๐ซ๐ท
SpaceHost-Server
2026-09-13 22:20:59
(3 weeks ago)
Brute-Force
Web App Attack
๐น๐ญ
thaizone.com
2026-09-13 19:38:15
(3 weeks ago)
Brute Force Attack on a Web Resources #1
DDoS Attack
Web Spam
Brute-Force
Web App Attack
๐จ๐ฆ
polycoda
2026-09-13 19:21:29
(3 weeks ago)
๐ฅ VERY AGGRESSIVE SCANNER probed over 500 inexistent files and PHP scripts in less than an hour.
Hacking
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-13 19:06:01
(3 weeks ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice01,wa01,wa02]
Hacking
SQL Injection
Web App Attack
๐จ๐ฆ
polycoda
2026-09-13 18:25:18
(3 weeks ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - โ Excessive 40X Errors (Decay-Based)
Hacking
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-13 18:20:12
(3 weeks ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 18:03:36
(3 weeks ago)
(mod_security) mod_security (id:210580) triggered by 35.185.52.66 (66.52.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210580) triggered by 35.185.52.66 (66.52.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 14:03:28.268814 2026] [security2:error] [pid 17854:tid 17854] [client 35.185.52.66:36292] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:filename. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||maffiniandbearce.com|F|2"] [data "Matched Data: proc/self/environ found within ARGS:filename: file:/proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "maffiniandbearce.com"] [uri "/__vite_rsc_findSourceMapURL"] [unique_id "aqblcDIxVreP8af-HY9V0QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 17:00:15
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.185.52.66 (66.52.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.52.66 (66.52.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 13:00:08.072177 2026] [security2:error] [pid 7925:tid 7925] [client 35.185.52.66:51304] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "macryder.com"] [uri "/img../.env"] [unique_id "aqbWmMbul4EI-6fWTaW-DgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Celtic
2026-09-13 16:59:17
(3 weeks ago)
Blocked by Fail2Ban with Jail (plesk-modsecurity)
Brute-Force
SSH
Anonymous
2026-09-13 16:42:10
(3 weeks ago)
Banned by Fail2Ban on server
Web App Attack
๐บ๐ธ
dot.mg
2026-09-13 15:40:03
(3 weeks ago)
Bad behaviour
Web Spam
๐บ๐ธ
TPI-Abuse
2026-09-13 15:22:59
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 35.185.52.66 (66.52.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 35.185.52.66 (66.52.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 11:22:51.745320 2026] [security2:error] [pid 20768:tid 20768] [client 35.185.52.66:34738] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lyounglaw.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lyounglaw.com"] [uri "/z9x8c7v6b5-debug-trigger-lyounglaw.com"] [unique_id "aqa_y3auO7h9zHJq9xvAGgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 15:04:58
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.185.52.66 (66.52.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.52.66 (66.52.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 11:04:51.065373 2026] [security2:error] [pid 19977:tid 19977] [client 35.185.52.66:47530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lyldevelopers.com"] [uri "/static//.env"] [unique_id "aqa7k7azH7ce-NcELlJmUQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-13 14:24:20
(3 weeks ago)
Aggressive web scan
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-13 14:05:56
(3 weeks ago)
(mod_security) mod_security (id:949110) triggered by 35.185.52.66 (US/United States/66.52.185.35.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 35.185.52.66 (US/United States/66.52.185.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack