๐บ๐ธ
robotstxt
2026-09-24 03:43:28
(1 hour ago)
35.229.175.21 - - [24/Sep/2026:03:42:42 +0000] "GET /config.php.bak HTTP/2.0" 400 86717 "https://www ...
show more
35.229.175.21 - - [24/Sep/2026:03:42:42 +0000] "GET /config.php.bak HTTP/2.0" 400 86717 "https://www.internationalcannabisawards.com/config.php.bak" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexitybot)" "-" edge="35.229.175.21"
35.229.175.21 - - [24/Sep/2026:03:42:43 +0000] "GET /wp-config.php~ HTTP/2.0" 400 86717 "https://www.internationalcannabisawards.com/wp-config.php~" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)" "-" edge="35.229.175.21"
35.229.175.21 - - [24/Sep/2026:03:42:43 +0000] "GET /wp-config.php.swp HTTP/2.0" 400 86717 "https://www.internationalcannabisawards.com/wp-config.php.swp" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)" "-" edge="35.229.175.21"
35.229.175.21 - - [24/Sep/2026:03:42:41 +0000] "GET /wp-config.php.bak HTTP/2.0" 400 86717 "https://www.internationalcannabisawards.com/wp-config.php.bak" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Clau
...
show less
Web Spam
Web App Attack
๐ง๐ช
cmbplf
2026-09-24 01:33:10
(3 hours ago)
294 requests with url.path */@fs/*
149 requests with url.path */proc/*
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-24 01:32:56
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.229.175.21 (21.175.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.175.21 (21.175.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 21:32:50.714117 2026] [security2:error] [pid 3101:tid 3101] [client 35.229.175.21:58812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stats.179vfs.com"] [uri "/.htpasswd"] [unique_id "arR9wpbDDI49BiK6jZlunQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oralunal
2026-09-24 01:12:26
(3 hours ago)
IP banned by Fail2Ban in jail ah-suss access.log mvfnds
...
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-09-24 01:02:55
(4 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
solantex
2026-09-24 00:52:12
(4 hours ago)
Unauthorized automated scanning and reconnaissance against Solantex resources. No crawl, scan or tes ...
show more
Unauthorized automated scanning and reconnaissance against Solantex resources. No crawl, scan or test permission has been granted to this source.
show less
Web App Attack
๐ฉ๐ช
TheDjRider
2026-09-24 00:10:07
(4 hours ago)
CrowdSec detected Web application reconnaissance. Scenario: local/framework-recon. Automatic ban tri ...
show more
CrowdSec detected Web application reconnaissance. Scenario: local/framework-recon. Automatic ban triggered. Detection time (UTC): 2026-09-24T00:10:02.643412034Z. Context: http_status=301, http_status=200
show less
Web App Attack
๐บ๐ธ
robotstxt
2026-09-23 23:34:25
(5 hours ago)
35.229.175.21 - - [23/Sep/2026:23:34:16 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 17353 "- ...
show more
35.229.175.21 - - [23/Sep/2026:23:34:16 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 17353 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="35.229.175.21"
35.229.175.21 - - [23/Sep/2026:23:34:17 +0000] "GET /api/.env HTTP/2.0" 403 17814 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)" "-" edge="35.229.175.21"
35.229.175.21 - - [23/Sep/2026:23:34:17 +0000] "GET /.env.prod HTTP/2.0" 403 17814 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)" "-" edge="35.229.175.21"
35.229.175.21 - - [23/Sep/2026:23:34:17 +0000] "GET /.env.old HTTP/2.0" 403 17814 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot" "-" edge="35.229.175.21"
35.229.175.21 - - [23/Sep/2026:23:34:17 +0000] "GET /.env.save HTTP/2.0" 403 17814 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave
...
show less
Web App Attack
Anonymous
2026-09-23 23:20:02
(5 hours ago)
| [Dangerous/Taiwan] Aggressive IP 35.229.175.21 (~30 hits). Type: DoS Defender- Web server 400 erro ...
show more
| [Dangerous/Taiwan] Aggressive IP 35.229.175.21 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-23 23:13:20
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.229.175.21 (21.175.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.175.21 (21.175.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 19:13:12.330942 2026] [security2:error] [pid 7638:tid 7638] [client 35.229.175.21:50982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "littlehorndesign.com"] [uri "/public/.env"] [unique_id "arRdCPj4h2KzcTtNOOT02wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 22:35:29
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 18:35:23.823774 2026] [security2:error] [pid 11480:tid 11494] [client 35.229.175.21:33868] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||paulvester.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "paulvester.com"] [uri "/z9x8c7v6b5-debug-trigger-paulvester.com"] [unique_id "arRUK41A2EAjQr7WhW1e8gAAAYA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 22:20:14
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 18:20:09.536877 2026] [security2:error] [pid 9027:tid 9129] [client 35.229.175.21:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||raytbrown.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "raytbrown.com"] [uri "/z9x8c7v6b5-debug-trigger-raytbrown.com"] [unique_id "arRQmd8RmUkVfjF0XRoTWgAAAIs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 21:09:52
(7 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 17:09:47.343778 2026] [security2:error] [pid 15591:tid 15591] [client 35.229.175.21:39078] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||southernreader.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "southernreader.com"] [uri "/z9x8c7v6b5-debug-trigger-southernreader.com"] [unique_id "arRAG-coaLWPr__1ygG_CgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 20:46:07
(8 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 16:46:02.262717 2026] [security2:error] [pid 8818:tid 8818] [client 35.229.175.21:44270] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sovereignstartups.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sovereignstartups.com"] [uri "/z9x8c7v6b5-debug-trigger-sovereignstartups.com"] [unique_id "arQ6iuvD7uTREnDl9hw8DQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 20:30:56
(8 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.229.175.21 (21.175.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 16:30:52.809539 2026] [security2:error] [pid 16709:tid 16709] [client 35.229.175.21:49210] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||spacebooger.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "spacebooger.com"] [uri "/z9x8c7v6b5-debug-trigger-spacebooger.com"] [unique_id "arQ2_NbLxThY9At1M6BuTgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack