๐ซ๐ท
SpaceHost-Server
2026-10-09 22:22:50
(11 hours ago)
Brute-Force
Web App Attack
๐บ๐ธ
[email protected]
2026-10-08 22:52:54
(1 day ago)
CrowdSec ban: crowdsecurity/http-crawl-non_statics (duration: 43h0m23s)
Web App Attack
Anonymous
2026-10-08 08:08:57
(2 days ago)
IP matched detection query more than 2 hosts and only bad rq long ban.
Brute-Force
Web App Attack
Hacking
๐ช๐ธ
el-brujo
2026-10-08 06:49:17
(2 days ago)
08/Oct/2026:08:49:16.884555 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
08/Oct/2026:08:49:16.884555 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 34.48.223.163] ModSecurity: Warning. Pattern match "(?i)(?:\\\\\\\\x5c|(?:%(?:c(?:0%(?:[2aq]f|5c|9v)|1%(?:[19p]c|8s|af))|2(?:5(?:c(?:0%25af|1%259c)|2f|5c)|%46|f)|(?:(?:f(?:8%8)?0%8|e)0%80%a|bg%q)f|%3(?:2(?:%(?:%6|4)6|F)|5%%63)|u(?:221[56]|002f|EFC8|F025)|1u|5c)|0x(?:2f|5c)|\\\\\\\\/))(?:%(?:(?:f(?:(?:c%80|8)%8)?0%8 ..." at REQUEST_URI_RAW. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "48"] [id "930100"] [msg "Path Traversal Attack (/../)"] [data "Matched Data: /..%252f found within REQUEST_URI_RAW: /@fs/..%252f..%252f..%252f..%252f..%252fproc/self/environ?raw??"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [hostname "grafana.elhacker.net"] [uri "/@fs/..%2f..%2f..%2f..%2f..%
...
show less
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2026-10-08 06:11:58
(2 days ago)
34.48.223.163 - - [08/Oct/2026:08:11:57 +0200] "GET /z9x8c7v6b5-debug-trigger-foro.elhacker.net HTTP ...
show more
34.48.223.163 - - [08/Oct/2026:08:11:57 +0200] "GET /z9x8c7v6b5-debug-trigger-foro.elhacker.net HTTP/2.0" 404 4620 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1)"
34.48.223.163 - - [08/Oct/2026:08:11:57 +0200] "GET /uv3h0ahj3l7dk34rawvk HTTP/2.0" 404 4620 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)"
34.48.223.163 - - [08/Oct/2026:08:11:57 +0200] "POST /lib/terminal-xhr.php HTTP/2.0" 404 4620 "-" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)"
34.48.223.163 - - [08/Oct/2026:08:11:57 +0200] "GET /.vite/manifest.json HTTP/2.0" 404 4620 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
...
show less
Web App Attack
Hacking
๐ง๐ท
dominioz
2026-10-08 02:09:44
(2 days ago)
2026-10-08 02:09:15 GET /build../.env - - 34.48.223.163 HTTP/2 Mozilla/5.0+(compatible;+xAI-Grok/1.0 ...
show more
2026-10-08 02:09:15 GET /build../.env - - 34.48.223.163 HTTP/2 Mozilla/5.0+(compatible;+xAI-Grok/1.0;++https://x.ai/) - 301 566
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
abuse-opdc
2026-10-08 00:30:59
(2 days ago)
Malicious HTTP requests matching injection/exploit signatures.
Web App Attack
Brute-Force
Anonymous
2026-10-07 23:54:29
(2 days ago)
Aggressive web scan
Web App Attack
๐ฉ๐ช
macrob
2026-10-07 22:36:51
(2 days ago)
2026/10/07 22:36:50 [error] 815811#815811: *27959308 access forbidden by rule, client: 34.48.223.163 ...
show more
2026/10/07 22:36:50 [error] 815811#815811: *27959308 access forbidden by rule, client: 34.48.223.163, server: binixo.ro, request: "GET /firebase-admin.json HTTP/2.0", host: "academy.binixo.ro"
2026/10/07 22:36:50 [error] 815811#815811: *27959308 access forbidden by rule, client: 34.48.223.163, server: binixo.ro, request: "GET /public/admin.json HTTP/2.0", host: "academy.binixo.ro"
2026/10/07 22:36:50 [error] 815811#815811: *27959308 access forbidden by rule, client: 34.48.223.163, server: binixo.ro, request: "GET /config/firebase-admin.json HTTP/2.0", host: "academy.binixo.ro"
...
show less
Web App Attack
๐ธ๐ฌ
Cloudkul Cloudkul
2026-10-07 22:36:26
(2 days ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
๐ง๐ท
radardatelecom
2026-10-07 22:27:02
(2 days ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-07 22:23:20
(2 days ago)
[cb-06al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail ngin ...
show more
[cb-06al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail nginx-404. Example: 34.48.223.163 - - [08/Oct/2026:00:15:13 +0200] "GET /z9x8c7v6b5-debug-trigger-zusterinhuis.be HTTP/2.0" 404 13462 "-" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"
34.48.223.163 - - [08/Oct/2026:00:15:13 +0200] "GET /kuoxsqh0qv00mgo8g68s HTTP/2.0" 404 13462 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )"
34.48.223.163 - - [08/Oct/2026:00:15:15 +0200] "POST /graphql HTTP/2.0" 404 13462 "https://zusterinhuis.be" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
34.48.223.163 - - [08/Oct/2026:00:15:15 +0200] "GET /api/uploads/%2e%2e%2f%2e%2e%2f.env HTTP/2.0" 404 1338 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://develop
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-10-07 22:23:18
(2 days ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.48.223.163 (US/United States/163.223.4 ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.48.223.163 (US/United States/163.223.48.34.bc.googleusercontent.com)
show less
Hacking
๐ซ๐ท
SpaceHost-Server
2026-10-07 22:22:45
(2 days ago)
Brute-Force
Web App Attack
๐ณ๐ฑ
debestelapp
2026-10-07 22:15:08
(2 days ago)
Web App Attack