) mod_security triggered on hostname [redacted] 34.84.214.225 (JP/Japan/225.214.84.34.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.84.214.225 (JP/Japan/225.214.84.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-29 19:54:58
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.84.214.225 (225.214.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.84.214.225 (225.214.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 15:54:50.998707 2026] [security2:error] [pid 8708:tid 8708] [client 34.84.214.225:38006] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.garantaconsulting.internetnameregistration.com|F|2"] [data ".garantaconsulting.internetnameregistration.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.garantaconsulting.internetnameregistration.com"] [uri "/z9x8c7v6b5-debug-trigger-www.garantaconsulting.internetnameregistration.com"] [unique_id "arwXii9_TNbE63q7kl_XLAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-09-29 19:31:52
(2 hours ago)
(badbots) Bad bot user-agent [redacted] from 34.84.214.225 (JP/Japan/225.214.84.34.bc.googleusercont ...
show more
(badbots) Bad bot user-agent [redacted] from 34.84.214.225 (JP/Japan/225.214.84.34.bc.googleusercontent.com)
show less
Hacking
๐ฉ๐ช
Viveronese
2026-09-29 19:04:56
(2 hours ago)
HTTP vulnerability scanning
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-29 19:03:56
(2 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 19:01:04
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.84.214.225 (225.214.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.84.214.225 (225.214.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 15:00:56.470757 2026] [security2:error] [pid 7327:tid 7327] [client 34.84.214.225:45460] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||tulsatvmemories.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "tulsatvmemories.com"] [uri "/z9x8c7v6b5-debug-trigger-tulsatvmemories.com"] [unique_id "arwK6AR3r_4s8r0B-ISTUAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-29 18:30:05
(3 hours ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
Anonymous
2026-09-29 18:17:36
(3 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
kkw
2026-09-29 18:15:30
(3 hours ago)
[REDACTED] 34.84.214.225 - - [29/Sep/2026:20:15:30 +0200] "GET /.env HTTP/2.0" 404 341 "-" "Mozilla/ ...
show more
[REDACTED] 34.84.214.225 - - [29/Sep/2026:20:15:30 +0200] "GET /.env HTTP/2.0" 404 341 "-" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
dot.mg
2026-09-29 18:11:19
(3 hours ago)
Scan of vulnerable files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 17:49:25
(3 hours ago)
(mod_security) mod_security (id:210580) triggered by 34.84.214.225 (225.214.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210580) triggered by 34.84.214.225 (225.214.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 13:49:17.099571 2026] [security2:error] [pid 23815:tid 23815] [client 34.84.214.225:0] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:apis. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||gibitdigital.com|F|2"] [data "Matched Data: proc/self/environ found within ARGS:apis: ../../../../../../proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "gibitdigital.com"] [uri "/api/console/api_server"] [unique_id "arv6HTrz9P3XHI4rGYYMUQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-09-29 17:23:01
(4 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: actuator, ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: actuator, env_probe, ignition_debug, server_status, source_backup, credential_file, ssh_keys, path_traversal. Observed by 1 sensor(s); 340 hits.
show less
Hacking
Web App Attack