๐ณ๐ฑ
e.fierstra
2026-10-11 01:07:33
(3 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐น๐ญ
thaizone.com
2026-10-11 00:50:37
(4 hours ago)
Brute Force Attack on a Web Resources #1
DDoS Attack
Web Spam
Brute-Force
Web App Attack
๐ซ๐ท
tecnoacquisti.com
2026-10-11 00:49:56
(4 hours ago)
PrestaShop Security Module: suspicious probe path detected (/.env)
Web App Attack
๐บ๐ธ
jormaster3k
2026-10-11 00:41:33
(4 hours ago)
Attack against Apache (too many 404s)
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-11 00:34:25
(4 hours ago)
[ti-22al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[ti-22al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 35.243.138.78 - - [11/Oct/2026:02:34:13 +0200] "GET /nonhydzc1lkt6p3pqerj HTTP/2.0" 404 1877 "-" "Mozilla/5.0 (compatible; Meta-ExternalFetcher/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)"
35.243.138.78 - - [11/Oct/2026:02:34:13 +0200] "GET /asset-manifest.json HTTP/2.0" 404 1854 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
35.243.138.78 - - [11/Oct/2026:02:34:13 +0200] "GET /assets/manifest.json HTTP/2.0" 404 1854 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
35.243.138.78 - - [11/Oct/2026:02:34:13 +0200] "GET /static/manifest.json H
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
iwle
2026-10-11 00:20:43
(4 hours ago)
[Sat Oct 10 20:20:42.872956 2026] [:error] [pid 2176:tid 2207] [client 35.243.138.78:0] [client 35.2 ...
show more
[Sat Oct 10 20:20:42.872956 2026] [:error] [pid 2176:tid 2207] [client 35.243.138.78:0] [client 35.243.138.78] ModSecurity: Warning. Matched phrase ".ssh/id_rsa" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: .ssh/id_rsa found within REQUEST_FILENAME: /.ssh/id_rsa"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "justuptowngames.com"] [uri "/.ssh/id_rsa"] [unique_id "asrWWhCooA9bikw_a3f1rQAAAMA"]
[Sat Oct 10 20:20:42.955256 2026] [:error] [pid 1476:tid 1642] [client 35.243.138.78:0] [client 35.243.138.78] ModSecurity: Warning. Matched phrase "Dockerfile" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATT
...
show less
Web App Attack
๐ฎ๐น
VHosting
2026-10-11 00:20:06
(4 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-10 23:59:04
(4 hours ago)
20 attempts against mh-misbehave-ban on choy
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-10 23:37:34
(5 hours ago)
[cb-04al] Excessive 404 errors (web scanning): 34 suspicious requests detected by fail2ban jail ngin ...
show more
[cb-04al] Excessive 404 errors (web scanning): 34 suspicious requests detected by fail2ban jail nginx-404. Example: 35.243.138.78 - - [11/Oct/2026:01:37:14 +0200] "GET /register HTTP/1.0" 404 3595 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"
35.243.138.78 - - [11/Oct/2026:01:37:14 +0200] "GET /signin HTTP/1.0" 404 3595 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"
35.243.138.78 - - [11/Oct/2026:01:37:14 +0200] "GET /auth HTTP/1.0" 404 3595 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"
35.243.138.78 - - [11/Oct/2026:01:37:14 +0200] "GET /portal HTTP/1.0" 404 3595 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Ch
...
show less
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-10-10 23:19:18
(5 hours ago)
35.243.138.78 - - [10/Oct/2026:23:19:09 +0000] "GET /z9x8c7v6b5-debug-trigger-hotelmasiabellver.es H ...
show more
35.243.138.78 - - [10/Oct/2026:23:19:09 +0000] "GET /z9x8c7v6b5-debug-trigger-hotelmasiabellver.es HTTP/2.0" 403 12558 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)" "-" edge="35.243.138.78"
35.243.138.78 - - [10/Oct/2026:23:19:10 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 12111 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36" "-" edge="35.243.138.78"
35.243.138.78 - - [10/Oct/2026:23:19:10 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 12076 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36" "-" edge="35.243.138.78"
35.243.138.78 - - [10/Oct/2026:23:19:10 +0000] "GET /0hrtpx3nhoq7urp5p0xf/ HTTP/2.0" 403 12566 "https://hotelmasiabellver.es/0hrtpx3nhoq7urp5p0xf" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)" "-" edge="35.243.138.78"
35.243.138.78 - - [10/Oct/2026:23:19:10 +
...
