Anonymous
2026-09-23 11:47:09
(1 day ago)
34.82.210.37 - - [22/Sep/2026:21:18:36 -0500] "GET /.env?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (com ...
show more
34.82.210.37 - - [22/Sep/2026:21:18:36 -0500] "GET /.env?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)" 104.22.72.39
34.82.210.37 - - [22/Sep/2026:21:18:37 -0500] "GET /.env.local?raw HTTP/1.1" 403 199 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)" 104.22.72.39
34.82.210.37 - - [22/Sep/2026:21:18:37 -0500] "GET /.env?import&raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)" 104.22.72.39
34.82.210.37 - - [22/Sep/2026:21:18:37 -0500] "GET /.env?import&url&inline HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)" 104.22.72.39
34.82.210.37 - - [22/Sep/2026:21:18:37 -0500] "GET /.env.development?raw HTTP/1.1" 403 199 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)" 104.22.72.39
34.82.210.37 - - [22/Sep/2026:21:18:37 -0500] "GET /.env.local?import&raw HTTP/1.1" 403 199 "-"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
π²π½
octageeks.com
2026-09-23 04:18:47
(1 day ago)
Wordpress malicious attack:[octablocked]
Web App Attack
Anonymous
2026-09-23 03:07:02
(1 day ago)
Automated web scanner. Requested suspicious paths: /dist/.vite/manifest.json | /.vite/manifest.json ...
show more
Automated web scanner. Requested suspicious paths: /dist/.vite/manifest.json | /.vite/manifest.json | /build/manifest.json, /dist/manifest.json | /.vite/manifest.json | /build/manifest.json. UTC: 2026-09-23 02:25:20.
show less
Web App Attack
πͺπΈ
robotstxt
2026-09-23 01:49:59
(1 day ago)
34.82.210.37 - - [23/Sep/2026:01:48:58 +0000] "POST / HTTP/2.0" 403 60887 "-" "Mozilla/5.0 (compatib ...
show more
34.82.210.37 - - [23/Sep/2026:01:48:58 +0000] "POST / HTTP/2.0" 403 60887 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36" "-" edge="34.82.210.37"
34.82.210.37 - - [23/Sep/2026:01:48:59 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 34832 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "-" edge="34.82.210.37"
34.82.210.37 - - [23/Sep/2026:01:48:59 +0000] "GET /dist/manifest.json HTTP/2.0" 403 34980 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" "-" edge="34.82.210.37"
34.82.210.37 - - [23/Sep/2026:01:48:59 +0000] "GET /z9x8c7v6b5-debug-trigger-www.outcomes10.com HTTP/2.0" 403 36720 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot" "-" edge="34.82.210.37"
34.82.210.37 - - [23/Sep/2026:01:48:59 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 35
...
show less
Web App Attack
π©πͺ
maxpower
2026-09-23 01:46:53
(1 day ago)
(PERMBLOCK) 34.82.210.37 (US/United States/37.210.82.34.bc.googleusercontent.com) has had more than ...
show more
(PERMBLOCK) 34.82.210.37 (US/United States/37.210.82.34.bc.googleusercontent.com) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
Anonymous
2026-09-23 01:44:21
(1 day ago)
34.82.210.37 - - [23/Sep/2026:09:44:20 +0800] "GET /z9x8c7v6b5-debug-trigger-www.nonsensemakers.com ...
show more
34.82.210.37 - - [23/Sep/2026:09:44:20 +0800] "GET /z9x8c7v6b5-debug-trigger-www.nonsensemakers.com HTTP/1.1" 404 39532 "https://www.nonsensemakers.com/z9x8c7v6b5-debug-trigger-www.nonsensemakers.com" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1)"
34.82.210.37 - - [23/Sep/2026:09:44:20 +0800] "POST /api/v1/validate/code HTTP/1.1" 404 47588 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
34.82.210.37 - - [23/Sep/2026:09:44:20 +0800] "POST /api/v1/validate/code HTTP/1.1" 404 47588 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
34.82.210.37 - - [23/Sep/2026:09:44:20 +0800] "GET /.vite/manifest.json HTTP/1.1" 404 39532 "https://www.nonsensemakers.com/.vite/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
34.82.210.37 - - [23/Sep/2026:09:44:20 +0800] "GET
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
antlac1
2026-09-22 23:34:01
(1 day ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
πͺπΈ
robotstxt
2026-09-22 22:24:15
(1 day ago)
34.82.210.37 - - [22/Sep/2026:22:23:18 +0000] "GET /@fs/src/.env?raw?? HTTP/2.0" 403 49658 "https:// ...
show more
34.82.210.37 - - [22/Sep/2026:22:23:18 +0000] "GET /@fs/src/.env?raw?? HTTP/2.0" 403 49658 "https://www.economipedia.com/@fs/src/.env?raw??" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)" "-"
34.82.210.37 - - [22/Sep/2026:22:23:23 +0000] "GET /media../.env HTTP/2.0" 403 49652 "https://www.economipedia.com/media../.env" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)" "-"
34.82.210.37 - - [22/Sep/2026:22:23:23 +0000] "GET /media../.env HTTP/2.0" 403 49652 "https://www.economipedia.com/media../.env" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)" "-"
34.82.210.37 - - [22/Sep/2026:22:23:24 +0000] "GET /.env.js HTTP/2.0" 403 49649 "https://www.economipedia.com/.env.js" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "-"
34.82.210.37 - - [22/Sep/2026:22:23:24 +0000] "GET /.env.js HTTP/2.0" 403 49649 "https://www.economipedia.com/.env.js" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "-"
...
show less
Web App Attack
πΈπ¬
Cloudkul Cloudkul
2026-09-22 22:18:26
(1 day ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 17:11:55
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:11:48.744917 2026] [security2:error] [pid 28259:tid 28259] [client 34.82.210.37:39508] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||boxfactorylofts.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "boxfactorylofts.com"] [uri "/z9x8c7v6b5-debug-trigger-boxfactorylofts.com"] [unique_id "arK21JOP4aIfbW5U3AGPAgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πͺπΈ
scaballe
2026-09-22 16:06:12
(1 day ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 15:37:03
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:36:59.658690 2026] [security2:error] [pid 21406:tid 21406] [client 34.82.210.37:57450] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||eantonie.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "eantonie.com"] [uri "/z9x8c7v6b5-debug-trigger-eantonie.com"] [unique_id "arKgm-jhY56mlwQM2rFQcgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 14:49:51
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 10:49:45.884419 2026] [security2:error] [pid 12328:tid 12328] [client 34.82.210.37:42858] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||easternimport.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "easternimport.com"] [uri "/z9x8c7v6b5-debug-trigger-easternimport.com"] [unique_id "arKViSI-995kmQuCLcyJiwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 14:00:52
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 10:00:45.924126 2026] [security2:error] [pid 31994:tid 31994] [client 34.82.210.37:46184] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||easyweb-publishing.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "easyweb-publishing.com"] [uri "/z9x8c7v6b5-debug-trigger-easyweb-publishing.com"] [unique_id "arKKDTHcU7xF5Jo9qNNZFAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 12:59:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.82.210.37 (37.210.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 08:59:11.142218 2026] [security2:error] [pid 22147:tid 22147] [client 34.82.210.37:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "echelonts.com"] [uri "/.env"] [unique_id "arJ7nw8ZPp5exnbB9WlQMwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack