๐ฒ๐ฝ
octageeks.com
2026-09-23 04:08:15
(18 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
Anonymous
2026-09-22 20:57:50
(1 day ago)
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /auth/login HTTP/1.1" 404 53586
35.194.151.202 ...
show more
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /auth/login HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /signup HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /users/login HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /signin HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /auth HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /5a15xvi40dkb81v4tbon HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /account/login HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /register HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /z9x8c7v6b5-debug-trigger-www.lecontrarien.com HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:22:57:47 +0200] "GET /sign-in HTTP/1.1" 404 53586
...
show less
Web Spam
Web App Attack
๐ช๐ธ
robotstxt
2026-09-22 19:20:16
(1 day ago)
35.194.151.202 - - [22/Sep/2026:19:20:06 +0000] "GET /.env.local?raw HTTP/2.0" 403 49650 "https://ww ...
show more
35.194.151.202 - - [22/Sep/2026:19:20:06 +0000] "GET /.env.local?raw HTTP/2.0" 403 49650 "https://www.economipedia.com/.env.local?raw" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)" "-"
35.194.151.202 - - [22/Sep/2026:19:20:07 +0000] "GET /.env.production?raw HTTP/2.0" 403 49577 "https://www.economipedia.com/.env.production?raw" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)" "-"
35.194.151.202 - - [22/Sep/2026:19:20:07 +0000] "GET /.env.development?raw HTTP/2.0" 403 49644 "https://www.economipedia.com/.env.development?raw" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)" "-"
35.194.151.202 - - [22/Sep/2026:19:20:07 +0000] "GET /.env.development?import&raw HTTP/2.0" 403 49643 "https://www.economipedia.com/.env.development?import&raw" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)" "-"
35.194.151.202 - - [22/Sep/2026:19:20:07 +0000] "GET /@fs/app/.env?import&raw?? HTTP/2.0" 403
...
show less
Web App Attack
๐บ๐ธ
kosada.com
2026-09-22 18:36:02
(1 day ago)
Repeated requests for suspicious nonexistent URLs, for example: /webpack-stats.json (HTTP/2.0 port 4 ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /webpack-stats.json (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36")
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 18:30:39
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 35.194.151.202 (202.151.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.194.151.202 (202.151.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:30:35.725868 2026] [security2:error] [pid 451:tid 451] [client 35.194.151.202:42810] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||alanmariotti.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "alanmariotti.com"] [uri "/z9x8c7v6b5-debug-trigger-alanmariotti.com"] [unique_id "arLJS34mg1JB-p7rI8dWfQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 18:30:04
(1 day ago)
CrowdSec decision: crowdsecurity/http-probing (origin: crowdsec)
Web App Attack
๐ซ๐ฎ
NoaQT
2026-09-22 18:16:01
(1 day ago)
2026-09-22T18:16:00.041769+00:00 ingress-1 haproxy[16887]: 35.194.151.202:56938 [22/Sep/2026:18:16:0 ...
show more
2026-09-22T18:16:00.041769+00:00 ingress-1 haproxy[16887]: 35.194.151.202:56938 [22/Sep/2026:18:16:00.041] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 70/70/0/0/0 0/0 "GET https://benigarautomocion.com/appsettings.Development.json HTTP/2.0"
2026-09-22T18:16:00.781216+00:00 ingress-1 haproxy[16887]: 35.194.151.202:56938 [22/Sep/2026:18:16:00.780] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 70/70/0/0/0 0/0 "GET https://benigarautomocion.com/settings.py HTTP/2.0"
2026-09-22T18:16:00.842539+00:00 ingress-1 haproxy[16887]: 35.194.151.202:56938 [22/Sep/2026:18:16:00.842] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 70/70/0/0/0 0/0 "GET https://benigarautomocion.com/web.config HTTP/2.0"
2026-09-22T18:16:00.842780+00:00 ingress-1 haproxy[16887]: 35.194.151.202:56938 [22/Sep/2026:18:16:00.842] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 70/70/0/0/0 0/0 "GET https://benigarautomocion.com/local.settings.json HTTP/2.0"
2026-09-22T18:16:00.842802+0
...
show less
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:49:28
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 35.194.151.202 (202.151.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.194.151.202 (202.151.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:49:24.964877 2026] [security2:error] [pid 6700:tid 6700] [client 35.194.151.202:60624] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||darkalleyproductions.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "darkalleyproductions.com"] [uri "/z9x8c7v6b5-debug-trigger-darkalleyproductions.com"] [unique_id "arK_pEH5tYoEUB_6HhASbAAAABk"], referer: http://darkalleyproductions.com/z9x8c7v6b5-debug-trigger-darkalleyproductions.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 17:45:42
(1 day ago)
XSS Attempt
Hacking
๐ช๐ธ
robotstxt
2026-09-22 17:38:24
(1 day ago)
35.194.151.202 - - [22/Sep/2026:17:37:48 +0000] "-" 400 193 "-" "-" "-"
35.194.151.202 - - [22/Sep/2 ...
show more
35.194.151.202 - - [22/Sep/2026:17:37:48 +0000] "-" 400 193 "-" "-" "-"
35.194.151.202 - - [22/Sep/2026:17:37:48 +0000] "-" 400 193 "-" "-" "-"
35.194.151.202 - - [22/Sep/2026:17:37:48 +0000] "-" 400 193 "-" "-" "-"
35.194.151.202 - - [22/Sep/2026:17:37:48 +0000] "-" 400 193 "-" "-" "-"
35.194.151.202 - - [22/Sep/2026:17:37:49 +0000] "-" 400 193 "-" "-" "-"
...
show less
Web Spam
Web App Attack
๐จ๐ฆ
Mediashaker
2026-09-22 17:28:16
(1 day ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 35.194.151.202 (TW/T ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 35.194.151.202 (TW/Taiwan/202.151.194.35.bc.googleusercontent.com)
show less
Bad Web Bot
๐บ๐ธ
Power Ca
2026-09-22 16:05:35
(1 day ago)
35.194.151.202 - - [22/Sep/2026:16:05:30 +0000] "GET /build/manifest.json HTTP/2.0" 404 185 "-" "Moz ...
show more
35.194.151.202 - - [22/Sep/2026:16:05:30 +0000] "GET /build/manifest.json HTTP/2.0" 404 185 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"
35.194.151.202 - - [22/Sep/2026:16:05:30 +0000] "GET /t0am9l9eo9ddnsdpoc55 HTTP/2.0" 404 123 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
35.194.151.202 - - [22/Sep/2026:16:05:30 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 404 185 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"
35.194.151.202 - - [22/Sep/2026:16:05:30 +0000] "GET /edlrr6w1beqsz7yvemo0 HTTP/2.0" 404 123 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)"
35.194.151.202 - - [22/Sep/2026:16:05:30 +0000] "GET /.vite/manifest.json HTTP/2.0" 404 185 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.3
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 15:58:15
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 35.194.151.202 (202.151.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.194.151.202 (202.151.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:58:07.940796 2026] [security2:error] [pid 28626:tid 28639] [client 35.194.151.202:38746] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||leadingedgesupply.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "leadingedgesupply.com"] [uri "/z9x8c7v6b5-debug-trigger-leadingedgesupply.com"] [unique_id "arKlj2Tn39H8zON2YPF0ewAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 14:30:40
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 35.194.151.202 (202.151.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.194.151.202 (202.151.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 10:30:32.254147 2026] [security2:error] [pid 2428:tid 2428] [client 35.194.151.202:52712] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lebarca.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lebarca.com"] [uri "/z9x8c7v6b5-debug-trigger-lebarca.com"] [unique_id "arKRCJeSZ8tYy8jOa3VjUgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 14:13:48
(1 day ago)
35.194.151.202 - - [22/Sep/2026:16:13:45 +0200] "GET /secure HTTP/1.1" 404 53586
35.194.151.202 - - ...
show more
35.194.151.202 - - [22/Sep/2026:16:13:45 +0200] "GET /secure HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:45 +0200] "GET /users/login HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:45 +0200] "GET /xir39d96t5x4h1w4a0uv HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:45 +0200] "GET /auth HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:46 +0200] "GET /z9x8c7v6b5-debug-trigger-lecontrarien.com HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:45 +0200] "GET /signin HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:45 +0200] "GET /auth/login HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:46 +0200] "GET /signup HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:46 +0200] "GET /sign-in HTTP/1.1" 404 53586
35.194.151.202 - - [22/Sep/2026:16:13:45 +0200] "GET /account/login HTTP/1.1" 404 53586
...
show less
Web Spam
Web App Attack