🇭🇺
NyaljBe
2026-08-13 07:07:00
(4 weeks ago)
34.126.71.58 - - [07/Aug/2026:20:45:18 +0200] "GET /actuator/env HTTP/1.1" 404 153 "-" "Mozilla/5.0 ...
show more
34.126.71.58 - - [07/Aug/2026:20:45:18 +0200] "GET /actuator/env HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - - [07/Aug/2026:20:45:18 +0200] "GET /config/secrets.yml HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - - [07/Aug/2026:20:45:18 +0200] "GET /bootstrap.properties HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - - [07/Aug/2026:20:45:18 +0200] "GET /config/application.properties HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - - [07/Aug/2026:20:45:18 +0200] "GET /account HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 OPR/117.0.0.0"
34.126.71.58 - - [07/Aug/2026:20:45:18 +0200] "GET /bootstrap.yml HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible;
show less
Web App Attack
🇭🇺
DumaNet
2026-08-08 20:49:00
(1 month ago)
Web app attack attempts, scanning for vulnerability.
Date: 2026 Aug 07. 19:44:08
Source IP: 34.126 ...
show more
Web app attack attempts, scanning for vulnerability.
Date: 2026 Aug 07. 19:44:08
Source IP: 34.126.71.58
Portion of the log(s):
34.126.71.58 - [07/Aug/2026:19:44:08 +0200] "GET /.aws/config HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:44:08 +0200] "GET /.env.example HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:44:08 +0200] "GET /__/firebase/init.json HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:44:08 +0200] "GET /.env HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:44:08 +0200] "POST /api/graphql HTTP/1.1" 404 555 "https://[removed].hu" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 OPR/117.0.0.0"
show less
Web App Attack
🇭🇺
DumaNet
2026-08-08 20:27:00
(1 month ago)
Web app attack attempts, scanning for vulnerability.
Date: 2026 Aug 07. 19:28:23
Source IP: 34.126 ...
show more
Web app attack attempts, scanning for vulnerability.
Date: 2026 Aug 07. 19:28:23
Source IP: 34.126.71.58
Portion of the log(s):
34.126.71.58 - [07/Aug/2026:19:28:23 +0200] "GET /.env.old HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)"
34.126.71.58 - [07/Aug/2026:19:28:23 +0200] "GET /.env.local HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)"
34.126.71.58 - [07/Aug/2026:19:28:23 +0200] "GET /.env.backup HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)"
34.126.71.58 - [07/Aug/2026:19:28:23 +0200] "GET /.env.production HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)"
34.126.71.58 - [07/Aug/2026:19:28:23 +0200] "POST /v1/graphql HTTP/1.1" 404 555 "https://[removed].hu" "Mozilla/5.0 (Linux; An
show less
Web App Attack
🇭🇺
DumaNet
2026-08-08 19:35:00
(1 month ago)
Web app attack attempts, scanning for vulnerability.
Date: 2026 Aug 07. 19:10:51
Source IP: 34.126 ...
show more
Web app attack attempts, scanning for vulnerability.
Date: 2026 Aug 07. 19:10:51
Source IP: 34.126.71.58
Portion of the log(s):
34.126.71.58 - [07/Aug/2026:19:10:51 +0200] "GET /server.key HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:10:51 +0200] "GET /id_ecdsa HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:10:51 +0200] "GET /id_ed25519 HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:10:51 +0200] "GET /id_dsa HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:10:51 +0200] "GET /id_rsa HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
34.126.71.58 - [07/Aug/2026:19:10:51 +0200] "GET /.vscode/launch.json HTTP/1.1" 404 153 "-" "Mo
show less
Web App Attack
🇩🇪
klaus_ph
2026-08-08 11:34:38
(1 month ago)
...
Bad Web Bot
🇧🇪
cmbplf
2026-08-08 10:37:58
(1 month ago)
139 requests with url.path *.env
Brute-Force
Bad Web Bot
🇺🇸
Lee Daniel
2026-08-08 07:55:09
(1 month ago)
34.126.71.58 - - [08/Aug/2026:03:55:08 -0400] "GET /asset-manifest.json HTTP/1.1" 404 6281 "-" "Mozi ...
