๐ฒ๐ฝ
octageeks.com
2026-09-21 04:12:14
(2 days ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-20 15:25:19
(2 days ago)
34.83.39.168 - - [20/Sep/2026:11:25:18 -0400] "GET /api/.env HTTP/1.1" 404 5510 "-" "Mozilla/5.0 (co ...
show more
34.83.39.168 - - [20/Sep/2026:11:25:18 -0400] "GET /api/.env HTTP/1.1" 404 5510 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)"
34.83.39.168 - - [20/Sep/2026:11:25:18 -0400] "GET /.aws/credentials HTTP/1.1" 404 5510 "-" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)"
34.83.39.168 - - [20/Sep/2026:11:25:18 -0400] "GET /.env HTTP/1.1" 404 5510 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
...
show less
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-20 15:20:27
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
rh24
2026-09-20 15:20:22
(2 days ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.83.39.168 (US/United States/168.39.83. ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.83.39.168 (US/United States/168.39.83.34.bc.googleusercontent.com)
show less
Hacking
๐บ๐ธ
mnsf
2026-09-20 15:05:13
(3 days ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 15:02:05
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.83.39.168 (168.39.83.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.83.39.168 (168.39.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 11:02:02.338706 2026] [security2:error] [pid 31312:tid 31312] [client 34.83.39.168:33422] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gordonmerrill.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gordonmerrill.com"] [uri "/ssl/server.key"] [unique_id "aq_1algslTKCQp06a7vvsgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-20 14:46:52
(3 days ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
GoodOldTOS
2026-09-20 14:28:55
(3 days ago)
Bad keywords detected in request: /.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 14:14:23
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.83.39.168 (168.39.83.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.83.39.168 (168.39.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:14:18.997912 2026] [security2:error] [pid 20845:tid 20845] [client 34.83.39.168:38108] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||goodfor247.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "goodfor247.com"] [uri "/z9x8c7v6b5-debug-trigger-goodfor247.com"] [unique_id "aq_qOqbZtgW6U6Ssxx9woAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-20 14:00:37
(3 days ago)
Aggressive scanning resulting into 404
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-20 13:54:06
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 34.83.39.168 (168.39.83.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.83.39.168 (168.39.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:53:59.197382 2026] [security2:error] [pid 31304:tid 31304] [client 34.83.39.168:34064] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gatheringsattheschool.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gatheringsattheschool.com"] [uri "/z9x8c7v6b5-debug-trigger-gatheringsattheschool.com"] [unique_id "aq_ld89YEgeR7vN2faat2QAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-20 13:14:58
(3 days ago)
34.83.39.168 - - [20/Sep/2026:09:14:57 -0400] "GET /.aws/credentials HTTP/1.1" 403 6287 "https://ell ...
show more
34.83.39.168 - - [20/Sep/2026:09:14:57 -0400] "GET /.aws/credentials HTTP/1.1" 403 6287 "https://ellcorentals.com/.aws/credentials" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-20 13:10:56
(3 days ago)
34.83.39.168 - - [20/Sep/2026:13:09:56 +0000] "GET /.env HTTP/2.0" 403 49645 "-" "Mozilla/5.0 (compa ...
show more
34.83.39.168 - - [20/Sep/2026:13:09:56 +0000] "GET /.env HTTP/2.0" 403 49645 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)" "-"
34.83.39.168 - - [20/Sep/2026:13:09:57 +0000] "GET /.gitconfig HTTP/2.0" 403 49571 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)" "-"
34.83.39.168 - - [20/Sep/2026:13:09:57 +0000] "GET /.git-credentials HTTP/2.0" 403 49647 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )" "-"
34.83.39.168 - - [20/Sep/2026:13:09:57 +0000] "GET /.env.local HTTP/2.0" 403 49646 "-" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)" "-"
34.83.39.168 - - [20/Sep/2026:13:09:58 +0000] "GET /.env.backup HTTP/2.0" 403 49647 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)" "-"
...
show less
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 12:15:03
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 12:01:38
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.83.39.168 (168.39.83.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.83.39.168 (168.39.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:01:34.619275 2026] [security2:error] [pid 14387:tid 14394] [client 34.83.39.168:60126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bbpuertadelsol.com"] [uri "/.git/config"] [unique_id "aq_LHkUNmF1IAH_2BKC59AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack