๐ซ๐ท
Lacrimosa99
2026-09-16 04:02:40
(19 seconds ago)
34.148.43.27 - - [16/Sep/2026:06:02:36 +0200] "GET /api/w/admins/jobs_u/get_log_file/../../../../pro ...
show more
34.148.43.27 - - [16/Sep/2026:06:02:36 +0200] "GET /api/w/admins/jobs_u/get_log_file/../../../../proc/self/environ HTTP/2.0" 404 224 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)"
34.148.43.27 - - [16/Sep/2026:06:02:38 +0200] "GET /admin%2F.env HTTP/2.0" 404 224 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
34.148.43.27 - - [16/Sep/2026:06:02:39 +0200] "GET /api/w/admins/jobs_u/get_log_file/../../../../proc/self/environ HTTP/2.0" 404 224 "-" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)"
...
show less
Web Spam
๐ฉ๐ช
grassau.com
2026-09-16 03:27:47
(35 minutes ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.148.43.27 (US/Uni ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.148.43.27 (US/United States/South Carolina/North Charleston/27.43.148.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-09-16 03:21:33
(41 minutes ago)
Excessive multi-domain requests
Brute-Force
๐ธ๐ช
vaia.cloud
2026-09-16 02:30:04
(1 hour ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-16 02:28:22
(1 hour ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ฆ
Olexiy Backend
2026-09-16 01:37:22
(2 hours ago)
34.148.43.27
...
Bad Web Bot
Web App Attack
๐ฎ๐ณ
evicky2002
2026-09-16 00:02:04
(4 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฌ๐ง
Aetherweb Ark
2026-09-15 23:55:24
(4 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.148.43.27 (US/United States/27.43.148.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.148.43.27 (US/United States/27.43.148.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ซ๐ท
Baking333
2026-09-15 23:01:56
(5 hours ago)
[redacted] 34.148.43.27 - - [15/Sep/2026:22:59:41 +0100] "GET / HTTP/1.1" 200 8189 0/83463 "https:// ...
show more
[redacted] 34.148.43.27 - - [15/Sep/2026:22:59:41 +0100] "GET / HTTP/1.1" 200 8189 0/83463 "https://[redacted]/__vite_rsc_findSourceMapURL?filename=file:///root/.aws/credentials&environmentName=rsc" "Mozilla/5.0 (compatible; YouBot/1.0; +https://[redacted]/bot)" 443 [redacted] 34.148.43.27 - - [15/Sep/2026:22:59:41 +0100] "GET /__vite_rsc_findSourceMapURL?filename=file:///root/.ssh/id_rsa&environmentName=rsc HTTP/1.1" 302 1564 0/56754 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://[redacted]/bot)" 443
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-15 22:19:13
(5 hours ago)
Brute-Force
Web App Attack
๐ซ๐ท
Baking333
2026-09-15 21:59:41
(6 hours ago)
[redacted] 34.148.43.27 - - [15/Sep/2026:22:59:40 +0100] "GET /@fs/home/ubuntu/.aws/credentials?raw? ...
show more
[redacted] 34.148.43.27 - - [15/Sep/2026:22:59:40 +0100] "GET /@fs/home/ubuntu/.aws/credentials?raw?? HTTP/1.1" 302 6783 0/36605 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ChatGPT-User/1.0; +https://[redacted]/bot)" 443 [redacted] 34.148.43.27 - - [15/Sep/2026:22:59:40 +0100] "GET /@fs/var/task/.env?raw?? HTTP/1.1" 302 6783 0/44160 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://[redacted]/)" 443
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 21:41:23
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.43.27 (27.43.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.43.27 (27.43.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:41:15.467307 2026] [security2:error] [pid 1699:tid 1834] [client 34.148.43.27:59784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bioscada.com"] [uri "/.git/config"] [unique_id "aqm7e8pNFcrifMtvcno12AAAAQ4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-09-15 21:08:27
(6 hours ago)
[Tue Sep 15 15:08:23.829806 2026] [authz_core:error] [pid 38580:tid 140604156876352] [client 34.148. ...
show more
[Tue Sep 15 15:08:23.829806 2026] [authz_core:error] [pid 38580:tid 140604156876352] [client 34.148.43.27:50566] AH01630: client denied by server configuration: /var/www/public_html/journal/rclone.conf
[Tue Sep 15 15:08:26.803184 2026] [authz_core:error] [pid 38580:tid 140604156876352] [client 34.148.43.27:50566] AH01630: client denied by server configuration: /var/www/public_html/journal/wp-config.php.bak
[Tue Sep 15 15:08:26.882899 2026] [authz_core:error] [pid 38580:tid 140604215625280] [client 34.148.43.27:50566] AH01630: client denied by server configuration: /var/www/public_html/journal/.env.php.bak
...
show less
Bad Web Bot
๐บ๐ธ
agenciahypelab.com.br
2026-09-15 21:08:16
(6 hours ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
Anonymous
2026-09-15 21:04:53
(6 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.148.43.27 (US/United States/27.43.14 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.148.43.27 (US/United States/27.43.148.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection