๐ฉ๐ช
MarkGGN
2026-06-15 17:57:08
(13 hours ago)
Web attack. 34.134.176.5 - - [15/Jun/2026:19:57:07 +0200] "GET /backend/actuator/heapdump HTTP/1.1" ...
show more
Web attack. 34.134.176.5 - - [15/Jun/2026:19:57:07 +0200] "GET /backend/actuator/heapdump HTTP/1.1" 302 138 "-" "Mozilla/5.0 (Linux; Android 9; MI 8 Build/PKQ1.180729.001; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/67.0.3396.87 XWEB/882 MMWEBSDK/190506 Mobile Safari/537.36 MMWEBID/409 MicroMessenger/7.0.6.1460(0x27000634) Process/tools NetType/WIFI Language/zh_CN"
34.134.176.5 - - [15/Jun/2026:19:57:07 +0200] "GET /v2/actuator/configprops HTTP/1.1" 302 138 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.131 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-06-15 16:34:10
(14 hours ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐ณ๐ฑ
Mangelot Hosting
2026-06-15 08:28:44
(22 hours ago)
(modsecurity) srv103 ModSecurity 34.134.176.5 (US/United States/5.176.134.34.bc.googleusercontent.co ...
show more
(modsecurity) srv103 ModSecurity 34.134.176.5 (US/United States/5.176.134.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:43:40
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.176.5 (5.176.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.176.5 (5.176.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:43:34.885954 2026] [security2:error] [pid 2738:tid 2738] [client 34.134.176.5:37748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ceta-arts.tandm.us"] [uri "/.env.backup.txt"] [unique_id "ai-tJqGS3e3ukBKL1RvE8AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 07:15:31
(1 day ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-15 06:40:22
(1 day ago)
20 attempts against mh-misbehave-ban on sedna
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-06-15 06:10:54
(1 day ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.134.176.5 (US/United States/5.176.134 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.134.176.5 (US/United States/5.176.134.34.bc.googleusercontent.com): 2 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.134.176.5 - - [15/Jun/2026:08:10:50 +0200] "GET /mail/sendgrid.env HTTP/2.0" 404 9881 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.88 Safari/537.36 Vivaldi/2.4.1488.36" "34.134.176.5" host=ipv6.masterlabvideoproduzioni.it
34.134.176.5 - - [15/Jun/2026:08:10:50 +0200] "GET /src/sendgrid.env HTTP/2.0" 404 9877 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.142 Safari/537.36 OPR/62.0.3331.117" "34.134.176.5" host=ipv6.masterlabvideoproduzioni.it
show less
Port Scan
๐ณ๐ฑ
Savvii
2026-06-15 05:35:39
(1 day ago)
20 attempts against mh-misbehave-ban on pf102949
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-15 01:05:31
(1 day ago)
Abuse Detected (18)
Brute-Force
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 15:59:34
(1 day ago)
20 attempts against mh_ha-misbehave-ban on kale
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 14:18:56
(1 day ago)
20 attempts against mh-misbehave-ban on lime
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-14 12:20:32
(1 day ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 10:09:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.134.176.5 (5.176.134.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.176.5 (5.176.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 06:09:17.516694 2026] [security2:error] [pid 30159:tid 30159] [client 34.134.176.5:59820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.w0kem.ewingmissouri.com"] [uri "/api/.env.dev"] [unique_id "ai59zcp-Y83N_4MCImDMBQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-06-14 07:05:07
(2 days ago)
Web App Attack
๐ฎ๐น
VHosting
2026-06-14 05:45:03
(2 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack