🇧🇪
Ivo Vynckier
2026-09-11 14:05:00
(7 hours ago)
34.87.236.76 - - [11/Sep/2026:05:22:07 +0200] "GET /%2eenv HTTP/2.0" 403 106 "-" "Mozilla/5.0 AppleW ...
show more
34.87.236.76 - - [11/Sep/2026:05:22:07 +0200] "GET /%2eenv HTTP/2.0" 403 106 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ChatGPT-User/1.0; +https://openai.com/bot)"
34.87.236.76 - - [11/Sep/2026:05:22:07 +0200] "GET /api/.env/public/.env HTTP/2.0" 403 106 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexitybot)"
34.87.236.76 - - [11/Sep/2026:05:22:07 +0200] "GET /rclone.conf HTTP/2.0" 404 2143 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)"
show less
Web App Attack
🇫🇷
dynamix
2026-09-11 05:52:17
(15 hours ago)
Multiple WAF Violations
Web App Attack
🇧🇷
Halux
2026-09-11 05:27:04
(16 hours ago)
34.87.236.76 Probing protected path or service
Web App Attack
🇧🇪
cmbplf
2026-09-11 05:24:14
(16 hours ago)
396 requests with url.path */@fs/*
207 requests with url.path */proc/*
193 requests with url.path ...
show more
396 requests with url.path */@fs/*
207 requests with url.path */proc/*
193 requests with url.path *.aws/*
187 requests with url.path *.ssh/*
show less
Brute-Force
Bad Web Bot
🇳🇱
Savvii
2026-09-11 05:24:04
(16 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
helios.live
2026-09-11 05:01:53
(16 hours ago)
2026/09/11 05:01:51 [error] 276595#276595: *2801550 access forbidden by rule, client: 34.87.236.76, ...
show more
2026/09/11 05:01:51 [error] 276595#276595: *2801550 access forbidden by rule, client: 34.87.236.76, server: kocerroxy.com, request: "GET /.vite/manifest.json HTTP/1.1", host: "kocerroxy.com"
2026/09/11 05:01:51 [error] 276595#276595: *2801568 access forbidden by rule, client: 34.87.236.76, server: kocerroxy.com, request: "GET /dist/.vite/manifest.json HTTP/1.1", host: "kocerroxy.com"
2026/09/11 05:01:52 [error] 276595#276595: *2801568 access forbidden by rule, client: 34.87.236.76, server: kocerroxy.com, request: "GET /@fs/root/.aws/credentials?raw?? HTTP/1.1", host: "kocerroxy.com"
2026/09/11 05:01:52 [error] 276595#276595: *2801568 access forbidden by rule, client: 34.87.236.76, server: kocerroxy.com, request: "GET /@fs/home/ubuntu/.aws/credentials?raw?? HTTP/1.1", host: "kocerroxy.com"
2026/09/11 05:01:52 [error] 276595#276595: *2801568 access forbidden by rule, client: 34.87.236.76, server: kocerroxy.com, request: "GET /@fs/home/ec2-user/.aws/credentials?raw?? HTTP/1.1", host: "koc
...
show less
Web App Attack
🇺🇸
[email protected]
2026-09-11 03:03:58
(18 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T03:03:58Z
Brute-Force
🇺🇸
TPI-Abuse
2026-09-11 02:59:10
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.87.236.76 (76.236.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.236.76 (76.236.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 22:59:07.198681 2026] [security2:error] [pid 11314:tid 11314] [client 34.87.236.76:49298] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||henhousebbq.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "henhousebbq.com"] [uri "/rclone.conf"] [unique_id "aqNue57jvy76l9rnuF64_QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
[email protected]
2026-09-11 02:43:14
(18 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T02:43:14Z
Brute-Force
🇳🇱
Savvii
2026-09-11 02:36:18
(18 hours ago)
20 attempts against mh-misbehave-ban on frost
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
[email protected]
2026-09-11 02:28:09
(19 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T02:28:09Z
Brute-Force
🇸🇪
vaia.cloud
2026-09-11 02:20:01
(19 hours ago)
crowdsecurity/grafana-cve-2021-43798
Brute-Force
Web App Attack
🇺🇸
[email protected]
2026-09-11 02:07:48
(19 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T02:07:48Z
Brute-Force
Anonymous
2026-09-11 01:59:07
(19 hours ago)
Automatically blocked after 5 security events. Observed sensitive configuration-file probes. Source: ...
show more
Automatically blocked after 5 security events. Observed sensitive configuration-file probes. Source: Cloudflare security controls.
show less
Hacking
Bad Web Bot
Web App Attack
🇺🇸
[email protected]
2026-09-11 01:52:32
(19 hours ago)
Fail2Ban jail apache-json-scanners detected activity on 2026-09-11T01:52:32Z
Brute-Force