๐ต๐ฑ
Jacqb
2026-07-20 20:37:41
(1 day ago)
Adres potencjalnie niebezpieczny
Brute-Force
Web App Attack
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-07-16 22:04:41
(5 days ago)
Auto-ban: >3000 req/min op 2026-07-16
Web App Attack
SSH
Hacking
Anonymous
2026-06-24 12:01:39
(3 weeks ago)
108.162.216.34 - - [24/Jun/2026:12:01:37 +0000] "GET /atex1.php HTTP/2.0" 404 4053 "-" "-" "135.119. ...
show more
108.162.216.34 - - [24/Jun/2026:12:01:37 +0000] "GET /atex1.php HTTP/2.0" 404 4053 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/2026:12:01:37 +0000] "GET /class-t.api.php HTTP/2.0" 404 4057 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/2026:12:01:37 +0000] "GET /w.php HTTP/2.0" 404 4050 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/2026:12:01:37 +0000] "GET /archive.php HTTP/2.0" 404 4055 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/2026:12:01:37 +0000] "GET /bless.php HTTP/2.0" 404 4053 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/2026:12:01:38 +0000] "GET /sagax1.php HTTP/2.0" 404 4054 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/2026:12:01:38 +0000] "GET /wpc.php HTTP/2.0" 404 4050 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/2026:12:01:38 +0000] "GET /fone1.php HTTP/2.0" 404 4053 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/2026:12:01:38 +0000] "GET /ncx.php HTTP/2.0" 404 4051 "-" "-" "135.119.73.164"
108.162.216.34 - - [24/Jun/
...
show less
Port Scan
Brute-Force
๐ฉ๐ช
febrian.de
2026-06-17 11:58:29
(1 month ago)
Malicious HTTP(S) probing detected by Fail2Ban
Web App Attack
Anonymous
2026-06-14 23:35:30
(1 month ago)
108.162.216.34 - - [14/Jun/2026:23:35:27 +0000] "GET /bc.php HTTP/2.0" 404 4046 "-" "-" "52.176.38.1 ...
show more
108.162.216.34 - - [14/Jun/2026:23:35:27 +0000] "GET /bc.php HTTP/2.0" 404 4046 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:27 +0000] "GET /moshou.php HTTP/2.0" 404 4050 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:27 +0000] "GET /lib.php HTTP/2.0" 404 4047 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:28 +0000] "GET /dostshell.php HTTP/2.0" 404 4053 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:28 +0000] "GET /doc.php HTTP/2.0" 404 4050 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:28 +0000] "GET /casp1.php HTTP/2.0" 404 4051 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:28 +0000] "GET /a1.php HTTP/2.0" 404 4049 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:29 +0000] "GET /cilus.php HTTP/2.0" 404 4051 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:29 +0000] "GET /press.php HTTP/2.0" 404 4051 "-" "-" "52.176.38.190"
108.162.216.34 - - [14/Jun/2026:23:35:29 +
...
show less
Port Scan
Brute-Force
๐บ๐ธ
wimaxnz
2026-01-30 07:27:12
(5 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Port Scan
Brute-Force
SSH
๐ฆ๐บ
Anytech
2026-01-13 09:53:26
(6 months ago)
Blocked by conn-monitor: DDoS attack from subnet 108.162.0.0/16
DDoS Attack
Web App Attack
๐ฌ๐ง
[email protected]
2026-01-01 02:44:07
(6 months ago)
aenetworks.infoaware.com:80 108.162.216.34 - - [01/Jan/2026:02:43:40 +0000] "GET /.git/objects/95/18 ...
show more
aenetworks.infoaware.com:80 108.162.216.34 - - [01/Jan/2026:02:43:40 +0000] "GET /.git/objects/95/18420566eb1f1bb9f8ebd6bc00cbb2d3a220ab HTTP/1.1" 404 543 "-" "Go-http-client/1.1"
aenetworks.infoaware.com:80 108.162.216.34 - - [01/Jan/2026:02:43:40 +0000] "GET /.git/objects/fe/5f0e0e66176da634496aa84e2cef3b6feac87b HTTP/1.1" 404 543 "-" "Go-http-client/1.1"
aenetworks.infoaware.com:80 108.162.216.34 - - [01/Jan/2026:02:44:07 +0000] "GET /.git/objects/a0/3dddeb0b4998c1a0264fe3e409e33bc6cb15cf HTTP/1.1" 404 543 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐ฌ๐ง
[email protected]
2025-12-14 00:12:43
(7 months ago)
community.the-sse.org:443 108.162.216.34 - - [14/Dec/2025:00:12:39 +0000] "GET /.git/objects/56/18f7 ...
show more
community.the-sse.org:443 108.162.216.34 - - [14/Dec/2025:00:12:39 +0000] "GET /.git/objects/56/18f7ebf41d107c8212ca35f5c259a433775167 HTTP/1.1" 404 4330 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
community.the-sse.org:443 108.162.216.34 - - [14/Dec/2025:00:12:39 +0000] "GET /.git/objects/a1/c59a7c2aca29b33dc3c939af33d7209aa43d9f HTTP/1.1" 404 532 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
community.the-sse.org:443 108.162.216.34 - - [14/Dec/2025:00:12:39 +0000] "GET /.git/objects/27/e4b71255131fa57b2df75230962b1626e04842 HTTP/1.1" 404 532 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
...
show less
Web App Attack
๐บ๐ธ
MirrorImageGaming
2025-12-10 02:09:51
(7 months ago)
HTTP probe(s) @ TCP 80 US
Port Scan
๐ฌ๐ง
pinguin
2025-11-25 11:11:21
(7 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-12-02 04:14:06
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 108.162.216.34 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 108.162.216.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 01 23:13:59.162079 2024] [security2:error] [pid 4396:tid 4396] [client 108.162.216.34:16822] [client 108.162.216.34] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||swarnar.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "swarnar.com"] [uri "/config.ini"] [unique_id "Z000B7BhH9qZc5b2HyibnQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2024-11-16 22:44:41
(1 year ago)
Port probe to tcp/80 (http)
[srv125]
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-05 18:04:26
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 108.162.216.34 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.216.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 05 14:04:21.152972 2024] [security2:error] [pid 1384:tid 1384] [client 108.162.216.34:22904] [client 108.162.216.34] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "upskirtcrazy.com"] [uri "/.env"] [unique_id "ZtnypcrpnTX8LKAkevHdVAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2024-06-28 20:10:13
(2 years ago)
Detected as a bad bot
Bad Web Bot