๐ซ๐ท
SpaceHost-Server
2026-10-06 22:19:41
(5 hours ago)
Brute-Force
Web App Attack
๐ง๐ท
radardatelecom
2026-10-05 22:27:04
(1 day ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-10-05 22:17:20
(1 day ago)
Brute-Force
Web App Attack
๐ซ๐ฎ
NoaQT
2026-10-05 21:46:51
(1 day ago)
2026-10-05T21:46:50.723331+00:00 ingress-1 haproxy[275]: 34.90.124.195:32788 [05/Oct/2026:21:46:50.7 ...
show more
2026-10-05T21:46:50.723331+00:00 ingress-1 haproxy[275]: 34.90.124.195:32788 [05/Oct/2026:21:46:50.723] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 57/57/0/0/0 0/0 "GET https://gestion.benga.es/resources/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/2.0"
2026-10-05T21:46:50.723647+00:00 ingress-1 haproxy[275]: 34.90.124.195:32788 [05/Oct/2026:21:46:50.723] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 57/57/0/0/0 0/0 "GET https://gestion.benga.es/static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/2.0"
2026-10-05T21:46:50.814610+00:00 ingress-1 haproxy[275]: 34.90.124.195:32788 [05/Oct/2026:21:46:50.813] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 57/57/0/0/0 0/0 "GET https://gestion.benga.es/keys/service-account.json HTTP/2.0"
2026-10-05T21:46:50.825502+00:00 ingress-1 haproxy[275]: 34.90.124.195:32788 [05/Oct/2026:21:46:50.825] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 57/57/0/0/0 0/0 "GET https://gestion.benga.es/sa.j
...
show less
DDoS Attack
๐ช๐ธ
robotstxt
2026-10-05 21:31:17
(1 day ago)
34.90.124.195 - - [05/Oct/2026:21:31:08 +0000] "GET /wp-content/cache/autoptimize/js/autoptimize_a5e ...
show more
34.90.124.195 - - [05/Oct/2026:21:31:08 +0000] "GET /wp-content/cache/autoptimize/js/autoptimize_a5ee964250698db33ff358064ab819e4.js HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:21:31:09 +0000] "GET /wp-includes/js/dist/hooks.min.js HTTP/2.0" 403 14885 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:21:31:09 +0000] "GET /wp-includes/js/dist/i18n.min.js HTTP/2.0" 403 14844 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:21:31:09 +0000] "GET /build/manifest.json HTTP/2.0" 403 14865 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML,
...
show less
Web App Attack
๐ฉ๐ช
macrob
2026-10-05 20:52:51
(1 day ago)
2026/10/05 20:52:50 [error] 3671658#3671658: *20286993 access forbidden by rule, client: 34.90.124.1 ...
show more
2026/10/05 20:52:50 [error] 3671658#3671658: *20286993 access forbidden by rule, client: 34.90.124.195, server: fn.binixo.es, request: "GET /.htpasswd HTTP/2.0", host: "fn.binixo.es"
2026/10/05 20:52:50 [error] 3671660#3671660: *20286973 access forbidden by rule, client: 34.90.124.195, server: fn.binixo.es, request: "GET /.ssh/config HTTP/2.0", host: "fn.binixo.es"
2026/10/05 20:52:50 [error] 3671660#3671660: *20286973 access forbidden by rule, client: 34.90.124.195, server: fn.binixo.es, request: "GET /.ssh/id_ed25519 HTTP/2.0", host: "fn.binixo.es"
...
show less
Web App Attack
๐ณ๐ฑ
javierin
2026-10-05 19:09:54
(1 day ago)
34.90.124.195 - enterprise.mamaexperta.es - - [05/Oct/2026:19:09:54 +0000] "GET / HTTP/2.0" 200 0 "- ...
show more
34.90.124.195 - enterprise.mamaexperta.es - - [05/Oct/2026:19:09:54 +0000] "GET / HTTP/2.0" 200 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
34.90.124.195 - enterprise.mamaexperta.es - - [05/Oct/2026:19:09:54 +0000] "POST / HTTP/2.0" 200 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot"
...
show less
Web App Attack
Hacking
๐ช๐ธ
robotstxt
2026-10-05 18:28:25
(1 day ago)
34.90.124.195 - - [05/Oct/2026:18:28:04 +0000] "GET / HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Macintosh; ...
show more
34.90.124.195 - - [05/Oct/2026:18:28:04 +0000] "GET / HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:18:28:04 +0000] "GET /auth HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:18:28:04 +0000] "GET /sign-in HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:18:28:04 +0000] "GET /users/login HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:18:28:0
...
show less
Web App Attack
๐ช๐ธ
robotstxt
2026-10-05 17:31:32
(1 day ago)
34.90.124.195 - - [05/Oct/2026:17:31:28 +0000] "GET /static/../../../a/../../../../proc/self/environ ...
show more
34.90.124.195 - - [05/Oct/2026:17:31:28 +0000] "GET /static/../../../a/../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:17:31:28 +0000] "GET /static/../../../a/../../../../.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:17:31:28 +0000] "GET /api/attachments/img/avatar/..%2F..%2F..%2F..%2F..%2Fproc%2Fself%2Fenviron HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:17:31:29 +0000] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:17:31:29 +0000] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
...
show less
Web Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 14:21:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.90.124.195 (195.124.90.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.90.124.195 (195.124.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 10:21:13.940182 2026] [security2:error] [pid 28740:tid 28740] [client 34.90.124.195:54438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.xarq.es"] [uri "/%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env"] [unique_id "asOyWezGd-27TMCQ4kut_AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 14:04:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.90.124.195 (195.124.90.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.90.124.195 (195.124.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 10:04:13.208768 2026] [security2:error] [pid 264152:tid 264159] [client 34.90.124.195:46918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.nesso.es"] [uri "/.env.example"] [unique_id "asOuXTH6d99irJBZEtDZjwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 13:37:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.90.124.195 (195.124.90.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.90.124.195 (195.124.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 09:37:05.217458 2026] [security2:error] [pid 14907:tid 14907] [client 34.90.124.195:37162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.aticom.es"] [uri "/.htpasswd"] [unique_id "asOoAW6pgkyWr5672OArOAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-10-05 11:38:43
(1 day ago)
34.90.124.195 - - [05/Oct/2026:11:38:36 +0000] "GET /public/plugins/text/../../../../../../../../pro ...
show more
34.90.124.195 - - [05/Oct/2026:11:38:36 +0000] "GET /public/plugins/text/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:11:38:37 +0000] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:11:38:37 +0000] "GET /static/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:11:38:40 +0000] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:11:38:40 +0000] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
...
show less
Web Spam
Web App Attack
Anonymous
2026-10-05 10:35:31
(1 day ago)
Fail2Ban Log Report 34.90.124.195 - - [05/Oct/2026:12:35:28 +0200] "GET /api/proc/self/environ HTTP/ ...
show more
Fail2Ban Log Report 34.90.124.195 - - [05/Oct/2026:12:35:28 +0200] "GET /api/proc/self/environ HTTP/2.0" 403 1813 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)" "34.90.124.195"
34.90.124.195 - - [05/Oct/2026:12:35:29 +0200] "GET /api/system/fileView?file=/proc/self/environ HTTP/2.0" 403 1813 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)" "34.90.124.195"
34.90.124.195 - [05/Oct/2026:12:35:28 +0200] "GET /api/proc/self/environ HTTP/2.0" 403 1813 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)" "2.51" "34.90.124.195"
34.90.124.195 - [05/Oct/2026:12:35:29 +0200] "GET /api/system/fileView?file=/proc/self/environ HTTP/2.0" 403 1813 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)" "2.51" "34.90.124.195"
...
show less
Hacking
Brute-Force
Web App Attack
๐ช๐ธ
robotstxt
2026-10-05 10:07:15
(1 day ago)
34.90.124.195 - - [05/Oct/2026:10:07:11 +0000] "GET /uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.en ...
show more
34.90.124.195 - - [05/Oct/2026:10:07:11 +0000] "GET /uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:10:07:11 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:10:07:11 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:10:07:11 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
34.90.124.195 - - [05/Oct/2026:10:07:11 +0000] "GET /%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.90.124.195"
...
show less
Web Spam
Web App Attack