๐ง๐ท
radardatelecom
2026-10-09 22:27:03
(1 day ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐บ๐ธ
Charlesiv
2026-10-09 22:07:52
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from NL.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from NL.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/2 (POST method)
Endpoint: /read-document
Timestamp: 2026-10-09T20:28:15Z
Ray ID: a48021766a8828aa
UA: Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)
show less
Bad Web Bot
๐ฉ๐ช
webanyone
2026-10-09 22:07:25
(1 day ago)
Secret file probe | method: GET | path: /static//app/.env | ua: Mozilla/5.0 (compatible; Kimi-Search ...
show more
Secret file probe | method: GET | path: /static//app/.env | ua: Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)
show less
Hacking
Web App Attack
๐ซ๐ท
guillaume illien
2026-10-09 21:03:30
(1 day ago)
34.6.198.178 - - [09/Oct/2026:21:03:25 +0000] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e ...
show more
34.6.198.178 - - [09/Oct/2026:21:03:25 +0000] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:21:03:27 +0000] "GET /public/plugins/text/../../../../../../../../proc/self/environ HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:21:03:28 +0000] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:21:03:29 +0000] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:21:03:29 +0000] "GET /resources/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:21:03:29 +0000] "GET /..%2f.env HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:21:03:29 +0000] "GET /%2e%2e/.env HTTP/1.1" 400 166 "-" "-"
...
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ณ๐ด
Abuse Buster
2026-10-09 21:03:21
(1 day ago)
34.6.198.178 - - [09/Oct/2026:23:03:19 +0200] "GET /z9x8c7v6b5-debug-trigger-api.wingthor.net HTTP/2 ...
show more
34.6.198.178 - - [09/Oct/2026:23:03:19 +0200] "GET /z9x8c7v6b5-debug-trigger-api.wingthor.net HTTP/2.0" 404 22 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)"
34.6.198.178 - - [09/Oct/2026:23:03:19 +0200] "POST /graphql HTTP/2.0" 404 22 "https://api.wingthor.net" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.6.198.178 - - [09/Oct/2026:23:03:19 +0200] "GET /4nr0zitgpaboityl2h8o HTTP/2.0" 404 22 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot"
...
show less
Web App Attack
๐ณ๐ฑ
oisecnet
2026-10-09 21:02:06
(1 day ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-10-09. 2060 requests from thi ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-10-09. 2060 requests from this IP.
show less
Port Scan
Hacking
Web App Attack
๐ธ๐ช
mrmister
2026-10-09 20:35:03
(1 day ago)
Automated report from a Cowrie/web honeypot (no legitimate users). web honeypot: 383 requests. Last ...
show more
Automated report from a Cowrie/web honeypot (no legitimate users). web honeypot: 383 requests. Last seen 2026-10-09 20:08:11 UTC.
show less
Web App Attack
๐ซ๐ท
guillaume illien
2026-10-09 20:10:43
(1 day ago)
34.6.198.178 - - [09/Oct/2026:20:10:38 +0000] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e ...
show more
34.6.198.178 - - [09/Oct/2026:20:10:38 +0000] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:20:10:40 +0000] "GET /static/../../../a/../../../../.env HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:20:10:40 +0000] "GET /static/../../../a/../../../../proc/self/environ HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:20:10:42 +0000] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:20:10:42 +0000] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:20:10:42 +0000] "GET /resources/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 166 "-" "-"
34.6.198.178 - - [09/Oct/2026:20:10:42 +0000] "GET /..%2f.env HTTP/1.1" 400 166 "-" "-"
...
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ฉ๐ช
ghostwarriors
2026-10-09 19:50:10
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-10-09 19:34:09
(1 day ago)
34.6.198.178 - - [09/Oct/2026:21:34:05 +0200] "GET /.env.local?.svg?.wasm?init HTTP/2.0" 404 290 "-" ...
show more
34.6.198.178 - - [09/Oct/2026:21:34:05 +0200] "GET /.env.local?.svg?.wasm?init HTTP/2.0" 404 290 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
34.6.198.178 - - [09/Oct/2026:21:34:05 +0200] "GET /@fs/.env?raw?? HTTP/2.0" 404 290 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)"
34.6.198.178 - - [09/Oct/2026:21:34:05 +0200] "GET /.env.development::$DATA?raw HTTP/2.0" 403 294 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)"
34.6.198.178 - - [09/Oct/2026:21:34:05 +0200] "GET /__vite_rsc_findSourceMapURL?filename=file:///proc/self/environ&environmentName=rsc HTTP/2.0" 403 294 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot"
34.6.198.178 - - [09/Oct/2026:21:34:05 +0200] "GET /__vite_rsc_findSourceMapURL?filename=file:///app/.env&environmentName=rsc HTTP/2.0" 404 290 "-" "Mozilla/5.0 (compatibl
show less
Web App Attack
Hacking
๐บ๐ธ
dot.mg
2026-10-09 19:33:04
(1 day ago)
Bad behaviour
Web Spam
๐ฉ๐ช
Michel Wijnberg
2026-10-09 19:30:15
(1 day ago)
34.6.198.178 - - [09/Oct/2026:19:30:15 +0000] "GET /public../.env HTTP/1.1" 301 162 "-" "DuckAssistB ...
show more
34.6.198.178 - - [09/Oct/2026:19:30:15 +0000] "GET /public../.env HTTP/1.1" 301 162 "-" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
[email protected]
2026-10-09 19:24:18
(1 day ago)
CrowdSec ban: crowdsecurity/http-crawl-non_statics (duration: 71h59m55s)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 19:24:16
(1 day ago)
(mod_security) mod_security (id:210580) triggered by 34.6.198.178 (178.198.6.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210580) triggered by 34.6.198.178 (178.198.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 15:24:11.514274 2026] [security2:error] [pid 28417:tid 28417] [client 34.6.198.178:46212] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:path. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||vccemail.net|F|2"] [data "Matched Data: proc/self/environ found within ARGS:path: /proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "vccemail.net"] [uri "/api/fs/read"] [unique_id "ask_WwJzqnM5zA6eDZNilwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
NotCool
2026-10-09 19:22:39
(1 day ago)
(CRAWLDELAY) Generic Bot Crawl-delay Violation 34.6.198.178 (NL/The Netherlands/178.198.6.34.bc.goog ...
show more
(CRAWLDELAY) Generic Bot Crawl-delay Violation 34.6.198.178 (NL/The Netherlands/178.198.6.34.bc.googleusercontent.com): 50 in the last 3600 secs
show less
Bad Web Bot