๐ฆ๐บ
2000cn.com.au
2026-09-24 05:47:28
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
mnsf
2026-09-24 05:05:06
(3 hours ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 03:25:41
(4 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.87.209.32 (32.209.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.209.32 (32.209.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:25:32.531761 2026] [security2:error] [pid 28723:tid 28723] [client 34.87.209.32:52322] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bipocmentalhealthcoalition.org|F|2"] [data ".json.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bipocmentalhealthcoalition.org"] [uri "/.codex/auth.json.bak"] [unique_id "arSYLFHvcAnG57FSB1yBywAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
ca
2026-09-23 17:54:25
(14 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-23 17:44:28
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.87.209.32 (32.209.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.209.32 (32.209.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 13:44:24.796532 2026] [security2:error] [pid 17862:tid 17862] [client 34.87.209.32:41106] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.aeongames.com|F|2"] [data ".json.old"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.aeongames.com"] [uri "/.codex/auth.json.old"] [unique_id "arQP-HWn40Z2cMD23cdswgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
mscode.pl
2026-09-23 08:46:52
(23 hours ago)
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Zone: ankiety.mscode.pl
Endpoint: /var/www/.codex/auth.json
UA: crusader-worker/1.0
show less
Bad Web Bot
๐ณ๐ฑ
Cloud86 B.V.
2026-09-23 07:09:01
(1 day ago)
categories: DDoS Attack
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 06:54:10
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.87.209.32 (32.209.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.209.32 (32.209.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 02:54:05.719010 2026] [security2:error] [pid 1921209:tid 1921209] [client 34.87.209.32:38944] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||al-hafeeztrust.net|F|2"] [data ".json.old"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "al-hafeeztrust.net"] [uri "/.codex/auth.json.old"] [unique_id "arN3ja3b_N3u4vXyqdHa8wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-23 06:36:09
(1 day ago)
20 attempts against mh-misbehave-ban on choy
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 05:30:39
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.87.209.32 (32.209.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.209.32 (32.209.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 01:30:35.592794 2026] [security2:error] [pid 9634:tid 9634] [client 34.87.209.32:35634] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||agirlwithaguitar.com|F|2"] [data ".json.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "agirlwithaguitar.com"] [uri "/.codex/auth.json.bak"] [unique_id "arNj-8i7AIAnIUee3o9SigAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-23 02:22:00
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
masterguru
2026-09-22 09:53:36
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.87.209.32 (32.209.87.34.bc.googleu ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.87.209.32 (32.209.87.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
Anonymous
2026-09-22 07:42:06
(2 days ago)
Web application attack detected.
Web App Attack
Anonymous
2026-09-22 07:30:15
(2 days ago)
| [Dangerous/Australia] Aggressive IP 34.87.209.32 (~30 hits). Type: DoS Defender- Web server 400 er ...
show more
| [Dangerous/Australia] Aggressive IP 34.87.209.32 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐ฎ๐น
VHosting
2026-09-22 06:50:03
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack