๐ซ๐ท
solution.it
2026-09-29 11:05:25
(5 hours ago)
[Tue Sep 29 13:05:24.908531 2026] [authz_core:error] [pid 2503847:tid 2503847] [client 35.247.135.20 ...
show more
[Tue Sep 29 13:05:24.908531 2026] [authz_core:error] [pid 2503847:tid 2503847] [client 35.247.135.207:38588] AH01630: client denied by server configuration: /var/www/html/blog.solution.it/.htpasswd
show less
Brute-Force
๐ซ๐ท
Zundapper
2026-09-29 05:23:32
(11 hours ago)
35.247.135.207 - - [29/Sep/2026:07:23:32 +0200] "GET /asset-manifest.json HTTP/2.0" 404 2334 "-" "Mo ...
show more
35.247.135.207 - - [29/Sep/2026:07:23:32 +0200] "GET /asset-manifest.json HTTP/2.0" 404 2334 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
35.247.135.207 - - [29/Sep/2026:07:23:32 +0200] "GET /dist/manifest.json HTTP/2.0" 404 2334 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
...
show less
Web App Attack
Port Scan
๐ฌ๐ง
consul.to
2026-09-29 04:46:34
(12 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฎ๐น
VHosting
2026-09-29 04:40:03
(12 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฉ๐ช
maxpower
2026-09-29 04:32:29
(12 hours ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 35.247.135.207 (SG/Singapore/207.135.247 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 35.247.135.207 (SG/Singapore/207.135.247.35.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 35.247.135.207 - - [29/Sep/2026:06:32:23 +0200] "GET /@fs/home/ubuntu/.aws/credentials?raw?? HTTP/2.0" 403 0 "-" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)" "35.247.135.207" host=consorzioaet.it
show less
Port Scan
๐ฉ๐ช
Nevermind
2026-09-29 04:23:12
(12 hours ago)
35.247.135.207 - - [29/Sep/2026:06:23:11 +0200] "GET /server/.env HTTP/1.1" 403 5664 "-" "Mozilla/5. ...
show more
35.247.135.207 - - [29/Sep/2026:06:23:11 +0200] "GET /server/.env HTTP/1.1" 403 5664 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1)"
35.247.135.207 - - [29/Sep/2026:06:23:11 +0200] "GET /.env.save HTTP/1.1" 403 5664 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
35.247.135.207 - - [29/Sep/2026:06:23:11 +0200] "GET /.env.old HTTP/1.1" 403 5664 "-" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)"
35.247.135.207 - - [29/Sep/2026:06:23:11 +0200] "GET /api/.env HTTP/1.1" 403 5664 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )"
...
show less
Web App Attack
Anonymous
2026-09-28 07:32:55
(1 day ago)
35.247.135.207 - - [28/Sep/2026:09:32:54 +0200] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/.env HTTP/2.0" 400 ...
show more
35.247.135.207 - - [28/Sep/2026:09:32:54 +0200] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/.env HTTP/2.0" 400 295 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot"
35.247.135.207 - - [28/Sep/2026:09:32:54 +0200] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/proc/self/environ HTTP/2.0" 400 295 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
35.247.135.207 - - [28/Sep/2026:09:32:54 +0200] "GET /public/plugins/alertlist/../../../../../../../../proc/self/environ HTTP/2.0" 400 295 "-" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)"
35.247.135.207 - - [28/Sep/2026:09:32:54 +0200] "GET /public/plugins/grafana-clock-panel/../../../../../../../../proc/self/environ HTTP/2.0" 400 295 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)"
35.247.135.207 - - [28/Sep/2026:09:32:54 +0200] "GET /public/plugins/text/../../../../../../../../proc/self/environ HTTP/2.0" 400 295 "-"
...
show less
Brute-Force
SSH
๐ฎ๐น
mgarofano80
2026-09-28 07:30:53
(1 day ago)
Brute-Force
Web App Attack
Anonymous
2026-09-28 06:30:08
(1 day ago)
Aggressive web scan
Web App Attack
๐ฉ๐ช
klaus_ph
2026-09-28 03:08:21
(1 day ago)
2026-09-27 03:08:20,640 fail2ban.actions [8144]: NOTICE [ipblocklist] Ban 35.247.135.207
...
Bad Web Bot
Anonymous
2026-09-28 02:04:14
(1 day ago)
CrowdSec: custom/http-ai-user-agent
Hacking
Web App Attack
๐ฉ๐ช
Viveronese
2026-09-27 19:12:37
(1 day ago)
HTTP vulnerability scanning
Web App Attack
Anonymous
2026-09-27 18:42:53
(1 day ago)
35.247.135.207 - - [27/Sep/2026:18:42:52 +0000] "-" 400 166 "-" "-"
35.247.135.207 - - [27/Sep/2026: ...
show more
35.247.135.207 - - [27/Sep/2026:18:42:52 +0000] "-" 400 166 "-" "-"
35.247.135.207 - - [27/Sep/2026:18:42:53 +0000] "-" 400 166 "-" "-"
35.247.135.207 - - [27/Sep/2026:18:42:53 +0000] "-" 400 166 "-" "-"
...
show less
Brute-Force
๐ง๐ช
voormedia
2026-09-27 18:38:08
(1 day ago)
Accessed trap at '/.gitlab-ci.yml'
Web App Attack
๐ฉ๐ช
McClay
2026-09-27 18:33:45
(1 day ago)
HTTP-404 spam:35.247.135.207 - - [27/Sep/2026:20:33:28 +0200] "GET /fwo2qg20fvdxmn2wy7kr HTTP/1.1" 4 ...
show more
HTTP-404 spam:35.247.135.207 - - [27/Sep/2026:20:33:28 +0200] "GET /fwo2qg20fvdxmn2wy7kr HTTP/1.1" 404 1017 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)"
35.247.135.207 - - [27/Sep/2026:20:33:28 +0200] "GET /5vpyzq0c26qy70v0hjj0 HTTP/1.1" 404 5172 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)"
35.247.135.207 - - [27/Sep/2026:20:33:28 +0200] "GET /z9x8c7v6b5-debug-trigger-xn--kster-jua.it HTTP/1.1" 404 5172 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)"
35.247.135.207 - - [27/Sep/2026:20:33:29 +0200] "GET /register HTTP/1.1" 404 1017 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
35.247.135.207 - - [27/Sep/2026:20:33:29 +0200] "GET /signup HTTP/1.1" 404 1017 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0
...
show less
Web App Attack