๐ฉ๐ช
EGP Abuse Dept
2026-09-22 02:00:12
(7 hours ago)
Scanning for web/db/file exploits on qpall-paletas-de-plastico.es
SQL Injection
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-22 01:01:14
(8 hours ago)
34.136.99.155 - - [22/Sep/2026:01:01:11 +0000] "GET /appearance/../../.env HTTP/1.1" 400 193 "-" "-" ...
show more
34.136.99.155 - - [22/Sep/2026:01:01:11 +0000] "GET /appearance/../../.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.136.99.155"
34.136.99.155 - - [22/Sep/2026:01:01:11 +0000] "GET /public/plugins/alertlist/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.136.99.155"
34.136.99.155 - - [22/Sep/2026:01:01:12 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.136.99.155"
34.136.99.155 - - [22/Sep/2026:01:01:12 +0000] "GET /appearance/../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.136.99.155"
34.136.99.155 - - [22/Sep/2026:01:01:12 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.136.99.155"
...
show less
Web Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 00:57:08
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.136.99.155 (155.99.136.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.99.155 (155.99.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:57:02.019306 2026] [security2:error] [pid 744:tid 744] [client 34.136.99.155:50722] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nagareinkpaper.es"] [uri "/app/.env"] [unique_id "arHSXgONpPGfzaOQg85cgAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-22 00:27:59
(9 hours ago)
20 attempts against mh-misbehave-ban on mars
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-22 00:24:47
(9 hours ago)
[cb-13al] Excessive 404 errors (web scanning): 28 suspicious requests detected by fail2ban jail apac ...
show more
[cb-13al] Excessive 404 errors (web scanning): 28 suspicious requests detected by fail2ban jail apache-404. Example: 34.136.99.155 - - [22/Sep/2026:02:24:24 +0200] "GET /z9x8c7v6b5-debug-trigger-maglesrevista.es HTTP/1.1" 404 61038 "https://maglesrevista.es/z9x8c7v6b5-debug-trigger-maglesrevista.es" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)"
34.136.99.155 - - [22/Sep/2026:02:24:24 +0200] "GET /internal/.env HTTP/1.1" 404 61038 "https://maglesrevista.es/internal/.env" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)"
34.136.99.155 - - [22/Sep/2026:02:24:24 +0200] "GET /cmd/.env HTTP/1.1" 404 61038 "https://maglesrevista.es/cmd/.env" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"
34.136.99.155 - - [22/Sep/2026:02:24:26 +0200] "POST
...
show less
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-21 22:44:11
(10 hours ago)
34.136.99.155 - - [21/Sep/2026:22:43:08 +0000] "GET / HTTP/2.0" 403 5271 "https://ojo.es/" "Mozilla/ ...
show more
34.136.99.155 - - [21/Sep/2026:22:43:08 +0000] "GET / HTTP/2.0" 403 5271 "https://ojo.es/" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)" "-" edge="34.136.99.155"
34.136.99.155 - - [21/Sep/2026:22:43:11 +0000] "GET /.gitconfig HTTP/2.0" 403 5133 "https://ojo.es/.gitconfig" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "-" edge="34.136.99.155"
34.136.99.155 - - [21/Sep/2026:22:43:12 +0000] "GET /.gitlab-ci.yml HTTP/2.0" 403 5133 "https://ojo.es/.gitlab-ci.yml" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)" "-" edge="34.136.99.155"
34.136.99.155 - - [21/Sep/2026:22:43:12 +0000] "GET /z9x8c7v6b5-debug-trigger-ojo.es HTTP/2.0" 403 5133 "https://ojo.es/z9x8c7v6b5-debug-trigger-ojo.es" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)" "-" edge="34.136.99.155"
34.136.99.155 - - [21/Sep/2026:22:43:12 +0000] "GET /.env.backup HTTP/2.0" 403 5133 "https://ojo.es/.env.backup" "Mozilla/5.0 (compatible; Pangu
...
show less
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-21 22:22:13
(11 hours ago)
Brute-Force
Web App Attack
๐ฉ๐ช
updown.io
2026-09-21 20:14:26
(13 hours ago)
{"level":"info","ts":1790021663.746637,"logger":"http.log.access.log1","msg":"handled request","requ ...
show more
{"level":"info","ts":1790021663.746637,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.136.99.155","remote_port":"50068","client_ip":"34.136.99.155","proto":"HTTP/2.0","method":"GET","host":"status.ltonod.es","uri":"/z9x8c7v6b5-debug-trigger-status.ltonod.es","headers":{"Accept":["*/*"],"Cookie":["REDACTED"],"Accept-Encoding":["gzip"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"X-Nextjs-Data":["1"],"User-Agent":["Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"status.ltonod.es","ech":false}},"bytes_read":0,"user_id":"","duration":0.000128546,"size":0,"status":429,"resp_headers":{"Retry-After":["1"],"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"]}}
{"level":"info","ts":17900
...
show less
DDoS Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 19:56:24
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.136.99.155 (155.99.136.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.99.155 (155.99.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 15:56:19.089493 2026] [security2:error] [pid 15111:tid 15111] [client 34.136.99.155:38964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ea2cdy.es"] [uri "/.git/HEAD"] [unique_id "arGL42PzpUj7R_kSo_g-zQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-21 19:51:36
(13 hours ago)
204 requests with url.path */@fs/*
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-09-21 19:06:11
(14 hours ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
yvoictra
2026-09-21 18:20:45
(15 hours ago)
Bloqueado automรกticamente por CrowdSec. Escenario: crowdsecurity/http-sensitive-files
Web App Attack
Anonymous
2026-09-21 17:52:22
(15 hours ago)
IP matched detection query many 3xx errors.
Brute-Force
๐ฉ๐ช
macrob
2026-09-21 17:35:22
(15 hours ago)
2026/09/21 17:35:21 [error] 1144019#1144019: *22291697 access forbidden by rule, client: 34.136.99.1 ...
show more
2026/09/21 17:35:21 [error] 1144019#1144019: *22291697 access forbidden by rule, client: 34.136.99.155, server: binixo.es, request: "GET /web/.env HTTP/2.0", host: "binixo.es"
2026/09/21 17:35:21 [error] 1144019#1144019: *22291697 access forbidden by rule, client: 34.136.99.155, server: binixo.es, request: "GET /.git-credentials HTTP/2.0", host: "binixo.es"
2026/09/21 17:35:21 [error] 1144019#1144019: *22291697 access forbidden by rule, client: 34.136.99.155, server: binixo.es, request: "GET /.env.bak HTTP/2.0", host: "binixo.es"
...
show less
Web App Attack
๐ช๐ธ
robotstxt
2026-09-21 17:08:43
(16 hours ago)
34.136.99.155 - - [21/Sep/2026:17:08:00 +0000] "GET /config.js HTTP/2.0" 403 189 "-" "Mozilla/5.0 (c ...
show more
34.136.99.155 - - [21/Sep/2026:17:08:00 +0000] "GET /config.js HTTP/2.0" 403 189 "-" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)" "-" edge="34.136.99.155"
34.136.99.155 - - [21/Sep/2026:17:08:00 +0000] "GET /z9x8c7v6b5-debug-trigger-intranet.infomedusa.es HTTP/2.0" 403 189 "-" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)" "-" edge="34.136.99.155"
34.136.99.155 - - [21/Sep/2026:17:08:00 +0000] "POST / HTTP/2.0" 403 189 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)" "-" edge="34.136.99.155"
34.136.99.155 - - [21/Sep/2026:17:08:00 +0000] "GET /api/v1/config HTTP/2.0" 403 189 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)" "-" edge="34.136.99.155"
34.136.99.155 - - [21/Sep/2026:17:08:00 +0000] "GET /env.js HTTP/2.0" 403 189 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like
...
show less
Web App Attack