π§π·
radardatelecom
2026-10-05 22:27:02
(2 days ago)
Blocked by Radar da Telecom firewall β abuseipdb
Bad Web Bot
Web App Attack
Anonymous
2026-10-05 22:10:24
(2 days ago)
34.182.219.128 - - [05/Oct/2026:17:10:23 -0500] "GET /.env?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (c ...
show more
34.182.219.128 - - [05/Oct/2026:17:10:23 -0500] "GET /.env?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)" 34.182.219.128
34.182.219.128 - - [05/Oct/2026:17:10:23 -0500] "GET /.env?import&url&inline HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)" 34.182.219.128
34.182.219.128 - - [05/Oct/2026:17:10:23 -0500] "GET /.env.local?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)" 34.182.219.128
34.182.219.128 - - [05/Oct/2026:17:10:23 -0500] "GET /.env?import&raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)" 34.182.219.128
34.182.219.128 - - [05/Oct/2026:17:10:23 -0500] "GET /.env.local?import&raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 34.182.219.128
34.182.219.128 - - [05/Oct/2026:17:10:23 -0500] "GET /.env.production?import&raw HTTP/1.1" 403 199
...
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
1gz
2026-10-05 10:16:00
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: CHALLENGE
Protocol: HTTP/2 (DELETE ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: CHALLENGE
Protocol: HTTP/2 (DELETE method)
Endpoint: /inngest
UA: Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-10-05 09:36:50
(3 days ago)
malicious scanning tool activity
Web App Attack
π©πͺ
creoline GmbH
2026-10-05 07:22:25
(3 days ago)
[WAF] Multiple suspicious HTTP requests has been blocked
Bad Web Bot
Web App Attack
Anonymous
2026-10-05 07:07:03
(3 days ago)
Automated web scanner. Requested suspicious paths: /build/manifest.json | /dist/.vite/manifest.json ...
show more
Automated web scanner. Requested suspicious paths: /build/manifest.json | /dist/.vite/manifest.json | /.vite/manifest.json | /dist/manifest.json | /z9x8c7v6b5-debug-trigger-tigzig.com. UTC: 2026-10-05 06:35:56.
show less
Web App Attack
π©πͺ
LRob
2026-10-05 06:48:24
(3 days ago)
Wordlist path sweep | method: GET, POST | path: /assets/manifest.json, /asset-manifest.json, /lib/te ...
show more
Wordlist path sweep | method: GET, POST | path: /assets/manifest.json, /asset-manifest.json, /lib/terminal-xhr.php (+3 more) | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0, Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)
show less
Port Scan
Web App Attack
π΅π±
strefapi_com
2026-10-05 06:21:58
(3 days ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
πΊπΈ
CDO
2026-10-05 06:20:57
(3 days ago)
URL Injection attempt detected. Automated web attack.
Hacking
Bad Web Bot
Web App Attack
π·π΄
iulianh
2026-10-05 05:57:38
(3 days ago)
80,443
Brute-Force
SSH
π©πͺ
paissangroup
2026-10-05 05:31:10
(3 days ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-05 05:25:41
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.182.219.128 (128.219.182.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.182.219.128 (128.219.182.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 01:25:35.737232 2026] [security2:error] [pid 3757889:tid 3757901] [client 34.182.219.128:56370] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oplconnect.com"] [uri "/.htpasswd"] [unique_id "asM0z81dJOLsJm03ZBqfIgAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
Mediashaker
2026-10-05 05:16:52
(3 days ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.182.219.128 (US/U ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.182.219.128 (US/United States/128.219.182.34.bc.googleusercontent.com)
show less
Bad Web Bot
π³π±
Alt255
2026-10-05 05:15:43
(3 days ago)
[ti-26al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-26al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.182.219.128 - - [05/Oct/2026:07:15:41 +0200] "GET /.htpasswd HTTP/1.1" 403 689 "-" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)"
...
show less
Bad Web Bot
Web App Attack
π«π·
LoneRider
2026-10-05 05:12:20
(3 days ago)
[05/Oct/2026:07:12:16.941184 +0200] asMxsFiQ0mdZZlUgrcdcrgAAAAk 34.182.219.128 36794 127.0.0.1 7081
...
show more
[05/Oct/2026:07:12:16.941184 +0200] asMxsFiQ0mdZZlUgrcdcrgAAAAk 34.182.219.128 36794 127.0.0.1 7081
[05/Oct/2026:07:12:19.073469 +0200] asMxs80gkoNP3WUYIOiKcQAAAAM 34.182.219.128 37068 127.0.0.1 7081
[05/Oct/2026:07:12:19.076856 +0200] asMxs1ya8DFYhL9q3wYYNwAAAAg 34.182.219.128 37076 127.0.0.1 7081
...
show less
Hacking