๐ฉ๐ช
netclix.gr
2026-08-13 19:54:10
(1 week ago)
(security_scan) Sensitive File Scan Blocked 34.138.87.224 (US/United States/224.87.138.34.bc.googleu ...
show more
(security_scan) Sensitive File Scan Blocked 34.138.87.224 (US/United States/224.87.138.34.bc.googleusercontent.com): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.138.87.224 - - [13/Aug/2026:22:54:08 +0300] "GET /assets../../../.env HTTP/1.1" 400 849 "-" "-"
show less
Port Scan
๐ต๐ฑ
mscode.pl
2026-08-13 18:47:24
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Zone: watchdog.mscode.pl
Endpoint: /.ssh/id_rsa
UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )
show less
Bad Web Bot
Anonymous
2026-08-13 16:44:10
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐จ๐ฆ
polycoda
2026-08-13 14:47:09
(2 weeks ago)
๐ฅ VERY AGGRESSIVE SCANNER probed over 500 inexistent files and PHP scripts in less than an hour.
Hacking
Web App Attack
๐จ๐ฆ
polycoda
2026-08-13 14:19:37
(2 weeks ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ Excessive 40X Errors (Decay-Based)
Hacking
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-13 08:27:35
(2 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-13 08:19:13
(2 weeks ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
e.fierstra
2026-08-13 07:52:27
(2 weeks ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-13 07:28:45
(2 weeks ago)
Try to access /.aws/credentials.bak
Web App Attack
๐ซ๐ฎ
indev.fi
2026-08-13 07:28:27
(2 weeks ago)
haapala.peltopiri.com 34.138.87.224 - - [13/Aug/2026:10:28:20 +0300] "GET /@fs/proc/self/environ?raw ...
show more
haapala.peltopiri.com 34.138.87.224 - - [13/Aug/2026:10:28:20 +0300] "GET /@fs/proc/self/environ?raw?? HTTP/1.1" 403 146 "-" "Mozilla/5.0 (compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)"
haapala.peltopiri.com 34.138.87.224 - - [13/Aug/2026:10:28:20 +0300] "GET /fetch?url=http%3A%2F%2F169.254.169.254%2Flatest%2Fmeta-data%2Fiam%2Fsecurity-credentials%2F HTTP/1.1" 403 146 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)"
haapala.peltopiri.com 34.138.87.224 - - [13/Aug/2026:10:28:20 +0300] "GET /fetch?uri=http%3A%2F%2F169.254.169.254%2Flatest%2Fmeta-data%2Fiam%2Fsecurity-credentials%2F HTTP/1.1" 403 146 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)"
...
show less
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ณ๐ฑ
thedreamer.nl
2026-08-13 06:44:12
(2 weeks ago)
34.138.87.224 - - [13/Aug/2026:08:43:07 +0200] "GET /@fs/root/.aws/credentials?raw?? HTTP/1.1" 404 1 ...
show more
34.138.87.224 - - [13/Aug/2026:08:43:07 +0200] "GET /@fs/root/.aws/credentials?raw?? HTTP/1.1" 404 14 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)" "US" "North Charleston" "32.86080" "-79.97460"
34.138.87.224 - - [13/Aug/2026:08:43:07 +0200] "GET /@fs/../.env?raw?? HTTP/1.1" 400 16 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)" "US" "North Charleston" "32.86080" "-79.97460"
34.138.87.224 - - [13/Aug/2026:08:43:07 +0200] "GET /static../etc/passwd HTTP/1.1" 400 16 "-" "Mozilla/5.0 (compatible; Google-Extended/1.0; +http://www.google.com/bot.html)" "US" "North Charleston" "32.86080" "-79.97460"
34.138.87.224 - - [13/Aug/2026:08:43:07 +0200] "GET /@fs/etc/passwd?import&raw?? HTTP/1.1" 404 14 "-" "Mozilla/5.0 (compatible; OAI-SearchBot/1.3; +https://openai.com/searchbot)" "US" "North Charleston" "32.86080" "-79.97460"
...
show less
Brute-Force
Bad Web Bot
๐ฆ๐บ
Klaverstyn
2026-08-13 06:21:33
(2 weeks ago)
Cross-vhost secrets/RCE probing campaign
Web App Attack
Hacking
Anonymous
2026-08-13 06:17:58
(2 weeks ago)
Sensitive file access attempt
Hacking
Anonymous
2026-08-13 06:07:03
(2 weeks ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
Epimetheus
2026-08-13 05:56:46
(2 weeks ago)
Zombie network / Bot scanner detected:
[GET] /.circleci/config.yml
[GET] /phpinfo.php
[GET] /root/. ...
show more
Zombie network / Bot scanner detected:
[GET] /.circleci/config.yml
[GET] /phpinfo.php
[GET] /root/.config/gcloud/application_default_credentials.json
[GET] /wp-config.php.swp
[GET] /.azure/credentials
[GET] /.azure/accessTokens.json
[GET] /settings.py
[GET] /wp-config.php.bak
[GET] /.netrc
[GET] /db.sql
[GET] /application-prod.properties
[GET] /wp-config.php~
[GET] /database.yml
[GET] /WEB-INF/web.xml
[GET] /backend/service-account.json
[GET] /WEB-INF/classes/application.properties
[GET] /openai.json
[GET] /s3-credentials.json
[GET] /internal/aws/credentials
[GET] /.openai/config.json
[GET] /api/config.json
[GET] /.config/anthropic/credentials/default.json
[GET] /.claude.json
[GET] /.anthropic/config.json
[GET] /service-account.json
[GET] /.gcloud/credentials
[GET] /secrets/aws.json
[GET] /public/.aws/credentials
[GET] /google-credentials.json
[GET] /api/v1/settings
[GET] /gcp-service-account.json
[GET] /aws.json
[GET] /services/.env
[GET] /.env.production.bak
[GET] /fr
...(Truncated)
show less
Bad Web Bot
Exploited Host
Web App Attack