๐น๐ผ
kk_it_man
2026-10-08 05:26:04
(5 hours ago)
hack
Hacking
๐ซ๐ฎ
robotstxt
2026-10-08 04:31:20
(6 hours ago)
34.81.42.7 - - [08/Oct/2026:04:30:42 +0000] "GET /.ssh/id_rsa HTTP/2.0" 403 0 "-" rt="11.930" "Mozil ...
show more
34.81.42.7 - - [08/Oct/2026:04:30:42 +0000] "GET /.ssh/id_rsa HTTP/2.0" 403 0 "-" rt="11.930" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)" "-" edge="34.81.42.7" h="directorio.componentescalzado.com" sn="directorio.componentescalzado.com" ru="/.ssh/id_rsa" u="/index.php" ucs="-" ua="unix:/var/run/php/ccalzadodir82.sock" us="-" uct="0.000" urt="11.931"
34.81.42.7 - - [08/Oct/2026:04:30:42 +0000] "GET /.ssh/id_ed25519 HTTP/2.0" 403 0 "-" rt="11.942" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "-" edge="34.81.42.7" h="directorio.componentescalzado.com" sn="directorio.componentescalzado.com" ru="/.ssh/id_ed25519" u="/index.php" ucs="-" ua="unix:/var/run/php/ccalzadodir82.sock" us="-" uct="0.000" urt="11.943"
34.81.42.7 - - [08/Oct/2026:04:30:42 +0000] "GET /.ssh/config HTTP/2.0" 403 0 "-" rt="11.558" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)" "-" edge="34.81.42.7" h="directorio.componentescalzado.com" sn="directorio.compon
...
show less
Web App Attack
Anonymous
2026-10-08 04:07:02
(6 hours ago)
IP matched detection query more than 2 hosts and only bad rq long ban.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
abuse-opdc
2026-10-08 00:10:59
(10 hours ago)
Malicious HTTP requests matching injection/exploit signatures.
Web App Attack
Brute-Force
Anonymous
2026-10-07 23:30:09
(11 hours ago)
Aggressive web scan
Web App Attack
๐ง๐ท
dermatovirtual
2026-10-07 22:59:39
(11 hours ago)
Dermato Virtual CSIRT: Malicious web exploit/scanning probes against app.dermatovirtual.com.br (Web ...
show more
Dermato Virtual CSIRT: Malicious web exploit/scanning probes against app.dermatovirtual.com.br (Web Server Ports 80/443). 7 unauthorized requests recorded between 2026-10-07 22:58:00 UTC and 2026-10-07 22:58:05 UTC (rate: ~7 req/min). Edge perimeter firewall drop active.
Log sample:
[2026-10-07 22:58:00 UTC] IP: 34.81.42.7 - W3C IIS (Port 443): GET /dashboard/.env -> HTTP 404 [CLIENT: 34.81.42.7]
[2026-10-07 22:58:00 UTC] IP: 34.81.42.7 - W3C IIS (Port 443): GET /settings/.env -> HTTP 404 [CLIENT: 34.81.42.7]
[2026-10-07 22:58:01 UTC] IP: 34.81.42.7 - W3C IIS (Port 443): GET /.env -> HTTP 404 [CLIENT: 34.81.42.7]
show less
Bad Web Bot
Web App Attack
๐ง๐ท
radardatelecom
2026-10-07 22:27:03
(12 hours ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-10-07 22:23:09
(12 hours ago)
Brute-Force
Web App Attack
๐ณ๐ฑ
melroy89
2026-10-07 21:59:27
(12 hours ago)
34.81.42.7 - - [07/Oct/2026:23:58:48 +0200] "GET /@fs/var/run/secrets/kubernetes.io/serviceaccount/ ...
show more
34.81.42.7 - - [07/Oct/2026:23:58:48 +0200] "GET /@fs/var/run/secrets/kubernetes.io/serviceaccount/token?raw?? HTTP/1.1" 403 9 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot" "academy.melroy.org" 0.000
34.81.42.7 - - [07/Oct/2026:23:58:50 +0200] "GET /icons/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/proc/self/environ HTTP/1.1" 400 193 "-" "-" "_" 0.262
34.81.42.7 - - [07/Oct/2026:23:58:51 +0200] "GET /document.php?modulepart=systemtools&file=../conf/conf.php&hashp=shared HTTP/1.1" 403 9 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)" "academy.melroy.org" 0.000
34.81.42.7 - - [07/Oct/2026:23:58:52 +0200] "GET /api/w/admins/jobs_u/get_log_file/../../../../proc/self/environ HTTP/1.1" 403 9 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)" "academy.melroy.org" 0.000
34.81.42.7 - - [07/Oct/2026:23:58:53 +0200] "GET /sa.
...
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-07 21:59:25
(12 hours ago)
[ti-01sc] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[ti-01sc] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 34.81.42.7 - - [07/Oct/2026:23:59:24 +0200] "GET /mc7hf1bbcf8rp4997exc HTTP/2.0" 404 1855 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
34.81.42.7 - - [07/Oct/2026:23:59:24 +0200] "GET /signin HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.81.42.7 - - [07/Oct/2026:23:59:24 +0200] "GET /auth/login HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.81.42.7 - - [07/Oct/2026:23:59:24 +0200] "GET /users/login HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Windows
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-10-07 21:57:41
(13 hours ago)
excessive HTTP 404 errors
Bad Web Bot
๐ณ๐ฑ
Alt255
2026-10-07 21:42:30
(13 hours ago)
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.81.42.7 - - [07/Oct/2026:23:42:30 +0200] "GET /files../.env HTTP/1.1" 404 2101 "-" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-10-07 21:04:44
(13 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.81.42.7 (TW/Taiwan/7.42.81.34.bc.googleuserc ...
show more
(mod_security) mod_security (id:949110) triggered by 34.81.42.7 (TW/Taiwan/7.42.81.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
Anonymous
2026-10-07 20:28:08
(14 hours ago)
Portscan: TCP/8080 (8x), TCP/8443 (10x), TCP/80 (2x), TCP/443 (2x)
Port Scan
๐ณ๐ฑ
mieg
2026-10-07 20:26:22
(14 hours ago)
Web vulnerability probing
Brute-Force
Web App Attack