๐ซ๐ท
Neoloop
2026-09-19 04:19:28
(3 hours ago)
[Sat Sep 19 06:17:12.129133 2026] [authz_core:error] [pid 2968668] [client 34.142.128.93:35704] AH01 ...
show more
[Sat Sep 19 06:17:12.129133 2026] [authz_core:error] [pid 2968668] [client 34.142.128.93:35704] AH01630: client denied by server configuration: /var/www/html/apartmanbudin.cz/web/server-status
[Sat Sep 19 06:17:16.268037 2026] [authz_core:error] [pid 2970103] [client 34.142.128.93:35794] AH01630: client denied by server configuration: /var/www/html/apartmanbudin.cz/web/server-status
[Sat Sep 19 06:19:23.303705 2026] [authz_core:error] [pid 2968669] [client 34.142.128.93:50206] AH01630: client denied by server configuration: /var/www/html/apartmanbudin.cz/web/server-status
[Sat Sep 19 06:19:25.557824 2026] [authz_core:error] [pid 2968669] [client 34.142.128.93:50206] AH01630: client denied by server configuration: /var/www/html/apartmanbudin.cz/web/.htpasswd
[Sat Sep 19 06:19:27.088294 2026] [authz_core:error] [pid 2970419] [client 34.142.128.93:41654] AH01630: client denied by server configuration: /var/www/html/apartmanbudin.cz/web/server-status
...
show less
Brute-Force
๐บ๐ธ
seanwall
2026-09-18 23:47:13
(8 hours ago)
Automated scanner/attacker probing war-room. Paths: ['/.env', '/.env']. UA: ['Mozilla/5.0 (compatibl ...
show more
Automated scanner/attacker probing war-room. Paths: ['/.env', '/.env']. UA: ['Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)']
show less
Port Scan
Bad Web Bot
Web App Attack
๐ฌ๐ง
sc user
2026-09-18 22:17:52
(9 hours ago)
Fail2Ban nginx: repeated suspicious HTTP requests consistent with automated probing, scanning or bad ...
show more
Fail2Ban nginx: repeated suspicious HTTP requests consistent with automated probing, scanning or bad bot behaviour. Technical log details and local server identifiers intentionally omitted for privacy.
show less
Bad Web Bot
Web App Attack
Port Scan
๐จ๐ญ
dalslab ltd
2026-09-18 22:14:19
(9 hours ago)
[19/Sep/2026:00:14:14 +0200] - 404 404 - GET https ai.dalslab.com "/static/manifest.json" [Client 34 ...
show more
[19/Sep/2026:00:14:14 +0200] - 404 404 - GET https ai.dalslab.com "/static/manifest.json" [Client 34.142.128.93] [Length 22] [Gzip -] [Sent-to 10.1.1.246] "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "-"
[19/Sep/2026:00:14:15 +0200] - 405 405 - POST https ai.dalslab.com "/graphql" [Client 34.142.128.93] [Length 31] [Gzip -] [Sent-to 10.1.1.246] "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "https://ai.dalslab.com"
[19/Sep/2026:00:14:15 +0200] - 405 405 - POST https ai.dalslab.com "/api/graphql" [Client 34.142.128.93] [Length 31] [Gzip -] [Sent-to 10.1.1.246] "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "https://ai.dalslab.com"
[19/Sep/2026:00:14:15 +0200] - 405 405 - POST https ai.dalslab.com "/v1/graphql" [Client 34.142.128.93] [Length 31] [Gzip -] [Sent-to 10.1.1.
