๐ง๐ช
Ivo Vynckier
2026-07-21 10:32:00
(2 days ago)
35.229.157.47 - - [20/Jul/2026:12:32:30 +0200] "GET /.git/HEAD HTTP/2.0" 403 106 "-" "Mozilla/5.0 Ap ...
show more
35.229.157.47 - - [20/Jul/2026:12:32:30 +0200] "GET /.git/HEAD HTTP/2.0" 403 106 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Claude-User/1.0; +mailto:[email protected] "
35.229.157.47 - - [20/Jul/2026:12:32:30 +0200] "GET /.git/config HTTP/2.0" 403 106 "-" "Mozilla/5.0 (compatible; Applebot-Extended/0.1; +http://www.apple.com/go/applebot)"
35.229.157.47 - - [20/Jul/2026:12:32:30 +0200] "GET /.aws/config HTTP/2.0" 404 2310 "-" "Mozilla/5.0 (compatible; GoogleOther; +http://www.google.com/bot.html)"
show less
Web App Attack
Anonymous
2026-07-20 13:47:44
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 35.229.157.47 (TW/Taiwan/47.157.229.35. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.229.157.47 (TW/Taiwan/47.157.229.35.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
LRob
2026-07-20 13:23:09
(2 days ago)
CrowdSec: crowdsecurity/http-sensitive-files | req: /backend/.env | 5 distinct paths | UA: Mozilla/5 ...
show more
CrowdSec: crowdsecurity/http-sensitive-files | req: /backend/.env | 5 distinct paths | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; MistralAI-User/1.0
show less
Hacking
๐บ๐ฆ
URAN Publishing Service
2026-07-20 13:06:51
(2 days ago)
35.229.157.47 - - [20/Jul/2026:16:06:50 +0300] "GET /.env HTTP/1.1" 404 4586 "-" "Mozilla/5.0 (compa ...
show more
35.229.157.47 - - [20/Jul/2026:16:06:50 +0300] "GET /.env HTTP/1.1" 404 4586 "-" "Mozilla/5.0 (compatible; Applebot-Extended/0.1; +http://www.apple.com/go/applebot)"
...
show less
Web App Attack
Anonymous
2026-07-20 11:53:43
(2 days ago)
PSCSERV WPSCAN 35.229.157.47
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-07-20 11:17:13
(2 days ago)
35.229.157.47 - - [20/Jul/2026:13:17:02 +0200] "GET /z9x8c7v6b5-debug-trigger-elhacker.net HTTP/2.0" ...
show more
35.229.157.47 - - [20/Jul/2026:13:17:02 +0200] "GET /z9x8c7v6b5-debug-trigger-elhacker.net HTTP/2.0" 404 15884 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Claude-User/1.0; +mailto:[email protected] "
35.229.157.47 - - [20/Jul/2026:13:17:02 +0200] "GET /.gitlab-ci.yml HTTP/2.0" 404 15884 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] )"
35.229.157.47 - - [20/Jul/2026:13:17:02 +0200] "GET /.env.production HTTP/2.0" 404 15884 "-" "Mozilla/5.0 (compatible; cohere-ai/1.0; +https://cohere.com)"
35.229.157.47 - - [20/Jul/2026:13:17:02 +0200] "GET /.gitconfig HTTP/2.0" 404 15884 "-" "Mozilla/5.0 (compatible; GoogleOther; +http://www.google.com/bot.html)"
35.229.157.47 - - [20/Jul/2026:13:17:02 +0200] "GET /.aws/config HTTP/2.0" 404 15884 "-" "Mozilla/5.0 (compatible; Applebot/0.1; +http://www.apple.com/go/applebot)"
35.229.157.47 - - [20/Jul/2026:13:17:02 +0200] "GET /.git-credentials HTTP/2.0" 404 15884 "-" "Mozilla/5.0 AppleWebKit/537.36 (K
...
show less
DDoS Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-20 11:07:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.229.157.47 (47.157.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.157.47 (47.157.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 07:07:48.019485 2026] [security2:error] [pid 18971:tid 18971] [client 35.229.157.47:53436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.anenchantingevening.com"] [uri "/.git/config"] [unique_id "al4BhKkEZiv67-GozE1qPAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-07-20 10:56:45
(2 days ago)
Bad bot ignoring robot.txt
Bad Web Bot
Anonymous
2026-07-20 10:21:53
(3 days ago)
Sensitive file access attempt
Hacking
๐ซ๐ท
bazter.pro
2026-07-20 10:18:55
(3 days ago)
Auto-Ban [2026-07-20 10:18:55]: CRITICAL: bot trap (soft) | host=minasdeoro.org | route=/api/trap/ca ...
show more
Auto-Ban [2026-07-20 10:18:55]: CRITICAL: bot trap (soft) | host=minasdeoro.org | route=/api/trap/catalog-export | hits=1 | ua=Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like
show less
Hacking
Web App Attack
๐ณ๐ฑ
Savvii
2026-07-20 10:00:58
(3 days ago)
20 attempts against mh-misbehave-ban on burne
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-20 09:58:57
(3 days ago)
cloudlinux2 fail2ban: 2026-07-20 11:53:56,915 fail2ban.filter [1927]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-07-20 11:53:56,915 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 49.249.174.202 - 2026-07-20 11:53:56cloudlinux2 fail2ban: 2026-07-20 11:53:57,043 fail2ban.actions [1927]: NOTICE [plesk-modsecurity] Ban 49.249.174.202cloudlinux2 fail2ban: 2026-07-20 11:53:57,051 fail2ban.filter [1927]: INFO [recidive] Found 49.249.174.202 - 2026-07-20 11:53:57cloudlinux2 fail2ban: 2026-07-20 11:54:49,121 fail2ban.actions [1927]: NOTICE [plesk-modsecurity] Unban 49.47.218.42cloudlinux2 fail2ban: 2026-07-20 11:54:54,969 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 176.56.118.182 - 2026-07-20 11:54:54cloudlinux2 fail2ban: 2026-07-20 11:55:55,408 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 35.229.157.47 - 2026-07-20 11:55:55cloudlinux2 fail2ban: 2026-07-20 11:55:54,064 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 45.131.194.173 - 2026-07-20 11:55:53cloudlinux2 fail2ban: 2026-07-20 11:55:55,397 fail
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 09:22:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.229.157.47 (47.157.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.157.47 (47.157.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 05:22:13.426279 2026] [security2:error] [pid 1229:tid 1229] [client 35.229.157.47:44776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.creartest.com"] [uri "/.git/config"] [unique_id "al3oxcy2A21wDbkjV8_sdQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-07-20 08:52:03
(3 days ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ฉ๐ช
[email protected]
2026-07-20 06:33:12
(3 days ago)
Brute force 75 attempts
DDoS Attack
SQL Injection
Brute-Force
SSH