๐ฒ๐ฝ
octageeks.com
2026-09-21 04:16:25
(14 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 14:34:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:33:57.002734 2026] [security2:error] [pid 25103:tid 25103] [client 34.87.32.97:56628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jedaenterprises.com"] [uri "/.env.save"] [unique_id "aq_u1XlIZgg4a5YXLoOraQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 14:10:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-09-20 14:02:49
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 14:02:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:02:41.163231 2026] [security2:error] [pid 16451:tid 16451] [client 34.87.32.97:38426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jean-louisdarville.com"] [uri "/.env.local"] [unique_id "aq_ngZdawpOypa5aYZS2GgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:39:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:39:03.686562 2026] [security2:error] [pid 10612:tid 10612] [client 34.87.32.97:56754] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jdmicons.com"] [uri "/.git/config"] [unique_id "aq_h96lbkRHHBeSgNAfg0gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:11:48
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:11:42.825652 2026] [security2:error] [pid 15039:tid 15092] [client 34.87.32.97:39962] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jd-web-designs.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jd-web-designs.com"] [uri "/z9x8c7v6b5-debug-trigger-jd-web-designs.com"] [unique_id "aq_bjqump6lny7qCk_sWgwAAAVY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 12:30:05
(1 day ago)
CrowdSec decision: crowdsecurity/http-path-traversal-probing (origin: crowdsec)
Port Scan
๐ซ๐ท
masterguru
2026-09-20 12:28:28
(1 day ago)
BAD BOT - Detected and Blocked.. Matched phrase "ccbot" at REQUEST_HEADERS:User-Agent. (1100000-196)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-20 12:18:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:18:45.726517 2026] [security2:error] [pid 2184:tid 2184] [client 34.87.32.97:33030] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jazzycatty.com"] [uri "/packages/.env"] [unique_id "aq_PJebUjDNOO6FkQ8neyAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 11:57:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 07:57:29.549915 2026] [security2:error] [pid 4679:tid 4679] [client 34.87.32.97:50818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fusteriafontane.com"] [uri "/.env.bak"] [unique_id "aq_KKXfQ-62lZToPT4zL8AAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-20 11:51:58
(1 day ago)
Multiple WAF Violations
Web App Attack
๐จ๐ญ
dalslab ltd
2026-09-20 11:45:56
(1 day ago)
34.87.32.97 - - [20/Sep/2026:13:45:55 +0200] "POST / HTTP/1.1" 405 154 "-" "Mozilla/5.0 (compatible; ...
show more
34.87.32.97 - - [20/Sep/2026:13:45:55 +0200] "POST / HTTP/1.1" 405 154 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)"
34.87.32.97 - - [20/Sep/2026:13:45:55 +0200] "POST /graphql HTTP/1.1" 405 556 "http://dalslab.com" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.87.32.97 - - [20/Sep/2026:13:45:55 +0200] "POST /api/graphql HTTP/1.1" 405 556 "http://dalslab.com" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.87.32.97 - - [20/Sep/2026:13:45:55 +0200] "POST /v1/graphql HTTP/1.1" 405 556 "http://dalslab.com" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.87.32.97 - - [20/Sep/2026:13:45:56 +0200] "GET /static/../../../a/../../../../.env HTTP/1.1" 400 154 "-" "-"
...
show less
Web Spam
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 11:31:54
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.32.97 (97.32.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 07:31:50.490102 2026] [security2:error] [pid 10603:tid 10603] [client 34.87.32.97:39866] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||banis-associates.com|F|2"] [data ".axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "banis-associates.com"] [uri "/elmah.axd"] [unique_id "aq_EJiRDG5jz-Zq01ZGtrwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack