🇲🇽
octageeks.com
2026-09-14 04:08:01
(2 hours ago)
Wordpress malicious attack:[octamissingdomain]
Web App Attack
Anonymous
2026-09-13 23:47:44
(6 hours ago)
XSS Attempt
Hacking
Anonymous
2026-09-13 18:30:05
(12 hours ago)
CrowdSec decision: crowdsecurity/http-admin-interface-probing (origin: crowdsec)
Web App Attack
Anonymous
2026-09-13 17:45:41
(13 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 16:04:07
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 12:03:59.547098 2026] [security2:error] [pid 11887:tid 11887] [client 35.185.130.164:58356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "silsby.com"] [uri "/userfiles"] [unique_id "aqbJb_W5dDUgIbKBq_Xw6QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
rh24
2026-09-13 15:54:14
(14 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 35.185.130.164 (TW/T ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 35.185.130.164 (TW/Taiwan/164.130.185.35.bc.googleusercontent.com)
show less
Bad Web Bot
🇨🇦
polycoda
2026-09-13 15:47:07
(15 hours ago)
AutoBlock: 📂 Directory Traversal (Non Decay-Based) - ❌ Excessive 40X Errors (Decay-Based)
Hacking
Bad Web Bot
Web App Attack
🇺🇸
dtorrer
2026-09-13 15:43:27
(15 hours ago)
General vulnerability scan.
Port Scan
🇩🇪
paissangroup
2026-09-13 15:41:28
(15 hours ago)
Multiple WAF Violations
Web App Attack
🇩🇰
HostingGroup
2026-09-13 15:16:53
(15 hours ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 2. First blocked: 2026-09-13.
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 15:08:37
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 11:08:29.935068 2026] [security2:error] [pid 5469:tid 5546] [client 35.185.130.164:41384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lasertagmetairie.com"] [uri "/.git/HEAD"] [unique_id "aqa8bQzCLb3T7uEyNekKUwAAAdM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-13 14:36:38
(16 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 14:29:40
(16 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 10:29:34.598738 2026] [security2:error] [pid 26302:tid 26302] [client 35.185.130.164:45290] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lapetitegrooming.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lapetitegrooming.com"] [uri "/z9x8c7v6b5-debug-trigger-lapetitegrooming.com"] [unique_id "aqazTkpCwT3VFijlRQ_YmgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 13:39:46
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 09:39:42.231657 2026] [security2:error] [pid 26091:tid 26091] [client 35.185.130.164:40640] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||landeagle.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "landeagle.com"] [uri "/z9x8c7v6b5-debug-trigger-landeagle.com"] [unique_id "aqannlImYaLHBA4cA1LH4wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 13:14:58
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.130.164 (164.130.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 09:14:50.785381 2026] [security2:error] [pid 27445:tid 27445] [client 35.185.130.164:54846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lambdaclimateresearch.com"] [uri "/appearance/../../.env"] [unique_id "aqahyhhtsOcaH7UQs3XJ7QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack