๐ฎ๐น
VHosting
2026-08-21 19:40:04
(2 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-08-21 15:42:40
(6 hours ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 15:11:12
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 11:11:06.283996 2026] [security2:error] [pid 9282:tid 9282] [client 136.64.96.80:53122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chelseafootballprogrammes.com"] [uri "/.git/config"] [unique_id "aohqijs_u0pxqyBw6BpjmAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-21 13:35:48
(8 hours ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 136.64.96.80 (US/United States/80.96.64. ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 136.64.96.80 (US/United States/80.96.64.136.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 136.64.96.80 - - [21/Aug/2026:15:35:43 +0200] "GET /.aws/credentials HTTP/2.0" 404 1130 "-" "Mozilla/5.0 (compatible; GoogleOther; +http://www.google.com/bot.html)" "-" host=mail.checkall.cloud
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-21 13:06:04
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 09:05:59.749990 2026] [security2:error] [pid 15875:tid 15875] [client 136.64.96.80:41996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cheaptrafficschool247.com"] [uri "/.git/config"] [unique_id "aohNN8Vk2ndc9Ne1dZyXqgAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-21 12:15:50
(9 hours ago)
csagent: score 21.8: 404 noise floor x7, secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐ท๐บ
DZBOT
2026-08-21 11:55:14
(9 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 11:26:47
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 07:26:41.828837 2026] [security2:error] [pid 2125:tid 2125] [client 136.64.96.80:44342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.chateau-saleza-bruges.com"] [uri "/.git/config"] [unique_id "aog18QdrsHPNG2b50MlT2gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-08-21 09:21:52
(12 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-21 08:06:48
(13 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 07:16:10
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 03:16:04.267897 2026] [security2:error] [pid 18073:tid 18073] [client 136.64.96.80:35960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/Web.config" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chicagosukkahcenter.com"] [uri "/web.config"] [unique_id "aof7NGW5t8fER1VU-KwL3AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Halux
2026-08-21 06:02:47
(15 hours ago)
136.64.96.80 Probing protected path or service
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 05:21:14
(16 hours ago)
(mod_security) mod_security (id:210730) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 01:21:10.758719 2026] [security2:error] [pid 3436:tid 3436] [client 136.64.96.80:54104] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.cherylpelletier.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.cherylpelletier.com"] [uri "/rclone.conf"] [unique_id "aofgRtEqUsaAb7QVvBTk6wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-21 05:09:20
(16 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-21 04:38:58
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.96.80 (80.96.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 00:38:51.738608 2026] [security2:error] [pid 13538:tid 13538] [client 136.64.96.80:55880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.chassell.info"] [uri "/.git/config"] [unique_id "aofWW3Q0i0o0Rknz7Wc4igAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack