๐ฎ๐ณ
evicky2002
2026-07-22 06:00:00
(16 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฌ๐ง
andypiper
2026-07-22 01:02:16
(21 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
Anonymous
2026-07-22 00:13:17
(22 hours ago)
Web attack
Bad Web Bot
Web App Attack
๐บ๐ธ
jormaster3k
2026-07-21 22:59:28
(23 hours ago)
Attack against Apache (too many 404s)
Web App Attack
Anonymous
2026-07-21 22:26:03
(1 day ago)
Multiple web server 400 error codes from same source ip
Web App Attack
Anonymous
2026-07-21 22:16:56
(1 day ago)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-21 20:49:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.246.47.100 (100.47.246.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.47.100 (100.47.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 16:49:35.270514 2026] [security2:error] [pid 407636:tid 407636] [client 35.246.47.100:56238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "auth.unwaved.com"] [uri "/admin/.env"] [unique_id "al_bX7gixl8HjWJGMQhFAAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-21 20:42:50
(1 day ago)
35.246.47.100 - - [21/Jul/2026:20:42:49 +0000] "GET /.ssh/id_rsa HTTP/2.0" 301 162 "-" "Mozilla/5.0 ...
show more
35.246.47.100 - - [21/Jul/2026:20:42:49 +0000] "GET /.ssh/id_rsa HTTP/2.0" 301 162 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexity-user" "35.246.47.100" "-"
...
show less
Web App Attack
๐ฉ๐ช
Hazzard
2026-07-21 20:22:06
(1 day ago)
(PERMBLOCK) 35.246.47.100 (GB/United Kingdom/England/City of London/100.47.246.35.bc.googleuserconte ...
show more
(PERMBLOCK) 35.246.47.100 (GB/United Kingdom/England/City of London/100.47.246.35.bc.googleusercontent.com/[redacted]) has had more than 4 temp blocks
show less
Hacking
Anonymous
2026-07-21 19:00:09
(1 day ago)
Automatic report - Vulnerability scan
/trace.axd
Web App Attack
๐ณ๐ฑ
thedreamer.nl
2026-07-21 17:49:27
(1 day ago)
35.246.47.100 - - [21/Jul/2026:19:48:52 +0200] "GET /.git/HEAD HTTP/2.0" 200 995 "-" "Mozilla/5.0 (c ...
show more
35.246.47.100 - - [21/Jul/2026:19:48:52 +0200] "GET /.git/HEAD HTTP/2.0" 200 995 "-" "Mozilla/5.0 (compatible; Applebot-Extended/0.1; +http://www.apple.com/go/applebot)" "GB" "City of London" "51.51640" "-0.09300"
35.246.47.100 - - [21/Jul/2026:19:48:52 +0200] "GET /.git/config HTTP/2.0" 200 995 "-" "Mozilla/5.0 (compatible; Applebot-Extended/0.1; +http://www.apple.com/go/applebot)" "GB" "City of London" "51.51640" "-0.09300"
35.246.47.100 - - [21/Jul/2026:19:48:52 +0200] "GET /.env.production HTTP/2.0" 200 995 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Claude-SearchBot/1.0; +mailto:[email protected] " "GB" "City of London" "51.51640" "-0.09300"
35.246.47.100 - - [21/Jul/2026:19:48:52 +0200] "GET /.env HTTP/2.0" 200 995 "-" "Mozilla/5.0 (compatible; Diffbot/1.0; +https://diffbot.com)" "GB" "City of London" "51.51640" "-0.09300"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 16:54:04
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 35.246.47.100 (100.47.246.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.246.47.100 (100.47.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 12:53:57.453860 2026] [security2:error] [pid 9141:tid 9141] [client 35.246.47.100:59320] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||unified-dispatch.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "unified-dispatch.com"] [uri "/rclone.conf"] [unique_id "al-kJdvRCDM85q2WhPqtswAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-07-21 16:44:18
(1 day ago)
CrowdSec: crowdsecurity/http-probing | req: /.git/config | 11 distinct paths | UA: Mozilla/5.0 (comp ...
show more
CrowdSec: crowdsecurity/http-probing | req: /.git/config | 11 distinct paths | UA: Mozilla/5.0 (compatible; cohere-ai/1.0; +https://cohere.com)
show less
Port Scan
Web App Attack
๐ณ๐ฑ
Savvii
2026-07-21 16:38:19
(1 day ago)
20 attempts against mh-misbehave-ban on choy
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-07-21 16:30:26
(1 day ago)
[PROTECTED PATHS] crawler credentials.ini, aws.ini, aws.yml, etc.
Bad Web Bot
Web App Attack