show less
Web App Attack
๐จ๐ญ
4server
2026-10-10 22:57:27
(5 hours ago)
[SunOct1100:57:21.7499432026][security2:error][pid418186:tid418259][client35.243.138.78:0]ModSecurit ...
show more
[SunOct1100:57:21.7499432026][security2:error][pid418186:tid418259][client35.243.138.78:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Stringmatchwithin\".asa/.asax/.ascx/.backup/.bak/.bat/.cdx/.cer/.cfg/.cmd/.com/.config/.conf/.cs/.csproj/.csr/.dat/.db/.dbf/.dll/.dos/.htr/.htw/.ida/.idc/.idq/.inc/.ini/.key/.licx/.lnk/.log/.mdb/.old/.pass/.pdb/.pol/.printer/.pwd/.rdb/.resources/.resx/.sql/.swp/.sys/.vb/.vbs/.vbproj/.vsdisco/.webinfo/.xsx/\"atTX:extension.[file\"/etc/apache2/conf.d/modsec_rules/00_asl_zz_strict.conf\"][line\"91\"][id\"390716\"][rev\"2\"][msg\"Atomicorp.comWAFRules:URLfileextensionisrestrictedbypolicy\"][data\".com\"][severity\"ERROR\"][hostname\"hostingedominio.com\"][uri\"/z9x8c7v6b5-debug-trigger-hostingedominio.com\"][unique_id\"asrC0YDCxy6CPPxcXszSiAAAAI8\"]
show less
Hacking
Web App Attack
๐ช๐ธ
robotstxt
2026-10-10 22:56:11
(5 hours ago)
35.243.138.78 - - [10/Oct/2026:22:55:12 +0000] "GET /build/manifest.json HTTP/2.0" 403 15050 "https: ...
show more
35.243.138.78 - - [10/Oct/2026:22:55:12 +0000] "GET /build/manifest.json HTTP/2.0" 403 15050 "https://hosteleriaccoo.es/build/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="35.243.138.78"
35.243.138.78 - - [10/Oct/2026:22:55:12 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 15119 "https://hosteleriaccoo.es/dist/.vite/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="35.243.138.78"
35.243.138.78 - - [10/Oct/2026:22:55:12 +0000] "GET /wp-includes/js/dist/script-modules/interactivity/index.min.js?ver=efaa5193bbad9c60ffd1 HTTP/2.0" 403 15119 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="35.243.138.78"
35.243.138.78 - - [10/Oct/2026:22:55:12 +0000] "GET /dist/manifest.json HTTP/2.0" 403 15050 "https://hosteleriaccoo.es/dist/man
...
show less
Web App Attack
๐ช๐ธ
el-brujo
2026-10-10 22:55:36
(5 hours ago)
11/Oct/2026:00:55:36.181590 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
11/Oct/2026:00:55:36.181590 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 35.243.138.78] ModSecurity: Warning. Pattern match "(?i)(?:\\\\\\\\x5c|(?:%(?:c(?:0%(?:[2aq]f|5c|9v)|1%(?:[19p]c|8s|af))|2(?:5(?:c(?:0%25af|1%259c)|2f|5c)|%46|f)|(?:(?:f(?:8%8)?0%8|e)0%80%a|bg%q)f|%3(?:2(?:%(?:%6|4)6|F)|5%%63)|u(?:221[56]|002f|EFC8|F025)|1u|5c)|0x(?:2f|5c)|\\\\\\\\/))(?:%(?:(?:f(?:(?:c%80|8)%8)?0%8 ..." at REQUEST_URI_RAW. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "48"] [id "930100"] [msg "Path Traversal Attack (/../)"] [data "Matched Data: /../ found within REQUEST_URI_RAW: /@fs/../.env?raw??"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [hostname "hostench.eu"] [uri "/.env"] [unique_id "asrCaI9pQDHNxEjhUSjsyQAG0gs"]
...
show less
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-10-10 22:46:57
(6 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-10-10 22:42:52
(6 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack