Anonymous
2026-09-19 18:55:51
(10 minutes ago)
Hacking Attempt
Hacking
Web App Attack
๐ฆ๐น
penguin-solutions.at
2026-09-19 18:54:19
(12 minutes ago)
Excessive 403/404 errors
...
Brute-Force
Web App Attack
Anonymous
2026-09-19 18:32:52
(33 minutes ago)
34.156.22.151 - - [19/Sep/2026:20:32:49 +0200] "GET /.env.php HTTP/2.0" 429 162 "-" "Mozilla/5.0 (Wi ...
show more
34.156.22.151 - - [19/Sep/2026:20:32:49 +0200] "GET /.env.php HTTP/2.0" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "-" "X"
34.156.22.151 - - [19/Sep/2026:20:32:49 +0200] "GET /.wp-config.php.swp HTTP/2.0" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "-" "X"
34.156.22.151 - - [19/Sep/2026:20:32:49 +0200] "GET /_profiler/phpinfo.php HTTP/2.0" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "-" "X"
34.156.22.151 - - [19/Sep/2026:20:32:49 +0200] "GET /admin/phpinfo.php HTTP/2.0" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "-" "X"
34.156.22.151 - - [19/Sep/2026:20:32:49 +0200] "GET /admin_phpinfo.php HTTP/2.0" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "-" "X"
34.156.22.151 - - [19/Sep/2026:20:32:49 +0200] "GET /api/phpinfo.php HTTP/2.0" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "-" "X"
show less
Brute-Force
๐จ๐ญ
m_vlasov
2026-09-19 18:22:35
(44 minutes ago)
SSH/Telnet honeypot: 0 login attempts, 0 sessions, 0 shell commands.
Hacking
๐ฉ๐ช
BlueWire Hosting
2026-09-19 18:19:11
(47 minutes ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฌ๐ง
oja
2026-09-19 18:10:26
(56 minutes ago)
Aggressive web scanner
Web App Attack
๐ญ๐บ
kranem
2026-09-19 18:00:11
(1 hour ago)
Triggered Cloudflare WAF from BE.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/2 (GET ...
show more
Triggered Cloudflare WAF from BE.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/2 (GET method)
Endpoint: /php-info.php
Timestamp: 2026-09-19T17:28:43Z
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36
show less
Bad Web Bot
๐บ๐ธ
Power Ca
2026-09-19 17:51:37
(1 hour ago)
34.156.22.151 - - [19/Sep/2026:17:51:35 +0000] "GET /.claude/settings.json HTTP/2.0" 404 123 "-" "Mo ...
show more
34.156.22.151 - - [19/Sep/2026:17:51:35 +0000] "GET /.claude/settings.json HTTP/2.0" 404 123 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
34.156.22.151 - - [19/Sep/2026:17:51:35 +0000] "GET /.anthropic/config.json HTTP/2.0" 404 123 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
34.156.22.151 - - [19/Sep/2026:17:51:35 +0000] "GET /.amplifyrc HTTP/2.0" 404 123 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
34.156.22.151 - - [19/Sep/2026:17:51:35 +0000] "GET /.config/gcloud/application_default_credentials.json HTTP/2.0" 404 123 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
34.156.22.151 - - [19/Sep/2026:17:51:35 +0000] "GET /.config/gcloud/credentials.db HTTP/2.0" 404 123 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
34.156.22.151 - - [19/Sep/2026:17:51:35 +0000] "GET /.boto HTTP/2.0" 404 123 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
34.156.22.151 - - [19/Sep/20
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-19 17:47:01
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐ต๐ฑ
Budyn
2026-09-19 17:41:58
(1 hour ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: ldap.astropot.online | URI: /.docker/laravel/app/.env | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐ฌ๐ง
f3sc
2026-09-19 16:49:43
(2 hours ago)
34.156.22.151 - - [19/Sep/2026:17:49:42 +0100] "GET /.aws/config HTTP/2.0" 403 237 "-" "Mozilla/5.0 ...
show more
34.156.22.151 - - [19/Sep/2026:17:49:42 +0100] "GET /.aws/config HTTP/2.0" 403 237 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
34.156.22.151 - - [19/Sep/2026:17:49:42 +0100] "GET /.aws/credentials HTTP/2.0" 403 237 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Port Scan
Hacking
Web App Attack
๐ฉ๐ช
maxpower
2026-09-19 16:46:45
(2 hours ago)
(PERMBLOCK) 34.156.22.151 (BE/Belgium/151.22.156.34.bc.googleusercontent.com) has had more than 4 te ...
show more
(PERMBLOCK) 34.156.22.151 (BE/Belgium/151.22.156.34.bc.googleusercontent.com) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ฉ๐ช
larse99
2026-09-19 16:40:20
(2 hours ago)
Detected Scanning / Hacking activity
Port Scan
Hacking
๐ฉ๐ช
enjoyably
2026-09-19 16:19:43
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
Omega Threat-ID
2026-09-19 16:16:07
(2 hours ago)
Omega Point Threat ID honeypot sensor observed: abuse-reported
Port Scan