๐ฎ๐น
paoloartone
2026-10-07 05:00:26
(1 day ago)
Reverse proxy TCO: 791 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 06/10/202 ...
show more
Reverse proxy TCO: 791 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 06/10/2026.
show less
Web App Attack
Hacking
Port Scan
Anonymous
2026-10-06 20:31:41
(1 day ago)
104.197.143.107 - - [06/Oct/2026:22:31:28 +0200] "GET /__/firebase/init.json HTTP/2.0" 403 272 "-" " ...
show more
104.197.143.107 - - [06/Oct/2026:22:31:28 +0200] "GET /__/firebase/init.json HTTP/2.0" 403 272 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot"
show less
Web Spam
Blog Spam
Brute-Force
Web App Attack
๐ซ๐ท
dwmp
2026-10-06 20:12:11
(1 day ago)
[06/Oct/2026:22:12:02.841197 +0200] asVWEsPPPCEgUBcMDPX8kQAAAAc 104.197.143.107 46926 38.242.227.117 ...
show more
[06/Oct/2026:22:12:02.841197 +0200] asVWEsPPPCEgUBcMDPX8kQAAAAc 104.197.143.107 46926 38.242.227.117 7081
[06/Oct/2026:22:12:02.841671 +0200] asVWElKQgkA7J_TNvd3EIgAAAEU 104.197.143.107 46906 38.242.227.117 7081
[06/Oct/2026:22:12:02.842616 +0200] asVWEsPPPCEgUBcMDPX8kgAAAAQ 104.197.143.107 46934 38.242.227.117 7081
...
show less
Brute-Force
SSH
๐ซ๐ท
Zundapper
2026-10-06 19:20:27
(1 day ago)
104.197.143.107 - - [06/Oct/2026:21:20:27 +0200] "GET /webpack-stats.json HTTP/2.0" 404 2334 "-" "Mo ...
show more
104.197.143.107 - - [06/Oct/2026:21:20:27 +0200] "GET /webpack-stats.json HTTP/2.0" 404 2334 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
104.197.143.107 - - [06/Oct/2026:21:20:27 +0200] "GET /asset-manifest.json HTTP/2.0" 404 2334 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
104.197.143.107 - - [06/Oct/2026:21:20:27 +0200] "GET /f82r1w05reywm3wuo57w HTTP/2.0" 404 2334 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)"
...
show less
Web App Attack
Port Scan
Anonymous
2026-10-06 18:29:15
(1 day ago)
104.197.143.107 - - [06/Oct/2026:18:29:15 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e ...
show more
104.197.143.107 - - [06/Oct/2026:18:29:15 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/2.0" 404 309 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)"
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
manuel79
2026-10-06 18:21:10
(1 day ago)
PrestaShop Security Module: suspicious probe path detected (/.env)
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-06 17:54:02
(1 day ago)
[cb-16al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-16al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 104.197.143.107 - - [06/Oct/2026:19:53:45 +0200] "GET /dist../.env HTTP/2.0" 404 1338 "-" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MyGlobalFlowers
2026-10-06 17:47:07
(1 day ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-10-06 17:27:59
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 104.197.143.107 (US/United States/107.1 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 104.197.143.107 (US/United States/107.143.197.104.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
maxpower
2026-10-06 16:59:14
(2 days ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 104.197.143.107 (US/United States/107.14 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 104.197.143.107 (US/United States/107.143.197.104.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 104.197.143.107 - - [06/Oct/2026:18:59:08 +0200] "GET /__vite_rsc_findSourceMapURL?filename=file:///root/.aws/credentials&environmentName=rsc HTTP/2.0" 403 0 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "104.197.143.107" host=masterlabvideoproduzioni.it
show less
Port Scan
๐ฎ๐น
CoreTech srl
2026-10-06 15:28:06
(2 days ago)
CloudLinux/Plesk alert - host=cloudlinux dominio=ircsport.it ip=104.197.143.107 richieste=88 rischio ...
show more
CloudLinux/Plesk alert - host=cloudlinux dominio=ircsport.it ip=104.197.143.107 richieste=88 rischio=ALTO score=17 motivi=richieste_elevate,diverse_uri_uniche,molti_404,errori_5xx,ua_script_bot,alcune_post,path_sospetti,api cat_id=21,19 periodo=10min
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
maxpower
2026-10-06 15:22:24
(2 days ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 104.197.143.107 (US/United States/107.14 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 104.197.143.107 (US/United States/107.143.197.104.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 104.197.143.107 - - [06/Oct/2026:17:22:17 +0200] "GET /.aws/credentials HTTP/2.0" 403 1232 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" "104.197.143.107" host=insegnesolution.it
show less
Port Scan
๐ฉ๐ช
AbuseBaer
2026-10-06 14:56:57
(2 days ago)
access attempt detected by IDS script (C)
Web App Attack
๐ฉ๐ช
Viveronese
2026-10-06 14:52:35
(2 days ago)
HTTP vulnerability scanning
Web App Attack
Anonymous
2026-10-06 14:34:56
(2 days ago)
Flagged as abuse by IisGuard automated detection (tier L5, score 90/100). Reasons: Reputation=1, Bad ...
show more
Flagged as abuse by IisGuard automated detection (tier L5, score 90/100). Reasons: Reputation=1, BadPath=24,6, Rate=20, Diversity=20, CanaryOverride=90.
show less
Web App Attack
DDoS Attack
Bad Web Bot