Anonymous
2026-08-15 16:31:59
(2 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ช๐ธ
librebit
2026-08-15 12:24:36
(2 days ago)
Brute force
Brute-Force
๐ฎ๐น
mediarama.com
2026-08-15 07:51:12
(2 days ago)
Banned by Fail2Ban
Web App Attack
Anonymous
2026-08-15 05:43:48
(2 days ago)
Aggressive web scan
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-15 05:39:31
(2 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-08-15 03:11:06
(3 days ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 35.245.48.195 - - [15/Aug/20 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 35.245.48.195 - - [15/Aug/2026:06:11:06 +0300] "GET /.git/config HTTP/1.1" 403 2427 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)"
show less
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-08-15 03:10:09
(3 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ฉ๐ช
maxpower
2026-08-15 01:36:29
(3 days ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 35.245.48.195 (US/United States/195.48.2 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 35.245.48.195 (US/United States/195.48.245.35.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 35.245.48.195 - - [15/Aug/2026:03:36:25 +0200] "GET /.aws/credentials HTTP/2.0" 301 293 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; OAI-SearchBot/1.0; +https://openai.com/searchbot" "-" host=www.imfitbiomeccanica.it
show less
Port Scan
๐ฉ๐ช
maxpower
2026-08-15 01:14:05
(3 days ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 35.245.48.195 (US/United States/195.48.2 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 35.245.48.195 (US/United States/195.48.245.35.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 35.245.48.195 - - [15/Aug/2026:03:14:03 +0200] "GET /.aws/credentials HTTP/2.0" 301 293 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; OAI-SearchBot/1.0; +https://openai.com/searchbot" "-" host=www.imfitbiomeccanica.it
show less
Port Scan
๐ณ๐ฑ
Savvii
2026-08-15 00:00:45
(3 days ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-08-14 22:46:28
(3 days ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐ฉ๐ช
bazter.pro
2026-08-14 21:18:26
(3 days ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
helios.live
2026-08-14 21:14:20
(3 days ago)
2026/08/14 21:14:19 [error] 615027#615027: *93632 access forbidden by rule, client: 35.245.48.195, s ...
show more
2026/08/14 21:14:19 [error] 615027#615027: *93632 access forbidden by rule, client: 35.245.48.195, server: kocerroxy.com, request: "GET /.aws/config HTTP/1.1", host: "app.kocerroxy.com"
2026/08/14 21:14:19 [error] 615027#615027: *93632 access forbidden by rule, client: 35.245.48.195, server: kocerroxy.com, request: "GET /.aws/credentials HTTP/1.1", host: "app.kocerroxy.com"
2026/08/14 21:14:19 [error] 615027#615027: *93620 access forbidden by rule, client: 35.245.48.195, server: kocerroxy.com, request: "GET /dist/.vite/manifest.json HTTP/1.1", host: "app.kocerroxy.com"
2026/08/14 21:14:19 [error] 615027#615027: *93848 access forbidden by rule, client: 35.245.48.195, server: kocerroxy.com, request: "GET /.vite/manifest.json HTTP/1.1", host: "app.kocerroxy.com"
2026/08/14 21:14:19 [error] 615027#615027: *93620 access forbidden by rule, client: 35.245.48.195, server: kocerroxy.com, request: "GET /.gitconfig HTTP/1.1", host: "app.kocerroxy.com"
...
show less
Web App Attack
๐ฌ๐ง
Marten Mark
2026-08-14 21:04:14
(3 days ago)
35.245.48.195 - - [14/Aug/2026:21:04:07 +0000] "GET /api/settings HTTP/2.0" 404 23033 "https://www.c ...
show more
35.245.48.195 - - [14/Aug/2026:21:04:07 +0000] "GET /api/settings HTTP/2.0" 404 23033 "https://www.cfi.co/api/settings" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/grokbot)"
35.245.48.195 - - [14/Aug/2026:21:04:07 +0000] "GET /config.js HTTP/2.0" 404 23033 "https://www.cfi.co/config.js" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/grokbot)"
35.245.48.195 - - [14/Aug/2026:21:04:08 +0000] "GET /.vite/manifest.json HTTP/2.0" 404 23033 "https://www.cfi.co/.vite/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"
35.245.48.195 - - [14/Aug/2026:21:04:08 +0000] "GET /api/config HTTP/2.0" 404 23033 "https://www.cfi.co/api/config" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/grokbot)"
35.245.48.195 - - [14/Aug/2026:21:04:09 +0000] "GET /config.json HTTP/2.0" 404 23033 "https://www.cfi.co/config.json" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/grokbot)"
35.245.48.195 - -
...
show less
Port Scan
Web App Attack
๐บ๐ธ
ratcarcher-labs
2026-08-14 17:34:50
(3 days ago)
[Ratcarcher Labs/MutantShield honeypot CTI] actor=human vector=bot_scanner risk=75 attacks=197 depth ...
show more
[Ratcarcher Labs/MutantShield honeypot CTI] actor=human vector=bot_scanner risk=75 attacks=197 depth=4 node=node-eu-west canary=no human_score=65 agentic=40 cc=US asn=Google LLC | Data provided by Ratcarcher Labs ยท https://ratcarcher-labs.com ยท docs https://api.ratcarcher-labs.com/api/v1/public/docs
show less
Port Scan
Bad Web Bot