๐ซ๐ท
SpaceHost-Server
2026-10-09 22:23:30
(1 day ago)
Brute-Force
Web App Attack
๐ฉ๐ช
updown.io
2026-10-09 03:33:59
(2 days ago)
{"level":"info","ts":1791516826.9099507,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1791516826.9099507,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"35.199.105.218","remote_port":"56248","client_ip":"35.199.105.218","proto":"HTTP/2.0","method":"GET","host":"status.jorgedelacruz.es","uri":"/rb06kkqx4oonvoolpsik","headers":{"Accept":["*/*"],"Accept-Encoding":["gzip"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"X-Nextjs-Data":["1"],"User-Agent":["Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"status.jorgedelacruz.es","ech":false}},"bytes_read":0,"user_id":"","duration":0.000940764,"size":0,"status":429,"resp_headers":{"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-After":["1"],"Server":["Caddy"]}}
{"level":"info","ts":1791516827.3930984,"logger":"http.log.access.log1","msg":"handl
...
show less
DDoS Attack
Web App Attack
๐ฉ๐ช
rh24
2026-10-09 00:05:08
(2 days ago)
(badbots) Bad bot user-agent [redacted] from 35.199.105.218 (BR/Brazil/218.105.199.35.bc.googleuserc ...
show more
(badbots) Bad bot user-agent [redacted] from 35.199.105.218 (BR/Brazil/218.105.199.35.bc.googleusercontent.com)
show less
Hacking
๐ช๐ธ
robotstxt
2026-10-08 22:57:41
(2 days ago)
35.199.105.218 - - [08/Oct/2026:22:57:26 +0000] "-" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199 ...
show more
35.199.105.218 - - [08/Oct/2026:22:57:26 +0000] "-" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:22:57:26 +0000] "-" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:22:57:26 +0000] "-" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:22:57:31 +0000] "-" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:22:57:31 +0000] "-" 400 193 "-" "-" "-" edge="35.199.105.218"
...
show less
Web Spam
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-10-08 22:22:24
(2 days ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 20:59:02
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.199.105.218 (218.105.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.105.218 (218.105.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 16:58:55.291114 2026] [security2:error] [pid 26197:tid 26197] [client 35.199.105.218:34372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.totenclaus.es"] [uri "/cache/original/%2e%2e/.env"] [unique_id "asgED8ZNbGlJaZvzl-JN2QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-10-08 20:43:01
(2 days ago)
35.199.105.218 - - [08/Oct/2026:20:42:00 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 147 "-" ...
show more
35.199.105.218 - - [08/Oct/2026:20:42:00 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 147 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "-"
35.199.105.218 - - [08/Oct/2026:20:42:00 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 147 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "-"
35.199.105.218 - - [08/Oct/2026:20:42:00 +0000] "GET /.htpasswd HTTP/2.0" 403 189 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)" "-"
35.199.105.218 - - [08/Oct/2026:20:42:00 +0000] "GET /.ssh/id_rsa HTTP/2.0" 403 189 "-" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)" "-"
35.199.105.218 - - [08/Oct/2026:20:42:00 +0000] "GET /.npmrc HTTP/2.0" 403 189 "-" "Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)" "-"
...
show less
Web App Attack
๐ช๐ธ
robotstxt
2026-10-08 19:05:13
(2 days ago)
35.199.105.218 - - [08/Oct/2026:19:04:32 +0000] "GET /dist/manifest.json HTTP/2.0" 403 20748 "-" "Mo ...
show more
35.199.105.218 - - [08/Oct/2026:19:04:32 +0000] "GET /dist/manifest.json HTTP/2.0" 403 20748 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:19:04:32 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 20748 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:19:04:32 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 20810 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:19:04:32 +0000] "GET /build/manifest.json HTTP/2.0" 403 20810 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:19:04:32 +00
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 18:50:12
(2 days ago)
(mod_security) mod_security (id:210580) triggered by 35.199.105.218 (218.105.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210580) triggered by 35.199.105.218 (218.105.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 14:50:04.439105 2026] [security2:error] [pid 27510:tid 27510] [client 35.199.105.218:44964] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:apis. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||autodiscover.nagareinkpaper.es|F|2"] [data "Matched Data: proc/self/environ found within ARGS:apis: ../../../../../../proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "autodiscover.nagareinkpaper.es"] [uri "/api/console/api_server"] [unique_id "asfl3EMDDzmblyGelaY12gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-10-08 18:32:03
(2 days ago)
35.199.105.218 - - [08/Oct/2026:18:32:00 +0000] "GET /appearance/../../.env HTTP/1.1" 400 193 "-" "- ...
show more
35.199.105.218 - - [08/Oct/2026:18:32:00 +0000] "GET /appearance/../../.env HTTP/1.1" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:18:32:00 +0000] "GET /api/attachments/img/avatar/..%2F..%2F..%2F..%2F..%2Fproc%2Fself%2Fenviron HTTP/1.1" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:18:32:01 +0000] "GET /appearance/../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:18:32:01 +0000] "GET /api/attachments/img/avatar/..%2F..%2F..%2F..%2F..%2F.env HTTP/1.1" 400 193 "-" "-" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:18:32:01 +0000] "GET /static/../../../a/../../../../.env HTTP/1.1" 400 193 "-" "-" "-" edge="35.199.105.218"
...
show less
Web Spam
Web App Attack
๐ช๐ธ
Francisco Vallejo
2026-10-08 18:03:08
(2 days ago)
[Thu Oct 08 20:03:07.556995 2026] [core:info] [pid 2249640:tid 133276324853440] [client 35.199.105.2 ...
show more
[Thu Oct 08 20:03:07.556995 2026] [core:info] [pid 2249640:tid 133276324853440] [client 35.199.105.218:53914] AH00128: File does not exist: /var/www/franvallejo/signin
[Thu Oct 08 20:03:07.859735 2026] [core:info] [pid 2249640:tid 133276844938944] [client 35.199.105.218:53914] AH00128: File does not exist: /var/www/franvallejo/auth
[Thu Oct 08 20:03:08.088467 2026] [core:info] [pid 2252722:tid 133276450678464] [client 35.199.105.218:53980] AH00128: File does not exist: /var/www/franvallejo/account/login
[Thu Oct 08 20:03:08.088474 2026] [core:info] [pid 2252722:tid 133277826393792] [client 35.199.105.218:53948] AH00128: File does not exist: /var/www/franvallejo/z9x8c7v6b5-debug-trigger-ai.franvallejo.es
[Thu Oct 08 20:03:08.090158 2026] [core:info] [pid 2249639:tid 133277591529152] [client 35.199.105.218:53994] AH00128: File does not exist: /var/www/franvallejo/assets/manifest.json
...
show less
Brute-Force
SSH
๐ช๐ธ
robotstxt
2026-10-08 17:46:54
(2 days ago)
35.199.105.218 - - [08/Oct/2026:17:46:27 +0000] "GET /wp-content/cache/autoptimize/1/js/autoptimize_ ...
show more
35.199.105.218 - - [08/Oct/2026:17:46:27 +0000] "GET /wp-content/cache/autoptimize/1/js/autoptimize_single_6857ed16327f63b33982ea69d8f73350.js HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:17:46:27 +0000] "GET /webpack-stats.json HTTP/2.0" 403 0 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:17:46:27 +0000] "GET /asset-manifest.json HTTP/2.0" 403 0 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:17:46:27 +0000] "GET /static/manifest.json HTTP/2.0" 403 0 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36" "-" edge="35.199.10
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 17:40:54
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.199.105.218 (218.105.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.105.218 (218.105.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 13:40:50.279735 2026] [security2:error] [pid 20841:tid 20841] [client 35.199.105.218:45300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tand.es"] [uri "/static//home/user/.env"] [unique_id "asfVonXNyHPAyqLmFreNEQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-10-08 17:30:16
(2 days ago)
35.199.105.218 - - [08/Oct/2026:17:30:04 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 35539 " ...
show more
35.199.105.218 - - [08/Oct/2026:17:30:04 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 35539 "https://noudiari.es/dist/.vite/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:17:30:06 +0000] "GET /media../.env HTTP/2.0" 403 20 "https://noudiari.es/media../.env" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:17:30:06 +0000] "GET /files../.env HTTP/2.0" 403 20 "https://noudiari.es/files../.env" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:17:30:06 +0000] "GET /static../.env HTTP/2.0" 403 20 "https://noudiari.es/static../.env" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)" "-" edge="35.199.105.218"
35.199.105.218 - - [08/Oct/2026:17:30:07 +
...
show less
Web App Attack
๐ฎ๐น
VHosting
2026-10-08 17:25:03
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack