๐ณ๐ฑ
Site.eu
2026-10-03 07:16:52
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
IVski.com
2026-10-03 05:50:19
(1 day ago)
IVski WAF | Next.js Server Action probe
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 04:07:10
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.84.237.29 (29.237.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.84.237.29 (29.237.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 00:07:05.308933 2026] [security2:error] [pid 23953:tid 23953] [client 34.84.237.29:38264] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||opere.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "opere.com"] [uri "/z9x8c7v6b5-debug-trigger-opere.com"] [unique_id "asB_acqFBUBktuodDojqcQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bazter.pro
2026-10-03 03:47:31
(1 day ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-10-03 03:30:36
(1 day ago)
115 requests with url.path */@fs/*
Brute-Force
Bad Web Bot
๐ซ๐ท
renzo64
2026-10-03 03:11:04
(1 day ago)
Domain : conference-biomass.com
Rule : hack
2026-10-03 03:09:22 ***hidden-privacy*** GET /z9x8c7v6b5 ...
show more
Domain : conference-biomass.com
Rule : hack
2026-10-03 03:09:22 ***hidden-privacy*** GET /z9x8c7v6b5-debug-trigger-www.conference-biomass.com - 443 - 34.84.237.29 HTTP/2 Mozilla/5.0 (compatible; xAI-Grok/1.0; https://x.ai/) - www.conference-biomass.com 301 0 0 330 430 265 - -
show less
Hacking
SQL Injection
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-03 02:58:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.84.237.29 (29.237.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.237.29 (29.237.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 22:58:11.113026 2026] [security2:error] [pid 21106:tid 21106] [client 34.84.237.29:43848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.techlinks.com"] [uri "/.git/config"] [unique_id "asBvQ755aQxjhOTJvP19rAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Philister11
2026-10-03 02:56:55
(1 day ago)
CrowdSec: crowdsecurity/http-cve-2021-41773 (JP/AS396982)
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-03 02:32:45
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.84.237.29 (29.237.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.84.237.29 (29.237.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 22:32:38.487602 2026] [security2:error] [pid 8012:tid 8022] [client 34.84.237.29:32958] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||uniquelynoel.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "uniquelynoel.com"] [uri "/z9x8c7v6b5-debug-trigger-uniquelynoel.com"] [unique_id "asBpRsche2yC4qf5aNcmrwAAAUc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
antlac1
2026-10-03 02:22:31
(1 day ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ธ๐ฌ
Cloudkul Cloudkul
2026-10-03 01:44:26
(1 day ago)
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requ ...
show more
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requests.
show less
Brute-Force
Web App Attack
๐ฉ๐ช
Philister11
2026-10-03 01:10:21
(1 day ago)
CrowdSec: LePresidente/http-generic-403-bf (JP/AS396982)
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-03 00:55:57
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.84.237.29 (29.237.84.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.84.237.29 (29.237.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 20:55:51.858997 2026] [security2:error] [pid 22788:tid 22788] [client 34.84.237.29:39122] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||usoilinc.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "usoilinc.com"] [uri "/z9x8c7v6b5-debug-trigger-usoilinc.com"] [unique_id "asBSl_-I_LbRKN0C19P2CgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
aranguren.org
2026-10-02 23:57:34
(1 day ago)
34.84.237.29 - - [03/Oct/2026:09:57:34 +1000] "GET /z9x8c7v6b5-debug-trigger-uploads.luisaranguren.c ...
show more
34.84.237.29 - - [03/Oct/2026:09:57:34 +1000] "GET /z9x8c7v6b5-debug-trigger-uploads.luisaranguren.com HTTP/2.0" 404 997 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
34.84.237.29 - - [03/Oct/2026:09:57:34 +1000] "GET /l26f6nxzr05sd95b0mwc HTTP/2.0" 404 997 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)"
34.84.237.29 - - [03/Oct/2026:09:57:34 +1000] "POST / HTTP/2.0" 406 - "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
34.84.237.29 - - [03/Oct/2026:09:57:34 +1000] "GET /model/info HTTP/2.0" 404 997 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot"
34.84.237.29 - - [03/Oct/2026:09:57:34 +1000] "GET /jd3pxrspg3cffncxw458 HTTP/2.0" 404 997 "-" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)"
34.84.237.29 - - [03/Oct/2026:09:57:34 +1000] "POST /graphql
...
show less
Bad Web Bot
Anonymous
2026-10-02 23:35:09
(1 day ago)
Multiple pen test attempts.
Web App Attack