π«π·
mail.avx.gr
2026-08-23 00:08:38
(8 hours ago)
Plesk Fail2Ban jail: recidive-abuseipdb. Evidence: 2026-08-11 04:35:45,333 fail2ban.actions [5319]: ...
show more
Plesk Fail2Ban jail: recidive-abuseipdb. Evidence: 2026-08-11 04:35:45,333 fail2ban.actions [5319]: NOTICE [plesk-apache-badbot] Ban 35.243.183.114 2026-08-11 04:35:45,347 fail2ban.actions [5319]: NOTICE [Plesk-WebScanners] Ban 35.243.183.114 2026-08-11 04:35:45,449 fail2ban.actions [5319]: NOTICE [Plesk-Web-Exploits] Ban 35.243.183.114 2026-08-11 04:35:45,708 fail2ban.actions [5319]: NOTICE [recidive-unknown] Ban 35.243.183.114
show less
Hacking
π¬π·
mail.avx.gr
2026-08-21 17:33:47
(1 day ago)
Plesk Fail2Ban jail: recidive-abuseipdb. Evidence: 2026-08-11 04:35:45,333 fail2ban.actions [5319]: ...
show more
Plesk Fail2Ban jail: recidive-abuseipdb. Evidence: 2026-08-11 04:35:45,333 fail2ban.actions [5319]: NOTICE [plesk-apache-badbot] Ban 35.243.183.114 2026-08-11 04:35:45,347 fail2ban.actions [5319]: NOTICE [Plesk-WebScanners] Ban 35.243.183.114 2026-08-11 04:35:45,449 fail2ban.actions [5319]: NOTICE [Plesk-Web-Exploits] Ban 35.243.183.114 2026-08-11 04:35:45,708 fail2ban.actions [5319]: NOTICE [recidive-unknown] Ban 35.243.183.114
show less
Hacking
π§πͺ
taivas.nl
2026-08-12 04:32:42
(1 week ago)
Many_bad_calls
Web App Attack
Anonymous
2026-08-11 05:58:18
(1 week ago)
Bot detected scanning for vulnerable pages
Port Scan
π³π±
taivas.nl
2026-08-11 05:30:05
(1 week ago)
web_app_attack
Email Spam
π©πͺ
Petros Stefanakis
2026-08-11 02:31:02
(1 week ago)
(mod_security) mod_security triggered on hostname [redacted] 35.243.183.114 (US/United States/114.18 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.243.183.114 (US/United States/114.183.243.35.bc.googleusercontent.com)
show less
SQL Injection
π«π·
mail.avx.gr
2026-08-11 01:35:45
(1 week ago)
Plesk Fail2Ban jail: plesk-apache-badbot. Evidence: 35.243.183.114 - - [11/Aug/2026:04:35:45 +0300] ...
show more
Plesk Fail2Ban jail: plesk-apache-badbot. Evidence: 35.243.183.114 - - [11/Aug/2026:04:35:45 +0300] "GET /proc/self/environ HTTP/1.1" 404 808 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)"
show less
Bad Web Bot
Web App Attack
π§π¬
HighWay
2026-08-11 01:35:08
(1 week ago)
35.243.183.114 - - [11/Aug/2026:01:35:06 +0000] "GET /actuator/env HTTP/1.1" 404 5891 "-" "Mozilla/5 ...
show more
35.243.183.114 - - [11/Aug/2026:01:35:06 +0000] "GET /actuator/env HTTP/1.1" 404 5891 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
35.243.183.114 - - [11/Aug/2026:01:35:06 +0000] "GET /api/config HTTP/1.1" 404 5891 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)"
...
show less
Bad Web Bot
Web App Attack
π«π·
β¨
2026-08-11 01:04:16
(1 week ago)
Domain : lotusexpress.co.uk
Rule : hack
2026-08-11 01:03:02 ***hidden-privacy*** GET /proc/self/envi ...
show more
Domain : lotusexpress.co.uk
Rule : hack
2026-08-11 01:03:02 ***hidden-privacy*** GET /proc/self/environ - 443 - 35.243.183.114 HTTP/1.1 Mozilla/5.0 (compatible; PerplexityBot/1.0; https://perplexity.ai/perplexitybot) - lotusexpress.co.uk 404 0 2 1564 285 219 - -
show less
Hacking
SQL Injection
Brute-Force
π¬π§
consul.to
2026-08-11 01:02:03
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
π©πͺ
netclix.gr
2026-08-11 00:43:10
(1 week ago)
(mod_security) mod_security triggered on hostname [redacted] 35.243.183.114 (US/United States/114.18 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.243.183.114 (US/United States/114.183.243.35.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
πΊπΈ
TPI-Abuse
2026-08-10 23:55:26
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.243.183.114 (114.183.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.183.114 (114.183.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 10 19:55:18.629122 2026] [security2:error] [pid 2706133:tid 2706133] [client 35.243.183.114:32684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.sanesoftware.com"] [uri "/static../.env"] [unique_id "anpk5vHdt2xNJ8cr7TEAnQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Hostynet
2026-08-10 23:29:42
(1 week ago)
TCP SYN flood detected by MikroTik RouterOS filter (sustained half-open connection rate from single ...
show more
TCP SYN flood detected by MikroTik RouterOS filter (sustained half-open connection rate from single source). Source automatically blacklisted.
show less
DDoS Attack
πΊπΈ
TPI-Abuse
2026-08-10 23:28:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.243.183.114 (114.183.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.183.114 (114.183.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 10 19:28:23.341334 2026] [security2:error] [pid 3209878:tid 3209878] [client 35.243.183.114:31424] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.ankitoner.com"] [uri "/media../.env"] [unique_id "anpelzaUAZxGWQKZHldddAAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-10 23:13:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.243.183.114 (114.183.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.183.114 (114.183.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 10 19:13:06.081631 2026] [security2:error] [pid 2550055:tid 2550055] [client 35.243.183.114:8832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kadinisi.org"] [uri "/app/.env"] [unique_id "anpbAomHD5iSlvKWZFWXfQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack