๐ฉ๐ช
klaus_ph
2026-09-27 14:21:13
(4 hours ago)
2026-09-26 07:08:09,574 fail2ban.actions [594716]: NOTICE [ipblocklist] Ban 35.234.60.17
...
Bad Web Bot
๐ซ๐ท
SpaceHost-Server
2026-09-24 22:25:20
(2 days ago)
Brute-Force
Web App Attack
๐ฉ๐ช
ใใใจใใใใ
2026-09-23 07:12:52
(4 days ago)
Automated web attack source per OWASP CRS classification against a self-hosted nginx web service. . ...
show more
Automated web attack source per OWASP CRS classification against a self-hosted nginx web service. . Self-hosted service; no site identifiers included.
show less
Port Scan
Web App Attack
๐ง๐ช
taivas.nl
2026-09-23 04:33:22
(4 days ago)
Many_bad_calls
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-09-23 04:18:10
(4 days ago)
Wordpress malicious attack:[octamissingdomain]
Web App Attack
๐ซ๐ท
masterguru
2026-09-23 03:18:55
(4 days ago)
BAD BOT - Detected and Blocked.. Matched phrase "ccbot" at REQUEST_HEADERS:User-Agent. (1100000-195)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-23 02:47:40
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.234.60.17 (17.60.234.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 35.234.60.17 (17.60.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 22:47:37.646753 2026] [security2:error] [pid 21475:tid 21475] [client 35.234.60.17:54356] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.guardmagic.com|F|2"] [data ".guardmagic.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.guardmagic.com"] [uri "/z9x8c7v6b5-debug-trigger-www.guardmagic.com"] [unique_id "arM9yainsYjpwqsS8p5HuwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-23 01:53:29
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-23 01:45:12
(4 days ago)
Banned by Fail2Ban on server
Web App Attack
๐ช๐ธ
robotstxt
2026-09-23 01:43:38
(4 days ago)
35.234.60.17 - - [23/Sep/2026:01:42:36 +0000] "GET /dist/manifest.json HTTP/2.0" 403 17175 "-" "Mozi ...
show more
35.234.60.17 - - [23/Sep/2026:01:42:36 +0000] "GET /dist/manifest.json HTTP/2.0" 403 17175 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.234.60.17"
35.234.60.17 - - [23/Sep/2026:01:42:36 +0000] "GET /asset-manifest.json HTTP/2.0" 403 17111 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.234.60.17"
35.234.60.17 - - [23/Sep/2026:01:42:36 +0000] "POST / HTTP/2.0" 403 40829 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)" "-" edge="35.234.60.17"
35.234.60.17 - - [23/Sep/2026:01:42:36 +0000] "GET /static/manifest.json HTTP/2.0" 403 17111 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.234.60.17"
35.234.60.17 - - [23/Sep/2026:01:42:37 +0000] "GET /manifest.json HTTP/2.0" 403 17111 "-" "Mozilla/5.0 (Linux; Android 10; K)
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 01:02:34
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.234.60.17 (17.60.234.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 35.234.60.17 (17.60.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 21:02:30.375793 2026] [security2:error] [pid 2664:tid 2664] [client 35.234.60.17:57572] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.haroturkiye.chevronparkett.com|F|2"] [data ".haroturkiye.chevronparkett.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.haroturkiye.chevronparkett.com"] [uri "/z9x8c7v6b5-debug-trigger-www.haroturkiye.chevronparkett.com"] [unique_id "arMlJoxdRti4prvR75B3tAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 23:50:48
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.234.60.17 (17.60.234.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 35.234.60.17 (17.60.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 19:50:41.427216 2026] [security2:error] [pid 19783:tid 19783] [client 35.234.60.17:47896] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||davidfortier.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "davidfortier.com"] [uri "/z9x8c7v6b5-debug-trigger-davidfortier.com"] [unique_id "arMUUWKnMe8YquB-sDdx0wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
svr
2026-09-22 23:27:21
(4 days ago)
Abusive Automated Web Scanner
Web App Attack
๐ช๐ธ
robotstxt
2026-09-22 23:07:13
(4 days ago)
35.234.60.17 - - [22/Sep/2026:23:06:10 +0000] "GET /wp-content/themes/Divi/js/scripts.min.js?ver=4.2 ...
show more
35.234.60.17 - - [22/Sep/2026:23:06:10 +0000] "GET /wp-content/themes/Divi/js/scripts.min.js?ver=4.27.8 HTTP/2.0" 403 17152 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.234.60.17"
35.234.60.17 - - [22/Sep/2026:23:06:10 +0000] "GET /wp-content/themes/Divi/includes/builder/feature/dynamic-assets/assets/js/jquery.fitvids.js?ver=4.27.8 HTTP/2.0" 403 17152 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.234.60.17"
35.234.60.17 - - [22/Sep/2026:23:06:10 +0000] "GET / HTTP/2.0" 403 40829 "https://grupofucsa.com/" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36" "-" edge="35.234.60.17"
35.234.60.17 - - [22/Sep/2026:23:06:10 +0000] "GET /wp-content/themes/Divi/includes/builder/feature/dynamic-assets/assets/js/magnific-popup.js?ver=4.27.8 HTTP/2.0" 403 17152 "-" "Mozilla/5.0 (Linux; Android
...
show less
Web App Attack
Anonymous
2026-09-22 22:55:51
(4 days ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection