๐ณ๐ฑ
e.fierstra
2026-10-11 07:15:49
(3 hours ago)
excessive HTTP 404 errors
Bad Web Bot
Anonymous
2026-10-11 07:12:37
(3 hours ago)
34.32.200.155 - - [11/Oct/2026:02:10:59 -0500] "GET /.env HTTP/1.1" 403 199 "-" "Mozilla/5.0 AppleWe ...
show more
34.32.200.155 - - [11/Oct/2026:02:10:59 -0500] "GET /.env HTTP/1.1" 403 199 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )" 162.159.113.9
34.32.200.155 - - [11/Oct/2026:02:10:59 -0500] "GET /.env.save HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" 162.159.113.8
34.32.200.155 - - [11/Oct/2026:02:10:59 -0500] "GET /.env.prod HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)" 162.159.113.8
34.32.200.155 - - [11/Oct/2026:02:10:59 -0500] "GET /.env.bak HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)" 162.159.113.135
34.32.200.155 - - [11/Oct/2026:02:10:59 -0500] "GET /.env.example HTTP/1.1" 403 199 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User
...
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-11 05:30:05
(5 hours ago)
CrowdSec decision: crowdsecurity/http-bad-user-agent (origin: crowdsec)
Port Scan
๐จ๐ญ
dalslab ltd
2026-10-11 04:46:52
(6 hours ago)
2026/10/11 06:46:52 [error] 336#336: *565918 limiting requests, excess: 200.220 by zone "rl_per_ip", ...
show more
2026/10/11 06:46:52 [error] 336#336: *565918 limiting requests, excess: 200.220 by zone "rl_per_ip", client: 34.32.200.155, server: auth.dalslab.com, request: "GET /llm/.env HTTP/2.0", host: "auth.dalslab.com"
2026/10/11 06:46:52 [error] 336#336: *565918 limiting requests, excess: 200.890 by zone "rl_per_ip", client: 34.32.200.155, server: auth.dalslab.com, request: "GET /core/.env HTTP/2.0", host: "auth.dalslab.com"
2026/10/11 06:46:52 [error] 336#336: *565918 limiting requests, excess: 200.840 by zone "rl_per_ip", client: 34.32.200.155, server: auth.dalslab.com, request: "GET /frontend/.env HTTP/2.0", host: "auth.dalslab.com"
2026/10/11 06:46:52 [error] 336#336: *565918 limiting requests, excess: 200.420 by zone "rl_per_ip", client: 34.32.200.155, server: auth.dalslab.com, request: "GET /secrets.json HTTP/2.0", host: "auth.dalslab.com"
2026/10/11 06:46:52 [error] 336#336: *565918 limiting requests, excess: 200.410 by zone "rl_per_ip", client: 34.32.200.155, server: auth.dalslab.com,
...
show less
Brute-Force
SSH
Anonymous
2026-10-11 04:30:20
(6 hours ago)
IP matched detection query Detection of too many failed responses.
Brute-Force
Bad Web Bot
Hacking
Anonymous
2026-10-11 02:30:05
(8 hours ago)
CrowdSec decision: crowdsecurity/http-crawl-non_statics (origin: crowdsec)
Port Scan
๐ธ๐ฌ
Cloudkul Cloudkul
2026-10-11 02:06:45
(8 hours ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
๐บ๐ธ
Operator873
2026-10-11 01:48:08
(9 hours ago)
2026/10/10 20:48:05 [error] 3642854#0: *1278946 access forbidden by rule, client: 34.32.200.155, ser ...
show more
2026/10/10 20:48:05 [error] 3642854#0: *1278946 access forbidden by rule, client: 34.32.200.155, server: [OBFUSCATED], request: "GET / HTTP/1.1", host: "[OBFUSCATED]"
2026/10/10 20:48:05 [error] 3642854#0: *1278946 access forbidden by rule, client: 34.32.200.155, server: [OBFUSCATED], request: "GET / HTTP/1.1", host: "[OBFUSCATED]"
2026/10/10 20:48:05 [error] 3642854#0: *1278946 access forbidden by rule, client: 34.32.200.155, server: [OBFUSCATED], request: "GET /sign-in HTTP/1.1", host: "[OBFUSCATED]"
2026/10/10 20:48:05 [error] 3642854#0: *1278946 access forbidden by rule, client: 34.32.200.155, server: [OBFUSCATED], request: "GET /sign-in HTTP/1.1", host: "[OBFUSCATED]"
2026/10/10 20:48:05 [error] 3642854#0: *1278950 access forbidden by rule, client: 34.32.200.155, server: [OBFUSCATED], request: "GET /aebu65xyjn6xa9vj09iy HTTP/1.1", host: "[OBFUSCATED]"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
[email protected]
2026-10-11 01:36:28
(9 hours ago)
CrowdSec ban: crowdsecurity/http-path-traversal-probing (duration: 71h59m58s)
Web App Attack
๐บ๐ธ
ambor
2026-10-11 01:23:13
(9 hours ago)
Honeypot triggered on tcpdata.com - Attempted to access /dist/.env (config_file_probe). User-Agent: ...
show more
Honeypot triggered on tcpdata.com - Attempted to access /dist/.env (config_file_probe). User-Agent: Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)
show less
Web App Attack
Anonymous
2026-10-11 01:20:06
(9 hours ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ธ
EmilGH
2026-10-11 01:16:10
(9 hours ago)
34.32.200.155 - - [10/Oct/2026:21:16:08 -0400] "GET /z9x8c7v6b5-debug-trigger-silverskybox.com HTTP/ ...
show more
34.32.200.155 - - [10/Oct/2026:21:16:08 -0400] "GET /z9x8c7v6b5-debug-trigger-silverskybox.com HTTP/1.1" 404 462 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
34.32.200.155 - - [10/Oct/2026:21:16:08 -0400] "GET /manual HTTP/1.1" 404 462 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
34.32.200.155 - - [10/Oct/2026:21:16:08 -0400] "GET /75gu2obnmdekf2l1qpbw HTTP/1.1" 404 462 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm)"
34.32.200.155 - - [10/Oct/2026:21:16:08 -0400] "POST /graphql HTTP/1.1" 404 4418 "https://silverskybox.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
34.32.200.155 - - [10/Oct/2026:21:16:08 -0400] "GET /signin HTTP/1.1" 404 4418 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
kbeezie
2026-10-11 00:37:01
(10 hours ago)
2026/10/10 19:50:07 [error] 707695#707695: *636517 access forbidden by rule, client: 34.32.200.155, ...
show more
2026/10/10 19:50:07 [error] 707695#707695: *636517 access forbidden by rule, client: 34.32.200.155, server: kbeezie.com, request: "GET /.bashrc HTTP/1.1", host: "kbeezie.com"
2026/10/10 20:32:09 [error] 707695#707695: *639194 access forbidden by rule, client: 34.32.200.155, server: kbeezie.com, request: "GET /@fs/proc/self/cwd/.env?raw?? HTTP/1.1", host: "kbeezie.com"
2026/10/10 20:37:01 [error] 707695#707695: *639774 access forbidden by rule, client: 34.32.200.155, server: kbeezie.com, request: "GET /@fs/..%252f..%252f..%252f..%252f..%252fproc/self/environ?raw?? HTTP/1.1", host: "kbeezie.com"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-10-10 23:51:58
(11 hours ago)
Repeated exploit attempts, for example: /core/.env /.env (HTTP/2.0 port 443, user agent: "Mozilla/5. ...
show more
Repeated exploit attempts, for example: /core/.env /.env (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)")
show less
Web App Attack
๐ซ๐ฎ
sibahota
2026-10-10 23:39:51
(11 hours ago)
34.32.200.155 - - [10/Oct/2026:23:39:50 +0000] jntjewellers.com "GET /secrets.env HTTP/1.1" 403 37 0 ...
show more
34.32.200.155 - - [10/Oct/2026:23:39:50 +0000] jntjewellers.com "GET /secrets.env HTTP/1.1" 403 37 0.000 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot" - - - "http://jntjewellers.com"
...
show less
Web App Attack
Brute-Force