๐ช๐ธ
robotstxt
2026-09-22 23:41:20
(25 minutes ago)
35.221.238.23 - - [22/Sep/2026:23:41:01 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 81410 "- ...
show more
35.221.238.23 - - [22/Sep/2026:23:41:01 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 81410 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="35.221.238.23"
35.221.238.23 - - [22/Sep/2026:23:41:02 +0000] "GET /.env.save HTTP/2.0" 403 82684 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)" "-" edge="35.221.238.23"
35.221.238.23 - - [22/Sep/2026:23:41:02 +0000] "GET /api/.env HTTP/2.0" 403 82790 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)" "-" edge="35.221.238.23"
35.221.238.23 - - [22/Sep/2026:23:41:02 +0000] "GET /admin/.env HTTP/2.0" 403 82784 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot" "-" edge="35.221.238.23"
35.221.238.23 - - [22/Sep/2026:23:41:03 +0000] "GET /.env.old HTTP/2.0" 403 82793 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36" "
...
show less
Web App Attack
Anonymous
2026-09-22 23:07:20
(59 minutes ago)
malicious scanning tool activity
Web App Attack
Anonymous
2026-09-22 21:51:07
(2 hours ago)
Date: 2026/09/23 06 51 08
URI: http://www.adelabelly.com/v1/config/
Web App Attack
Anonymous
2026-09-22 20:37:05
(3 hours ago)
Date: 2026/09/23 05 37 06
URI: http://adelabelly.com/.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 20:23:13
(3 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.221.238.23 (23.238.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.221.238.23 (23.238.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 16:23:06.664537 2026] [security2:error] [pid 3410:tid 3410] [client 35.221.238.23:46850] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||agenticapocalypse.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "agenticapocalypse.com"] [uri "/z9x8c7v6b5-debug-trigger-agenticapocalypse.com"] [unique_id "arLjqt4vS8MKtKygbbyZDwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
albionfreemarket.com
2026-09-22 20:09:51
(3 hours ago)
35.221.238.23 - - [22/Sep/2026:20:09:48 +0000] "POST /graphql HTTP/2.0" 403 555 "https://albionfreem ...
show more
35.221.238.23 - - [22/Sep/2026:20:09:48 +0000] "POST /graphql HTTP/2.0" 403 555 "https://albionfreemarket.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" 0.000 "-" "TW"
35.221.238.23 - - [22/Sep/2026:20:09:48 +0000] "POST /api/graphql HTTP/2.0" 403 555 "https://albionfreemarket.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36" 0.000 "-" "TW"
...
show less
Bad Web Bot
Web App Attack
๐ท๐ธ
pexodelic
2026-09-22 19:25:40
(4 hours ago)
Automated report from web, SSH and FTP server logs: 92 requests probing for exposed secrets (.env, . ...
show more
Automated report from web, SSH and FTP server logs: 92 requests probing for exposed secrets (.env, .git, config files). Reported by our automated log scan at 2026-09-22 19:05 UTC; counts cover the current log rotation window.
show less
Hacking
Web App Attack
๐ซ๐ท
pm33
2026-09-22 19:14:00
(4 hours ago)
Excessive crawling HTTP 404
Web App Attack
Anonymous
2026-09-22 18:40:54
(5 hours ago)
git/env leak probe
Web App Attack
๐ฉ๐ช
23p02732
2026-09-22 18:34:23
(5 hours ago)
Automated web scanning and malicious probing
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
interbiznw.com
2026-09-22 18:28:11
(5 hours ago)
fail2ban-ban
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ช๐ธ
robotstxt
2026-09-22 17:38:37
(6 hours ago)
35.221.238.23 - - [22/Sep/2026:17:37:49 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 81413 "h ...
show more
35.221.238.23 - - [22/Sep/2026:17:37:49 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 81413 "https://cool-dreams.com/dist/.vite/manifest.json" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="35.221.238.23"
35.221.238.23 - - [22/Sep/2026:17:37:56 +0000] "GET /.env.example HTTP/2.0" 403 82786 "https://cool-dreams.com/.env.example" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)" "-" edge="35.221.238.23"
35.221.238.23 - - [22/Sep/2026:17:37:56 +0000] "GET /.env HTTP/2.0" 403 82790 "https://cool-dreams.com/.env" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)" "-" edge="35.221.238.23"
35.221.238.23 - - [22/Sep/2026:17:37:56 +0000] "GET /.env.production HTTP/2.0" 403 82789 "https://cool-dreams.com/.env.production" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot" "-" edge="35.221.238.23"
35.221.238.23 - - [22/S
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 17:36:38
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.221.238.23 (23.238.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.221.238.23 (23.238.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:36:34.405530 2026] [security2:error] [pid 10209:tid 10209] [client 35.221.238.23:39180] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||corepest.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "corepest.com"] [uri "/z9x8c7v6b5-debug-trigger-corepest.com"] [unique_id "arK8ogjGqacSxoWk-eE1AAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-09-22 17:20:05
(6 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
Anonymous
2026-09-22 17:07:08
(6 hours ago)
โฃ๏ธ WAF rule violation. Dangerous payload detected in the request.
Bad Web Bot
Web App Attack