🇪🇸
robotstxt
2026-09-08 03:25:55
(1 hour ago)
34.15.174.95 - - [08/Sep/2026:03:25:27 +0000] "GET /cgi-bin/php-cgi.exe HTTP/1.1" 404 15768 "-" "Moz ...
show more
34.15.174.95 - - [08/Sep/2026:03:25:27 +0000] "GET /cgi-bin/php-cgi.exe HTTP/1.1" 404 15768 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.15.174.95"
34.15.174.95 - - [08/Sep/2026:03:25:29 +0000] "GET /cgi-bin/php-cgi.exe HTTP/1.1" 404 15768 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.15.174.95"
34.15.174.95 - - [08/Sep/2026:03:25:31 +0000] "GET /cgi-bin/php-cgi/ HTTP/1.1" 404 15768 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.15.174.95"
34.15.174.95 - - [08/Sep/2026:03:25:33 +0000] "GET /cgi-bin/php-cgi/ HTTP/1.1" 404 15768 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.15.174.95"
34.15.174.95 - - [08/Sep/2026:03:25:35 +0000] "GET /cgi-bi
...
show less
Bad Web Bot
🇪🇸
robotstxt
2026-09-08 03:04:07
(1 hour ago)
34.15.174.95 - - [08/Sep/2026:03:03:12 +0000] "GET /cgi-bin/php-cgi.exe HTTP/1.1" 404 11768 "-" "Moz ...
show more
34.15.174.95 - - [08/Sep/2026:03:03:12 +0000] "GET /cgi-bin/php-cgi.exe HTTP/1.1" 404 11768 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.15.174.95"
34.15.174.95 - - [08/Sep/2026:03:03:14 +0000] "GET /cgi-bin/php-cgi.exe HTTP/1.1" 404 11768 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.15.174.95"
34.15.174.95 - - [08/Sep/2026:03:03:16 +0000] "GET /cgi-bin/php-cgi/ HTTP/1.1" 404 11768 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.15.174.95"
34.15.174.95 - - [08/Sep/2026:03:03:18 +0000] "GET /cgi-bin/php-cgi/ HTTP/1.1" 404 11768 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.15.174.95"
34.15.174.95 - - [08/Sep/2026:03:03:19 +0000] "GET /cgi-bin/php/ HTTP/1.1" 404 11768 "-" "Mozilla/5.0 (X11; Li
...
show less
Bad Web Bot
🇸🇬
naveeddaros
2026-09-07 22:25:08
(6 hours ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
🇫🇷
SpaceHost-Server
2026-09-07 22:18:30
(6 hours ago)
Brute-Force
Web App Attack
🇩🇪
macrob
2026-09-07 17:06:43
(11 hours ago)
2026/09/07 17:06:41 [error] 2900807#2900807: *567505066 access forbidden by rule, client: 34.15.174. ...
show more
2026/09/07 17:06:41 [error] 2900807#2900807: *567505066 access forbidden by rule, client: 34.15.174.95, server: bin-spin.com, request: "GET /.git/config HTTP/1.1", host: "bin-spin.com"
2026/09/07 17:06:41 [error] 2900807#2900807: *567505100 access forbidden by rule, client: 34.15.174.95, server: bin-spin.com, request: "GET /.env HTTP/1.1", host: "bin-spin.com"
2026/09/07 17:06:42 [error] 2900807#2900807: *567505123 access forbidden by rule, client: 34.15.174.95, server: bin-spin.com, request: "GET /.env.save HTTP/1.1", host: "bin-spin.com"
...
show less
Web App Attack
🇩🇪
et-a_network
2026-09-07 12:00:56
(16 hours ago)
34.15.174.95 - - [07/Sep/2026:12:00:50 +0000] "GET /phpinfo.php HTTP/2.0" 444 0 "-" "Mozilla/5.0 (Wi ...
show more
34.15.174.95 - - [07/Sep/2026:12:00:50 +0000] "GET /phpinfo.php HTTP/2.0" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" host=e-pruef.et-a.eu via=172.64.198.178 rt=0.000
34.15.174.95 - - [07/Sep/2026:12:00:55 +0000] "GET /admin/phpinfo.php HTTP/2.0" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" host=e-pruef.et-a.eu via=162.158.102.29 rt=0.000
...
show less
Bad Web Bot
Web App Attack
🇳🇴
jad-abuse
2026-09-06 23:27:47
(1 day ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, env_probe, source_backup, server_status, wp_admin. Observed by 1 sensor(s); 261 hits.
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 23:13:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.15.174.95 (95.174.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.174.95 (95.174.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 19:12:58.122933 2026] [security2:error] [pid 880627:tid 880627] [client 34.15.174.95:55296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dynamic-therapy-mn.com"] [uri "/.git/config"] [unique_id "ap3zekfzrbRI3SN73ooIkAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-06 21:59:50
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-05.
show less
Web App Attack
SSH
Hacking
🇫🇷
dynamix
2026-09-06 12:56:34
(1 day ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 10:43:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.15.174.95 (95.174.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.174.95 (95.174.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 06:43:38.286649 2026] [security2:error] [pid 2772:tid 2772] [client 34.15.174.95:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kryptonome.com"] [uri "/.git/config"] [unique_id "ap1D2h9EAxREA_JUM-M6mQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 09:24:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.15.174.95 (95.174.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.174.95 (95.174.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 05:24:50.935815 2026] [security2:error] [pid 29671:tid 29671] [client 34.15.174.95:41690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "digifonics.com"] [uri "/.git/config"] [unique_id "ap0xYlWgVXqQRGNgem45FgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-09-06 06:33:06
(1 day ago)
Try to access /.git/config
Web App Attack
🇧🇪
cmbplf
2026-09-06 04:33:40
(2 days ago)
100 requests with url.path *.php.bak
Brute-Force
Bad Web Bot
Anonymous
2026-09-06 04:21:37
(2 days ago)
Multiple web server 400 error codes from same source ip
Web App Attack