...
show less
Web Spam
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-18 21:38:56
(10 hours ago)
cloudlinux2 fail2ban: 2026-09-18 23:34:19,114 fail2ban.filter [1813]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-18 23:34:19,114 fail2ban.filter [1813]: INFO [plesk-wordpress] Found 45.132.227.150 - 2026-09-18 23:34:19cloudlinux2 fail2ban: 2026-09-18 23:36:11,127 fail2ban.filter [1813]: INFO [recidive] Found 34.142.128.93 - 2026-09-18 23:36:11cloudlinux2 fail2ban: 2026-09-18 23:36:11,041 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.142.128.93 - 2026-09-18 23:36:10cloudlinux2 fail2ban: 2026-09-18 23:36:11,032 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.142.128.93 - 2026-09-18 23:36:10cloudlinux2 fail2ban: 2026-09-18 23:36:11,121 fail2ban.actions [1813]: NOTICE [plesk-modsecurity] Ban 34.142.128.93cloudlinux2 fail2ban: 2026-09-18 23:36:11,051 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.142.128.93 - 2026-09-18 23:36:10cloudlinux2 fail2ban: 2026-09-18 23:36:11,016 fail2ban.filter [1813]: INFO [plesk-modsecurity] Found 34.142.128.93 - 2026-09-18 23:36:10cloudlinux2 fail2ban: 2026-09
show less
Web App Attack
Anonymous
2026-09-18 21:04:10
(11 hours ago)
IP matched detection query many 3xx errors.
Brute-Force
Anonymous
2026-09-18 18:31:43
(13 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ณ๐ฑ
Alt255
2026-09-18 17:55:34
(14 hours ago)
[ti-12al] Web exploit scanning: 2 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-12al] Web exploit scanning: 2 suspicious requests detected by fail2ban jail <name>. Example: 34.142.128.93 - - \[18/Sep/2026:19:55:28 +0200\] "GET /services/.env HTTP/2.0" 404 1863 "-" "Mozilla/5.0 \(compatible\; YouBot/1.0\; +https://you.com/bot\)"
34.142.128.93 - - \[18/Sep/2026:19:55:28 +0200\] "GET /.aws/config HTTP/2.0" 404 1863 "-" "Mozilla/5.0 \(compatible\; DeepSeekBot/1.0\; +https://www.deepseek.com/\)"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-18 17:44:06
(14 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฉ๐ช
rh24
2026-09-18 17:23:08
(14 hours ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.142.128.93 (SG/Singapore/93.128.142.34 ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.142.128.93 (SG/Singapore/93.128.142.34.bc.googleusercontent.com)
show less
Hacking
๐ช๐ธ
el-brujo
2026-09-18 14:38:00
(17 hours ago)
HTTP DDoS Attack Layer 7
DDoS Attack
๐ฉ๐ช
DSK
2026-09-18 12:38:10
(19 hours ago)
AbuseIPDB Blocklist match [80/tcp], #4800
Bad Web Bot
๐บ๐ธ
jormaster3k
2026-09-18 04:18:08
(1 day ago)
Attack against Apache (too many 404s)
Web App Attack
๐ง๐ช
voormedia
2026-09-18 03:29:28
(1 day ago)
Accessed trap at '/secrets.yml'
Web App Attack
๐ช๐ธ
el-brujo
2026-09-18 01:51:46
(1 day ago)
18/Sep/2026:03:51:45.733328 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
18/Sep/2026:03:51:45.733328 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.142.128.93] ModSecurity: Warning. Pattern match "(?i)(?:\\\\\\\\x5c|(?:%(?:c(?:0%(?:[2aq]f|5c|9v)|1%(?:[19p]c|8s|af))|2(?:5(?:c(?:0%25af|1%259c)|2f|5c)|%46|f)|(?:(?:f(?:8%8)?0%8|e)0%80%a|bg%q)f|%3(?:2(?:%(?:%6|4)6|F)|5%%63)|u(?:221[56]|002f|EFC8|F025)|1u|5c)|0x(?:2f|5c)|\\\\\\\\/))(?:%(?:(?:f(?:(?:c%80|8)%8)?0%8 ..." at REQUEST_URI_RAW. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "48"] [id "930100"] [msg "Path Traversal Attack (/../)"] [data "Matched Data: /..%252f found within REQUEST_URI_RAW: /@fs/..%252f..%252f..%252f..%252f..%252fproc/self/environ?raw??"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [hostname "grafana.elhacker.net"] [uri "/@fs/..%2f..%2f..%2f..%2f..%
...
show less
Hacking
Web App Attack