๐บ๐ธ
TPI-Abuse
2026-10-03 08:17:48
(16 minutes ago)
(mod_security) mod_security (id:210492) triggered by 136.108.241.135 (135.241.108.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.241.135 (135.241.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 04:17:43.628292 2026] [security2:error] [pid 31222:tid 31222] [client 136.108.241.135:47618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.deubellzebub.com"] [uri "/dist/.env"] [unique_id "asC6J0yC7rNDfErfGkfWbwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-03 07:35:19
(59 minutes ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-10-03 07:23:39
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.108.241.135 (135.241.108.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.241.135 (135.241.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 03:23:34.336299 2026] [security2:error] [pid 25265:tid 25265] [client 136.108.241.135:45136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.saletrender.com"] [uri "/static../.env"] [unique_id "asCtdhUBZdm-RYjw8rOhsgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-03 06:17:23
(2 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 05:37:20
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.108.241.135 (135.241.108.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.241.135 (135.241.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 01:37:16.586492 2026] [security2:error] [pid 18724:tid 18724] [client 136.108.241.135:39482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "samuelcurtis.com"] [uri "/media../.env"] [unique_id "asCUjKuwkNn30lBC0dvJ7AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-03 05:16:50
(3 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-03 04:57:42
(3 hours ago)
(mod_security) mod_security (id:210730) triggered by 136.108.241.135 (135.241.108.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210730) triggered by 136.108.241.135 (135.241.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 00:57:36.578317 2026] [security2:error] [pid 16120:tid 16191] [client 136.108.241.135:33552] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.sandiegosamband.com|F|2"] [data ".sandiegosamband.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.sandiegosamband.com"] [uri "/z9x8c7v6b5-debug-trigger-www.sandiegosamband.com"] [unique_id "asCLQLzlJuVuIsmEWxsKsQAAAZI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-10-03 04:24:08
(4 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ง๐ช
cmbplf
2026-10-03 02:40:08
(5 hours ago)
418 requests with url.path *.env
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-03 02:00:15
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 136.108.241.135 (135.241.108.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210730) triggered by 136.108.241.135 (135.241.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 22:00:06.711347 2026] [security2:error] [pid 18480:tid 18480] [client 136.108.241.135:44018] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.gulftelecom.com|F|2"] [data ".gulftelecom.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.gulftelecom.com"] [uri "/z9x8c7v6b5-debug-trigger-www.gulftelecom.com"] [unique_id "asBhpsJ2RkE2YhsNyaj1ZwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dot.mg
2026-10-03 00:59:02
(7 hours ago)
Bad behaviour
Web Spam
Anonymous
2026-10-02 21:49:10
(10 hours ago)
Bot / scanning and/or hacking attempts: POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/. ...
show more
Bot / scanning and/or hacking attempts: POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e, POST /php-cgi/php-cgi.exe?%ADd+allow_url_include%3d1+%ADd+auto_, POST /api/fs/exec HTTP/2.0, POST /feast/read-document HTTP/2.0, POST /api/v1/node-load-method/customMCP HTTP/2.0, POST /cgi-bin/php-cgi.exe?%ADd+allow_url_include%3d1+%ADd+auto_
show less
Hacking
Web App Attack
๐ฎ๐น
VHosting
2026-10-02 20:10:03
(12 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ช๐ธ
masterguru
2026-10-02 19:28:43
(13 hours ago)
BAD BOT - Detected and Blocked.. Matched phrase "applebot" at REQUEST_HEADERS:user-agent. (1100000-1 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "applebot" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-02 19:17:30
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.108.241.135 (135.241.108.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.241.135 (135.241.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 15:17:23.297308 2026] [security2:error] [pid 17708:tid 17708] [client 136.108.241.135:57684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jemsfood.com"] [uri "/.env.js"] [unique_id "asADQ0ZzWCeno0g9pEcP9AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack