๐ณ๐ฑ
Alt255
2026-09-15 15:04:26
(20 hours ago)
[topuurbd] Web exploit scanning: 4 suspicious requests detected by fail2ban jail <name>. Example: 34 ...
show more
[topuurbd] Web exploit scanning: 4 suspicious requests detected by fail2ban jail <name>. Example: 34.51.213.83 - - \[11/Sep/2026:13:27:14 +0200\] "GET /.git/config HTTP/1.1" 307 371 "-" "Mozilla/5.0 \(X11\; Linux x86_64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
34.51.213.83 - - \[11/Sep/2026:13:27:15 +0200\] "GET /.env HTTP/1.1" 307 371 "-" "Mozilla/5.0 \(X11\; Linux x86_64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
34.51.213.83 - - \[11/Sep/2026:13:27:15 +0200\] "GET /.env.local HTTP/1.1" 307 371 "-" "Mozilla/5.0 \(X11\; Linux x86_64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
34.51.213.83 - - \[11/Sep/2026:13:27:15 +0200\] "GET /.env.production HTTP/1.1" 307 371 "-" "Mozilla/5.0 \(X11\; Linu
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐ณ
evicky2002
2026-09-13 06:00:01
(3 days ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐บ๐ธ
rdpguard.com
2026-09-13 00:00:11
(3 days ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-12 17:01:42
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.51.213.83 (83.213.51.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.51.213.83 (83.213.51.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 13:01:37.697900 2026] [security2:error] [pid 22796:tid 22796] [client 34.51.213.83:49788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sabbathschoolguide.com"] [uri "/.git/config"] [unique_id "aqWFcfLZKNviz-DoQ_TXbwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
dominioz
2026-09-12 16:14:25
(3 days ago)
2026-09-12 16:13:21 GET /.env.staging - - 34.51.213.83 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS ...
show more
2026-09-12 16:13:21 GET /.env.staging - - 34.51.213.83 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 615
2026-09-12 16:13:23 GET /.env.development - - 34.51.213.83 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 623
2026-09-12 16:13:23 GET /.env.test - - 34.51.213.83 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 609
2026-09-12 16:13:24 GET /.env.remote - - 34.51.213.83 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 613
2026-09-12 16:13:26 GET /.env.bak - - 34.51.213.83 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 607
2026-09-12 16:13:26 GET /.env.backup - - 34.
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-09-12 15:28:04
(3 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-12 15:13:37
(3 days ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Site.eu
2026-09-12 13:50:04
(3 days ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
FeG Deutschland
2026-09-12 13:45:45
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-09-12 13:08:44
(3 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-09-12 12:53:09
(3 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-09-12 10:13:54
(4 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: SE, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: SE, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
spot
2026-09-12 09:57:10
(4 days ago)
34.51.213.83 - - [12/Sep/2026:10:57:10 +0100] "GET /.git/config HTTP/1.1" 404 543 "-" "Mozilla/5.0 ( ...
show more
34.51.213.83 - - [12/Sep/2026:10:57:10 +0100] "GET /.git/config HTTP/1.1" 404 543 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
๐ฉ๐ช
lolyay
2026-09-12 05:51:02
(4 days ago)
34.51.213.83 - - [12/Sep/2026:05:51:01 +0000] "GET /.git/config HTTP/1.1" 404 192 "-" "Mozilla/5.0 ( ...
show more
34.51.213.83 - - [12/Sep/2026:05:51:01 +0000] "GET /.git/config HTTP/1.1" 404 192 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.51.213.83 - - [12/Sep/2026:05:51:01 +0000] "GET /.env HTTP/1.1" 403 185 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
onlyops.app
2026-09-12 05:00:09
(4 days ago)
Web application firewall (ModSecurity) detected malicious traffic | detected by Fail2Ban (plesk-mods ...
show more
Web application firewall (ModSecurity) detected malicious traffic | detected by Fail2Ban (plesk-modsecurity jail) | onlyops.app
show less
Exploited Host