๐ฆ๐บ
paulshipley.com.au
2026-10-01 13:15:01
(1 day ago)
[Thu Oct 01 23:15:00.758242 2026] [security2:error] [pid 521910] [client 35.242.234.109:55440] [clie ...
show more
[Thu Oct 01 23:15:00.758242 2026] [security2:error] [pid 521910] [client 35.242.234.109:55440] [client 35.242.234.109] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.stkildashule.org.au"] [uri "/rclone.conf"] [unique_id "ar5c1Hrt3SG2I6rZCgBa4QAAAAk"]
...
show less
Web App Attack
๐ฆ๐บ
ghel
2026-10-01 13:13:45
(1 day ago)
35.242.234.109 - - [01/Oct/2026:21:13:42 +0800] "GET /model/info HTTP/1.1" 404 127225 "-" "Mozilla/5 ...
show more
35.242.234.109 - - [01/Oct/2026:21:13:42 +0800] "GET /model/info HTTP/1.1" 404 127225 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
35.242.234.109 - - [01/Oct/2026:21:13:43 +0800] "GET /q1fya2ujlqxruyqcjz91 HTTP/1.1" 404 127225 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
35.242.234.109 - - [01/Oct/2026:21:13:43 +0800] "GET /asset-manifest.json HTTP/1.1" 404 131167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
35.242.234.109 - - [01/Oct/2026:21:13:43 +0800] "GET /assets/manifest.json HTTP/1.1" 404 131167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
35.242.234.109 - - [01/Oct/2026:21:13:43 +0800] "POST /lib/terminal-xhr.php HTTP/1.1" 404 131145 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (K
...
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
rubixstudios
2026-10-01 13:12:21
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ฆ๐บ
Asimar
2026-10-01 13:10:47
(1 day ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted]): (CF_ENABLE)
Bad Web Bot
๐ฉ๐ช
updown.io
2026-10-01 13:05:08
(1 day ago)
{"level":"info","ts":1790859906.8145373,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1790859906.8145373,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"35.242.234.109","remote_port":"48724","client_ip":"35.242.234.109","proto":"HTTP/2.0","method":"GET","host":"status.pinkpanda.com.au","uri":"/webpack-stats.json","headers":{"Upgrade-Insecure-Requests":["1"],"Sec-Ch-Ua":["\"Chromium\";v=\"152\", \"Not?A_Brand\";v=\"24\", \"Microsoft Edge\";v=\"152\""],"Sec-Fetch-Mode":["navigate"],"Sec-Fetch-Dest":["document"],"Cookie":["REDACTED"],"User-Agent":["Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"],"Accept-Encoding":["gzip, deflate, br, zstd"],"Sec-Ch-Ua-Platform":["\"Windows\""],"Priority":["u=0, i"],"Sec-Fetch-Site":["none"],"X-Nextjs-Data":["1"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"Sec-Fetch
...
show less
DDoS Attack
Web App Attack
๐ฌ๐ง
consul.to
2026-10-01 12:53:03
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-10-01 12:31:35
(1 day ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/109.234.242.35.bc.googleuserconte ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/109.234.242.35.bc.googleusercontent.com
show less
Web App Attack
๐ฆ๐บ
Telemetry2U.com
2026-10-01 12:28:39
(1 day ago)
Unauthorized connection attempt to port 8080
Hacking