๐ณ๐ฑ
Site.eu
2026-07-22 03:26:02
(3 days ago)
Excessive multi-domain requests
Brute-Force
๐ฎ๐ณ
evicky2002
2026-07-21 06:00:00
(4 days ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ซ๐ฎ
cleverest.eu
2026-07-21 02:01:56
(4 days ago)
MimirWAF has 207 incidents from 1 distinct domain => {"bad_request_uri / vcs_probe","blacklisted_acc ...
show more
MimirWAF has 207 incidents from 1 distinct domain => {"bad_request_uri / vcs_probe","blacklisted_access / definite_repeat_offender"}
show less
Brute-Force
Web App Attack
๐ช๐ธ
alferez
2026-07-21 02:01:18
(4 days ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐ณ๐ฑ
maxxsense
2026-07-21 01:58:43
(4 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.146.79.99 (JP/Japan/99.79.146.34.bc. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.146.79.99 (JP/Japan/99.79.146.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
Dominik Lysiak
2026-07-21 01:56:12
(4 days ago)
34.146.79.99 - - [21/Jul/2026:03:56:11 +0200] "GET /.env.backup HTTP/2.0" 404 179 "-" "Mozilla/5.0 A ...
show more
34.146.79.99 - - [21/Jul/2026:03:56:11 +0200] "GET /.env.backup HTTP/2.0" 404 179 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Claude-User/1.0; +mailto:[email protected] "
34.146.79.99 - - [21/Jul/2026:03:56:11 +0200] "GET /.aws/config HTTP/2.0" 404 179 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
34.146.79.99 - - [21/Jul/2026:03:56:11 +0200] "GET /wp-json HTTP/2.0" 404 179 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot"
...
show less
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2026-07-21 01:42:55
(4 days ago)
Suspicious malicious activity
Hacking
Anonymous
2026-07-21 01:30:00
(4 days ago)
Aggressive web scan
Web App Attack
๐ฉ๐ช
Marc
2026-07-21 01:18:13
(4 days ago)
34.146.79.99 - - [21/Jul/2026:03:17:45 +0200] "GET /wp-login.php HTTP/2.0" 200 3259 "https://www.als ...
show more
34.146.79.99 - - [21/Jul/2026:03:17:45 +0200] "GET /wp-login.php HTTP/2.0" 200 3259 "https://www.als-arnsberg.de/login" "Mozilla/5.0 (iPad; CPU OS 17_7 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.7 Mobile/15E148 Safari/604.1" 34.146.79.99 - - [21/Jul/2026:03:17:46 +0200] "GET /wp-login.php?redirect_to=https%3A%2F%2Fwww.als-arnsberg.de%2Fwp-admin%2F&reauth=1 HTTP/2.0" 200 4519 "https://www.als-arnsberg.de/wp-admin/" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Mobile Safari/537.36" 34.146.79.99 - - [21/Jul/2026:03:17:46 +0200] "GET /wp-login.php?redirect_to=https%3A%2F%2Fwww.als-arnsberg.de%2Fwp-admin%2F&reauth=1 HTTP/2.0" 200 4519 "https://www.als-arnsberg.de/wp-admin/" "Mozilla/5.0 (iPhone; CPU iPhone OS 26_5 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.5 Mobile/15E148 Safari/604.1" 34.146.79.99 - - [21/Jul/2026:03:18:10 +0200] "GET /wp-login.php HTTP/2.0" 200 3178 "https://www.als-arnsberg.de/login" "Mozilla/5.0 (Win
show less
Brute-Force
Web App Attack
๐ณ๐ฑ
debestelapp
2026-07-21 01:10:08
(4 days ago)
Web App Attack
๐ฌ๐ง
andypiper
2026-07-21 01:01:20
(4 days ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 00:49:48
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.79.99 (99.79.146.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.79.99 (99.79.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 20:49:42.271062 2026] [security2:error] [pid 17304:tid 17304] [client 34.146.79.99:52430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "backstore.com"] [uri "/wp-config.php.old"] [unique_id "al7CJndnAxIDyKCNPL4mYgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-21 00:35:14
(4 days ago)
34.146.79.99 - - [21/Jul/2026:03:35:13 +0300] "GET /admin/.env HTTP/1.1" 404 650 "-" "Mozilla/5.0 Ap ...
show more
34.146.79.99 - - [21/Jul/2026:03:35:13 +0300] "GET /admin/.env HTTP/1.1" 404 650 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 00:27:38
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.79.99 (99.79.146.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.79.99 (99.79.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 20:27:33.654237 2026] [security2:error] [pid 15339:tid 15361] [client 34.146.79.99:34150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "montanatribes.org"] [uri "/config/.env"] [unique_id "al689buIxFOyPG3xWSC0rQAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Halux
2026-07-21 00:24:07
(4 days ago)
34.146.79.99 Web Application Firewall multiple violations
Hacking
Web App Attack