๐ซ๐ท
SpaceHost-Server
2026-10-10 22:20:21
(3 hours ago)
Brute-Force
Web App Attack
๐ช๐ธ
robotstxt
2026-10-10 18:52:09
(6 hours ago)
34.118.157.20 - - [10/Oct/2026:18:52:07 +0000] "GET /icons/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/proc/self/e ...
show more
34.118.157.20 - - [10/Oct/2026:18:52:07 +0000] "GET /icons/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:18:52:07 +0000] "GET /..%2f..%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:18:52:07 +0000] "GET /..%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:18:52:07 +0000] "GET /%2e%2e/.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:18:52:07 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
...
show less
Web Spam
Web App Attack
๐ซ๐ท
LRNP
2026-10-10 17:45:39
(7 hours ago)
aime.lesmatric.es:443 34.118.157.20 - - [10/Oct/2026:17:45:39 +0000] "GET /.env HTTP/2.0" 404 107 "- ...
show more
aime.lesmatric.es:443 34.118.157.20 - - [10/Oct/2026:17:45:39 +0000] "GET /.env HTTP/2.0" 404 107 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)"
...
show less
Bad Web Bot
Web App Attack
๐ช๐ธ
loadsoporte
2026-10-10 17:39:50
(7 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ช๐ธ
robotstxt
2026-10-10 17:27:19
(8 hours ago)
34.118.157.20 - - [10/Oct/2026:17:27:11 +0000] "GET /dist/manifest.json HTTP/2.0" 403 15209 "https:/ ...
show more
34.118.157.20 - - [10/Oct/2026:17:27:11 +0000] "GET /dist/manifest.json HTTP/2.0" 403 15209 "https://wppodcast.es/dist/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:17:27:11 +0000] "GET /build/manifest.json HTTP/2.0" 403 15209 "https://wppodcast.es/build/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:17:27:11 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 15209 "https://wppodcast.es/dist/.vite/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:17:27:11 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 15209 "https://wppodcast.es/.vite/manifest.json" "Mozilla/5.0 (Windows NT 10.0;
...
show less
Web App Attack
๐ง๐ช
voormedia
2026-10-10 17:10:15
(8 hours ago)
Accessed trap at '/.env'
Web App Attack
๐ช๐ธ
robotstxt
2026-10-10 17:08:43
(8 hours ago)
2026/10/10 17:08:41 [error] 919#919: *452968 [client 34.118.157.20] ModSecurity: Access denied with ...
show more
2026/10/10 17:08:41 [error] 919#919: *452968 [client 34.118.157.20] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' ) [file "/var/lib/angie/modsecurity/coreruleset/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "222"] [id "949110"] [rev ""] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [data ""] [severity "0"] [ver "OWASP_CRS/4.30.0"] [maturity "0"] [accuracy "0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.nascapers.es"] [uri "/static/manifest.json"] [unique_id "17916521219.321517"] [ref ""], client: "34.118.157.20", server: "www.nascapers.es", request_line: "GET /static/manifest.json HTTP/2.0", host: "www.nascapers.es", referrer: "https://nascapers.es/static/manifest.json"
2026/10/10 17:08:41 [error] 919#919: *452968 [client 34.118.157.20] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against varia
...
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-10 17:03:57
(8 hours ago)
[cb-13al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-13al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.118.157.20 - - [10/Oct/2026:19:03:42 +0200] "GET /build/.env HTTP/1.1" 403 518 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
LRNP
2026-10-10 17:02:13
(8 hours ago)
_:443 34.118.157.20 - - [10/Oct/2026:17:02:12 +0000] "GET /auth/login HTTP/1.1" 404 181 "-" "Mozilla ...
show more
_:443 34.118.157.20 - - [10/Oct/2026:17:02:12 +0000] "GET /auth/login HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"
_:443 34.118.157.20 - - [10/Oct/2026:17:02:12 +0000] "GET /z9x8c7v6b5-debug-trigger-lesmatric.es HTTP/1.1" 404 118 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)"
_:443 34.118.157.20 - - [10/Oct/2026:17:02:12 +0000] "GET /auth HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"
_:443 34.118.157.20 - - [10/Oct/2026:17:02:12 +0000] "GET /signin HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"
_:443 34.118.157.20 - - [10/Oct/2026:17:02:12 +0000] "GET /account/login HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML,
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-10 16:54:37
(8 hours ago)
20 attempts against mh-misbehave-ban on mars
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
Francisco Vallejo
2026-10-10 16:53:20
(8 hours ago)
[Sat Oct 10 18:53:18.813033 2026] [core:info] [pid 36564:tid 36607] [client 34.118.157.20:52652] AH0 ...
show more
[Sat Oct 10 18:53:18.813033 2026] [core:info] [pid 36564:tid 36607] [client 34.118.157.20:52652] AH00128: File does not exist: /var/www/franvallejo/z9x8c7v6b5-debug-trigger-franvallejo.es
[Sat Oct 10 18:53:19.137905 2026] [core:info] [pid 36564:tid 36615] [client 34.118.157.20:52652] AH00128: File does not exist: /var/www/franvallejo/asset-manifest.json
[Sat Oct 10 18:53:19.208922 2026] [core:info] [pid 36563:tid 36606] [client 34.118.157.20:36912] AH00128: File does not exist: /var/www/franvallejo/webpack-stats.json
[Sat Oct 10 18:53:19.230613 2026] [core:info] [pid 36564:tid 36609] [client 34.118.157.20:36944] AH00128: File does not exist: /var/www/franvallejo/assets/manifest.json
[Sat Oct 10 18:53:19.232114 2026] [core:info] [pid 36564:tid 36611] [client 34.118.157.20:36948] AH00128: File does not exist: /var/www/franvallejo/manifest.json
...
show less
Brute-Force
SSH
๐ช๐ธ
netfactotum
2026-10-10 16:47:58
(8 hours ago)
Hacking
Web App Attack
๐ซ๐ท
โจ
2026-10-10 16:42:07
(8 hours ago)
Domain : comunicados-cgt.es
Rule : WEB
IP in black list
Port Scan
๐ฉ๐ช
robotstxt
2026-10-10 16:35:19
(8 hours ago)
34.118.157.20 - - [10/Oct/2026:16:35:16 +0000] "GET /static/../../../a/../../../../proc/self/environ ...
show more
34.118.157.20 - - [10/Oct/2026:16:35:16 +0000] "GET /static/../../../a/../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:16:35:16 +0000] "GET /..%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:16:35:16 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:16:35:16 +0000] "GET /%2E%2E/%2E%2E/%2E%2E/%2E%2E/proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
34.118.157.20 - - [10/Oct/2026:16:35:16 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.118.157.20"
...
show less
Web Spam
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-10 16:27:07
(9 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack