๐ญ๐บ
DumaNet
2026-10-09 04:22:00
(1 day ago)
Web app attack attempts, scanning for vulnerability.
Date: 2026 Oct 08. 13:06:12
Source IP: 35.194 ...
show more
Web app attack attempts, scanning for vulnerability.
Date: 2026 Oct 08. 13:06:12
Source IP: 35.194.227.47
Portion of the log(s):
35.194.227.47 - [08/Oct/2026:13:06:12 +0200] "GET /api/fs/read?allowOutsideWorkspace=true&path=/app/.env HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)"
35.194.227.47 - [08/Oct/2026:13:06:12 +0200] "GET /.dockerenv HTTP/1.1" 404 153 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
35.194.227.47 - [08/Oct/2026:13:06:12 +0200] "POST /icecoder/lib/terminal-xhr.php HTTP/1.1" 404 153 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)"
35.194.227.47 - [08/Oct/2026:13:06:12 +0200] "POST /graphql HTTP/1.1" 404 555 "https://[removed].dumanet.hu" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
35.194.227.47 - [08/Oct/2026:13:06:12 +0200] "GET /1qwbt6w03zvp97r5mpxu HTTP/1.1" 404 153 "-"
show less
Web App Attack
๐ช๐ธ
robotstxt
2026-10-08 14:41:00
(2 days ago)
35.194.227.47 - - [08/Oct/2026:14:40:12 +0000] "GET /.ssh/id_rsa HTTP/2.0" 403 16250 "https://models ...
show more
35.194.227.47 - - [08/Oct/2026:14:40:12 +0000] "GET /.ssh/id_rsa HTTP/2.0" 403 16250 "https://models.temporada-alta.com/.ssh/id_rsa" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"
35.194.227.47 - - [08/Oct/2026:14:40:12 +0000] "GET /.htpasswd HTTP/2.0" 403 16246 "https://models.temporada-alta.com/.htpasswd" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)"
35.194.227.47 - - [08/Oct/2026:14:40:12 +0000] "GET /.npmrc HTTP/2.0" 403 16246 "https://models.temporada-alta.com/.npmrc" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)"
35.194.227.47 - - [08/Oct/2026:14:40:14 +0000] "GET /.ssh/config HTTP/2.0" 403 16248 "https://models.temporada-alta.com/.ssh/config" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
...
show less
Web App Attack
Anonymous
2026-10-08 11:10:05
(2 days ago)
| [Dangerous/Taiwan] Aggressive IP 35.194.227.47 (~30 hits). Type: DoS Defender- Web server 400 erro ...
show more
| [Dangerous/Taiwan] Aggressive IP 35.194.227.47 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
MakoWish
2026-10-08 10:11:50
(2 days ago)
Fuzzing for misconfigured web servers.
Hacking
Web App Attack
๐น๐ผ
kk_it_man
2026-10-08 08:36:03
(2 days ago)
hack
Hacking
๐ฏ๐ต
VXG-NET
2026-10-08 08:10:50
(2 days ago)
port=80, indicator_type=info-leak
Hacking
๐น๐ญ
thaizone.com
2026-10-08 06:57:26
(2 days ago)
Hacking attempts against websites (D1) #1
Web App Attack
Hacking
๐ช๐ธ
robotstxt
2026-10-08 06:23:50
(2 days ago)
35.194.227.47 - - [08/Oct/2026:06:22:48 +0000] "GET /.htpasswd HTTP/2.0" 403 16248 "https://document ...
show more
35.194.227.47 - - [08/Oct/2026:06:22:48 +0000] "GET /.htpasswd HTTP/2.0" 403 16248 "https://documentation.temporada-alta.com/.htpasswd" "CCBot/2.0 (https://commoncrawl.org/faq/)"
35.194.227.47 - - [08/Oct/2026:06:22:48 +0000] "GET /.ssh/id_rsa HTTP/2.0" 403 16251 "https://documentation.temporada-alta.com/.ssh/id_rsa" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )"
35.194.227.47 - - [08/Oct/2026:06:22:48 +0000] "GET /.ssh/id_ed25519 HTTP/2.0" 403 16254 "https://documentation.temporada-alta.com/.ssh/id_ed25519" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)"
35.194.227.47 - - [08/Oct/2026:06:22:48 +0000] "GET /.ssh/config HTTP/2.0" 403 16249 "https://documentation.temporada-alta.com/.ssh/config" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)"
35.194.227.47 - - [08/Oct/2026:06:22:51 +0000] "GET /.bashrc HTTP/2.0" 403 16248 "https://documentation.temporada-alta.com/.bashrc" "Mozilla/5.0 AppleWebKi
...
show less
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-10-08 04:29:35
(2 days ago)
Wordpress malicious attack:[octamissingdomain]
Web App Attack
Anonymous
2026-10-08 04:27:24
(2 days ago)
Suspicious URL access.
Hacking
๐ฆ๐ช
CG
2026-10-08 01:48:58
(2 days ago)
Web application attack, Automated scan
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
abuse-opdc
2026-10-08 00:40:59
(2 days ago)
Malicious HTTP requests matching injection/exploit signatures.
Web App Attack
Brute-Force
๐ณ๐ฑ
Alt255
2026-10-08 00:25:38
(2 days ago)
[cb-16al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail ngin ...
show more
[cb-16al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail nginx-404. Example: 35.194.227.47 - - [08/Oct/2026:02:25:30 +0200] "GET /build/manifest.json HTTP/2.0" 404 548 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
35.194.227.47 - - [08/Oct/2026:02:25:30 +0200] "GET /dist/manifest.json HTTP/2.0" 404 548 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
35.194.227.47 - - [08/Oct/2026:02:25:30 +0200] "GET /dist/.vite/manifest.json HTTP/2.0" 404 548 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
35.194.227.47 - - [08/Oct/2026:02:25:30 +0200] "GET /.vite/manifest.json HTTP/2.0" 404 548 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWe
...
show less
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-10-08 00:05:11
(2 days ago)
35.194.227.47 - - [08/Oct/2026:00:05:04 +0000] "GET /cgi-bin/php-cgi.exe?%ADd+allow_url_include%3d1+ ...
show more
35.194.227.47 - - [08/Oct/2026:00:05:04 +0000] "GET /cgi-bin/php-cgi.exe?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input HTTP/2.0" 404 16295 "https://assets.temporada-alta.com/cgi-bin/php-cgi.exe?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)"
35.194.227.47 - - [08/Oct/2026:00:05:05 +0000] "GET /cgi-bin/php?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input HTTP/2.0" 404 16289 "https://assets.temporada-alta.com/cgi-bin/php?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )"
35.194.227.47 - - [08/Oct/2026:00:05:09 +0000] "GET /cgi-bin/php-cgi?-d+allow_url_include%3don+-d+auto_prepend_file%3dphp://input HTTP/2.0" 404 16290 "https://assets.temporada-alta.com/cgi-bin/php-cgi?-d+allow_url_include%3don+-d+auto_prepend_file%3dphp://input" "Mozilla/5.0 (compatible; Moonshot
...
show less
Bad Web Bot
๐ฉ๐ช
raph
2026-10-07 22:40:07
(2 days ago)
[LIB DIR] crawler /vendor/*, /node_modules/*, /laravel/*, etc.
Bad Web Bot
Web App Attack