show more
34.126.71.58 - - [08/Aug/2026:03:55:08 -0400] "GET /asset-manifest.json HTTP/1.1" 404 6281 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"
34.126.71.58 - - [08/Aug/2026:03:55:08 -0400] "GET /dist/manifest.json HTTP/1.1" 404 6281 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"
34.126.71.58 - - [08/Aug/2026:03:55:08 -0400] "GET /credentials.json HTTP/1.1" 404 6281 "-" "Mozilla/5.0 (compatible; Diffbot/1.0; +https://diffbot.com)"
34.126.71.58 - - [08/Aug/2026:03:55:08 -0400] "GET /static/manifest.json HTTP/1.1" 404 6281 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"
34.126.71.58 - - [08/Aug/2026:03:55:08 -0400] "GET /secrets.json HTTP/1.1" 404 6281 "-" "Mozilla/5.0 (compatible; Diffbot/1.0; +https://diffbot.com)"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-08 07:33:20
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 34.126.71.58 (58.71.126.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.126.71.58 (58.71.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 08 03:33:15.210780 2026] [security2:error] [pid 303729:tid 303793] [client 34.126.71.58:44882] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||supradig.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "supradig.com"] [uri "/rclone.conf"] [unique_id "anbbu-7JwAypU-P72tv0jAAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
malted
2026-08-07 23:50:00
(1 month ago)
brute forcing env paths
Web Spam
Brute-Force
Bad Web Bot
🇭🇺
bcsaba
2026-08-07 22:38:30
(1 month ago)
No rclone here:
34.126.71.58 - - [08/Aug/2026:00:38:28 +0200] "GET /rclone.conf HTTP/2.0" 403 146 "- ...
show more
No rclone here:
34.126.71.58 - - [08/Aug/2026:00:38:28 +0200] "GET /rclone.conf HTTP/2.0" 403 146 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Claude-User/1.0; +mailto:*REDACTED"
show less
Web App Attack
🇭🇺
szasa
2026-08-07 21:31:07
(1 month ago)
2026/08/07 23:08:24 [error] 1363129#1363129: *2717412 access forbidden by rule, client: 34.126.71.58 ...
show more
2026/08/07 23:08:24 [error] 1363129#1363129: *2717412 access forbidden by rule, client: 34.126.71.58, server: datamentor.hu, request: "GET /staging/.env HTTP/2.0", host: "www.beszerzokozpont.hu"
2026/08/07 23:31:06 [error] 1363129#1363129: *2717604 access forbidden by rule, client: 34.126.71.58, server: datamentor.hu, request: "GET /.git/config HTTP/2.0", host: "www.datamentor.hu"
2026/08/07 23:31:06 [error] 1363129#1363129: *2717604 access forbidden by rule, client: 34.126.71.58, server: datamentor.hu, request: "GET /.git/config HTTP/2.0", host: "www.datamentor.hu"
...
show less
Web App Attack
🇭🇺
szasa
2026-08-07 21:08:15
(1 month ago)
2026/08/07 23:08:14 [error] 1363129#1363129: *2717412 access forbidden by rule, client: 34.126.71.58 ...
show more
2026/08/07 23:08:14 [error] 1363129#1363129: *2717412 access forbidden by rule, client: 34.126.71.58, server: datamentor.hu, request: "GET /laravel/.env HTTP/2.0", host: "www.beszerzokozpont.hu"
2026/08/07 23:08:14 [error] 1363129#1363129: *2717412 access forbidden by rule, client: 34.126.71.58, server: datamentor.hu, request: "GET /.git/config HTTP/2.0", host: "www.beszerzokozpont.hu"
2026/08/07 23:08:14 [error] 1363129#1363129: *2717412 access forbidden by rule, client: 34.126.71.58, server: datamentor.hu, request: "GET /.git/config HTTP/2.0", host: "www.beszerzokozpont.hu"
...
show less
Web App Attack
🇩🇪
Blexyel
2026-08-07 20:44:38
(1 month ago)
34.126.71.58 - - [07/Aug/2026:22:44:37 +0200] "GET /.git/config HTTP/1.1" 404 120 "-" "Mozilla/5.0 ( ...
show more
34.126.71.58 - - [07/Aug/2026:22:44:37 +0200] "GET /.git/config HTTP/1.1" 404 120 "-" "Mozilla/5.0 (compatible; GoogleOther; +http://www.google.com/bot.html)"
...
show less
Brute-Force
Web App Attack
🇲🇾
Rizzy
2026-08-07 19:57:22
(1 month ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇩🇪
updown.io
2026-08-07 19:34:54
(1 month ago)
{"level":"info","ts":1786131289.5368526,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1786131289.5368526,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.126.71.58","remote_port":"48886","client_ip":"34.126.71.58","proto":"HTTP/2.0","method":"GET","host":"status.raku.land","uri":"/asset-manifest.json","headers":{"Sec-Fetch-Dest":["document"],"User-Agent":["Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"],"Priority":["u=0, i"],"Sec-Ch-Ua-Platform":["\"Android\""],"Sec-Ch-Ua":["\"Chromium\";v=\"152\", \"Not?A_Brand\";v=\"24\", \"Google Chrome\";v=\"152\""],"Accept-Language":["en-US,en;q=0.9"],"Sec-Fetch-Mode":["navigate"],"Sec-Fetch-Site":["none"],"Sec-Fetch-User":["?1"],"Upgrade-Insecure-Requests":["1"],"Accept":["text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,*/*;q=0.8"],"Sec-Ch-Ua-Mobile":["?1"],"Accept-Encoding":["gzip, deflate, br, zstd"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name
...
show less
DDoS Attack
Web App Attack