๐ซ๐ฎ
diego021
2026-09-19 18:07:19
(3 days ago)
34.151.141.193 135.181.251.148 - [19/Sep/2026:13:07:17 -0500] "GET /.codex/config.toml HTTP/1.1" 404 ...
show more
34.151.141.193 135.181.251.148 - [19/Sep/2026:13:07:17 -0500] "GET /.codex/config.toml HTTP/1.1" 404 158 "-" "crusader-worker/1.0"
34.151.141.193 135.181.251.148 - [19/Sep/2026:13:07:17 -0500] "GET /.claude/settings.json HTTP/1.1" 404 158 "-" "crusader-worker/1.0"
34.151.141.193 135.181.251.148 - [19/Sep/2026:13:07:17 -0500] "GET /backup/.codex/auth.json HTTP/1.1" 404 158 "-" "crusader-worker/1.0"
34.151.141.193 135.181.251.148 - [19/Sep/2026:13:07:17 -0500] "GET /.codex/auth.json HTTP/1.1" 404 158 "-" "crusader-worker/1.0"
...
show less
Web App Attack
Anonymous
2026-09-19 18:06:07
(3 days ago)
[server.dsamoodle.de] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/.claude.json | /.c ...
show more
[server.dsamoodle.de] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/.claude.json | /.claude/settings.json | /.claude/credentials.json
show less
Hacking
Web App Attack
๐ณ๐ฑ
MyGlobalFlowers
2026-09-19 17:04:21
(3 days ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
cloudmax
2026-09-16 04:10:47
(6 days ago)
Cloudmax Protect [WEB BLOCK] - Too many 400/500 requests. Possible attack or hacking attempt
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 03:55:01
(6 days ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 00:51:37
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.151.141.193 (193.141.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.141.193 (193.141.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:51:32.759144 2026] [security2:error] [pid 21743:tid 21743] [client 34.151.141.193:42428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dinsbach.net"] [uri "/.git/config"] [unique_id "aqnoFAs0XGS0QHOKWDXxYAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 22:45:22
(6 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:38:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.141.193 (193.141.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.141.193 (193.141.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:38:29.677293 2026] [security2:error] [pid 13396:tid 13396] [client 34.151.141.193:55336] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "financesf.com"] [uri "/.git/config"] [unique_id "aqmetdP42YJYgns7nOUFiwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
melroy89
2026-09-15 18:38:52
(1 week ago)
34.151.141.193 - - [15/Sep/2026:20:38:46 +0200] "POST / HTTP/1.1" 404 64 "-" "Mozilla/5.0 (Macintos ...
show more
34.151.141.193 - - [15/Sep/2026:20:38:46 +0200] "POST / HTTP/1.1" 404 64 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "finance.melroy.org" 0.004
34.151.141.193 - - [15/Sep/2026:20:38:47 +0200] "POST / HTTP/1.1" 404 64 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "finance.melroy.org" 0.031
34.151.141.193 - - [15/Sep/2026:20:38:47 +0200] "POST / HTTP/1.1" 404 64 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "finance.melroy.org" 0.008
34.151.141.193 - - [15/Sep/2026:20:38:47 +0200] "GET /.git/config HTTP/1.1" 404 64 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "finance.melroy.org" 0.007
34.151.141.193 - - [15/Sep/2026:20:38:48 +0200] "POST / HTTP/1.1" 404 64 "-" "Mozilla/5.0
...
show less
Web App Attack
๐ซ๐ท
largo-it.net
2026-09-15 18:28:39
(1 week ago)
[15/Sep/2026:20:28:36.646] HTTP 404 - GET /.env.local
[15/Sep/2026:20:28:36.981] HTTP 404 - GET /.en ...
show more
[15/Sep/2026:20:28:36.646] HTTP 404 - GET /.env.local
[15/Sep/2026:20:28:36.981] HTTP 404 - GET /.env.production
[15/Sep/2026:20:28:37.317] HTTP 404 - GET /.env.staging
[15/Sep/2026:20:28:37.652] HTTP 404 - GET /.env.development
[15/Sep/2026:20:28:37.988] HTTP 404 - GET /.env.test
[15/Sep/2026:20:28:38.322] HTTP 404 - GET /.env.remote
[15/Sep/2026:20:28:38.655] HTTP 404 - GET /.env.bak
[15/Sep/2026:20:28:38.990] HTTP 404 - GET /.env.backup
show less
Hacking
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 15:30:02
(1 week ago)
suspicious request in access.log
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 13:15:03
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-15 08:06:39
(1 week ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 06:19:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.141.193 (193.141.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.141.193 (193.141.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 02:19:26.591898 2026] [security2:error] [pid 19112:tid 19112] [client 34.151.141.193:32884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "americaskitchencoach.com"] [uri "/.git/config"] [unique_id "aqjjbuyzS8pQtF3qxdRHmQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
interbiznw.com
2026-09-15 05:36:19
(1 week ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack