๐บ๐ธ
robotstxt
2026-09-22 18:37:30
(4 hours ago)
34.142.166.153 - - [22/Sep/2026:18:37:25 +0000] "GET /..%2f..%2f.env HTTP/1.1" 400 193 "-" "-" "-" e ...
show more
34.142.166.153 - - [22/Sep/2026:18:37:25 +0000] "GET /..%2f..%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.142.166.153"
34.142.166.153 - - [22/Sep/2026:18:37:26 +0000] "GET /public/plugins/grafana-clock-panel/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.142.166.153"
34.142.166.153 - - [22/Sep/2026:18:37:26 +0000] "GET /public/plugins/text/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.142.166.153"
34.142.166.153 - - [22/Sep/2026:18:37:27 +0000] "GET /public/plugins/alertlist/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.142.166.153"
34.142.166.153 - - [22/Sep/2026:18:37:27 +0000] "GET /%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.142.166.153"
...
show less
Web Spam
Web App Attack
๐ซ๐ท
mouafiq
2026-09-22 15:59:41
(7 hours ago)
2026-09-22 15:59:40,487 7276 INFO merija werkzeug: 34.142.166.153 - - [22/Sep/2026 15:59:40] "GET /z ...
show more
2026-09-22 15:59:40,487 7276 INFO merija werkzeug: 34.142.166.153 - - [22/Sep/2026 15:59:40] "GET /z9x8c7v6b5-debug-trigger-merija.cloud3.magnum.ma HTTP/1.0" 404 - 359 0.150 0.279
2026-09-22 15:59:40,855 7276 INFO merija werkzeug: 34.142.166.153 - - [22/Sep/2026 15:59:40] "GET /5qkvda21xqo2pb3shkxw HTTP/1.0" 404 - 13 0.016 0.024
2026-09-22 15:59:41,101 7276 INFO merija werkzeug: 34.142.166.153 - - [22/Sep/2026 15:59:41] "POST /graphql HTTP/1.0" 404 - 7 0.010 0.015
2026-09-22 15:59:41,243 7276 INFO merija werkzeug: 34.142.166.153 - - [22/Sep/2026 15:59:41] "GET /en/webpack-stats.json HTTP/1.0" 404 - 65 0.080 0.059
2026-09-22 15:59:41,312 7276 INFO merija werkzeug: 34.142.166.153 - - [22/Sep/2026 15:59:41] "GET /en/dist/manifest.json HTTP/1.0" 404 - 14 0.020 0.020
show less
Brute-Force
SSH
๐ฉ๐ช
updown.io
2026-09-22 15:05:27
(7 hours ago)
{"level":"info","ts":1790089521.0901504,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1790089521.0901504,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.142.166.153","remote_port":"36528","client_ip":"34.142.166.153","proto":"HTTP/2.0","method":"GET","host":"status.infiniteloop.social","uri":"/","headers":{"Sec-Ch-Ua-Mobile":["?1"],"Sec-Fetch-Mode":["navigate"],"Sec-Fetch-User":["?1"],"Accept-Language":["en-US,en;q=0.9"],"Accept":["text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,*/*;q=0.8"],"User-Agent":["Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"],"Accept-Encoding":["gzip, deflate, br, zstd"],"Sec-Ch-Ua-Platform":["\"Android\""],"Priority":["u=0, i"],"Sec-Fetch-Dest":["document"],"Sec-Ch-Ua":["\"Chromium\";v=\"153\", \"Google Chrome\";v=\"153\", \"Not_A Brand\";v=\"8\""],"X-Nextjs-Data":["1"],"Sec-Fetch-Site":["none"],"Upgrade-Insecure-Requests":["1"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src
...
show less
DDoS Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 11:57:56
(11 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 07:57:50.057507 2026] [security2:error] [pid 7745:tid 7745] [client 34.142.166.153:43458] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.lifelonglearner.science|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.lifelonglearner.science"] [uri "/config/master.key"] [unique_id "arJtPqDSphd401WA0WPjuwAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 09:36:54
(13 hours ago)
(mod_security) mod_security (id:243320) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:243320) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 05:36:49.955113 2026] [security2:error] [pid 11583:tid 11583] [client 34.142.166.153:54612] ModSecurity: Access denied with code 403 (phase 2). String match "/.profile" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6621"] [id "243320"] [rev "1"] [msg "COMODO WAF: Information disclosure vulnerability in Cloud Foundry PHP Buildpack (aka php-buildpack) before 4.3.18 and PHP Buildpack Cf-release before 242, as used in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.38 and 1.7.x before 1.7.19 and other products (CVE-2016-6639)||yoingreso.sipco.cl|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "yoingreso.sipco.cl"] [uri "/.profile"] [unique_id "arJMMdKuch3t4ejFipiuZwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
etasoft
2026-09-22 08:48:47
(14 hours ago)
Auto-blocked by WP Security AI: Rate limit: 3 violaciones
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-22 08:46:09
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 04:46:02.398218 2026] [security2:error] [pid 27153:tid 27153] [client 34.142.166.153:51478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fedeoliva.cl"] [uri "/.env_1"] [unique_id "arJASiaDJNWPegY0kF2o0gAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
floreriaexpress
2026-09-22 08:43:40
(14 hours ago)
FakeADS-Anti: fake_bot:fake_googlebot | https://floreriaexpresschile.cl/dzb54ee3j3xapa1kgw64
Bad Web Bot
Web App Attack
๐จ๐ฆ
csnavarro2020
2026-09-22 07:46:39
(15 hours ago)
Automated scan for known vulnerable/nonexistent path: /.env_1
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-22 07:11:02
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 03:10:57.745599 2026] [security2:error] [pid 32561:tid 32561] [client 34.142.166.153:40946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "serviciosjireh.cl"] [uri "/services/.env"] [unique_id "arIqAc4diaItfAPSHn9qtQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-22 07:07:33
(15 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 06:55:38
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.166.153 (153.166.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 02:55:30.767941 2026] [security2:error] [pid 23057:tid 23057] [client 34.142.166.153:36838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thebestproduct.guru"] [uri "/services/.env"] [unique_id "arImYpjzEpqhMlRnsX3hiwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
micropedro
2026-09-04 10:43:19
(2 weeks ago)
3 incidents: malicious activity. First: 2026-08-20 06:38, Last: 2026-09-04 06:43 UTC. Triggers: unkn ...
show more
3 incidents: malicious activity. First: 2026-08-20 06:38, Last: 2026-09-04 06:43 UTC. Triggers: unknown.
show less
Port Scan
๐บ๐ธ
micropedro
2026-07-01 02:36:23
(2 months ago)
3 incidents: malicious activity. First: 2026-06-23 21:32, Last: 2026-06-30 22:36 UTC. Triggers: ufw- ...
show more
3 incidents: malicious activity. First: 2026-06-23 21:32, Last: 2026-06-30 22:36 UTC. Triggers: ufw-repeater.
show less
Port Scan
๐บ๐ธ
micropedro
2026-06-17 00:40:29
(3 months ago)
3 incidents: malicious activity. First: 2026-06-09 19:35, Last: 2026-06-16 20:40 UTC. Triggers: ufw- ...
show more
3 incidents: malicious activity. First: 2026-06-09 19:35, Last: 2026-06-16 20:40 UTC. Triggers: ufw-repeater.
show less
Port Scan