๐ณ๐ฟ
Antinson
2026-09-11 16:11:48
(2 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
Anonymous
2026-09-11 15:37:23
(3 hours ago)
35.192.76.100 - - [11/Sep/2026:17:37:08 +0200] "GET /.git/config HTTP/1.1" 403 614 "-" "Mozilla/5.0 ...
show more
35.192.76.100 - - [11/Sep/2026:17:37:08 +0200] "GET /.git/config HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.192.76.100 - - [11/Sep/2026:17:37:08 +0200] "GET /.env HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.192.76.100 - - [11/Sep/2026:17:37:08 +0200] "GET /.env.local HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.192.76.100 - - [11/Sep/2026:17:37:08 +0200] "GET /.env.production HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.192.76.100 - - [11/Sep/2026:17:37:08 +0200] "GET /.env.staging HTTP/1.1" 403 614 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
...
show less
DDoS Attack
๐ณ๐ฑ
Site.eu
2026-09-11 14:49:26
(3 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
4server
2026-09-11 14:32:18
(4 hours ago)
[FriSep1116:32:12.7307602026][security2:error][pid1902551:tid1902651][client35.192.76.100:0]ModSecur ...
show more
[FriSep1116:32:12.7307602026][security2:error][pid1902551:tid1902651][client35.192.76.100:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.federicorella.ch.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"aqQQ7Ew2NTJxaqp1MbcgZQAAAMQ\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 14:02:33
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.192.76.100 (100.76.192.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.192.76.100 (100.76.192.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 10:02:27.230033 2026] [security2:error] [pid 12069:tid 12069] [client 35.192.76.100:35816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fedeoliva.castagnino.com"] [uri "/.git/config"] [unique_id "aqQJ80LA5uklCK3gpix_RQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 12:47:47
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.192.76.100 (100.76.192.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.192.76.100 (100.76.192.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 08:47:42.320830 2026] [security2:error] [pid 27870:tid 27870] [client 35.192.76.100:55984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.feasibility.murpf.com"] [uri "/.git/config"] [unique_id "aqP4bsNnKFUbvv1rAHfJWAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
JaRoNL
2026-09-11 12:45:00
(5 hours ago)
35.192.76.100 - - \[10/Sep/2026:07:09:37 +0200\] "GET /.git/config HTTP/1.1" 301 696 "-" "Mozilla/5. ...
show more
35.192.76.100 - - \[10/Sep/2026:07:09:37 +0200\] "GET /.git/config HTTP/1.1" 301 696 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
35.192.76.100 - - \[10/Sep/2026:07:09:37 +0200\] "GET /.env HTTP/1.1" 301 682 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
35.192.76.100 - - \[10/Sep/2026:07:09:37 +0200\] "GET /.env.local HTTP/1.1" 301 694 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
35.192.76.100 - - \[10/Sep/2026:07:09:37 +0200\] "GET /.env.production HTTP/1.1" 301 704 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
35.192.76.100 - - \[10/Sep/2026:07:09:
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-11 12:41:58
(6 hours ago)
Excessive 404 errors - web scanning/probing
Bad Web Bot
๐ณ๐ฑ
JaRoNL
2026-09-11 11:42:11
(7 hours ago)
35.192.76.100 - - [11/Sep/2026:13:42:11 +0200] "GET /.git/config HTTP/1.1" 404 2129 "-" "Mozilla/5.0 ...
show more
35.192.76.100 - - [11/Sep/2026:13:42:11 +0200] "GET /.git/config HTTP/1.1" 404 2129 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-09-11 11:30:47
(7 hours ago)
Repeated exploit attempts, for example: /.env.production /.env (HTTP/1.1 port 443, user agent: "Mozi ...
show more
Repeated exploit attempts, for example: /.env.production /.env (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 10:59:34
(7 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.192.76.100 (100.76.192.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.192.76.100 (100.76.192.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 06:59:30.898540 2026] [security2:error] [pid 23754:tid 23754] [client 35.192.76.100:48938] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.fd.rustyog.net|F|2"] [data ".env.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fd.rustyog.net"] [uri "/.env.bak"] [unique_id "aqPfEsF02CWWi9ItyyDbEAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-11 10:57:45
(7 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 10:17:42
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.192.76.100 (100.76.192.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.192.76.100 (100.76.192.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 06:17:37.799884 2026] [security2:error] [pid 1818784:tid 1819540] [client 35.192.76.100:50814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fconct.pwrcoupling.com"] [uri "/.git/config"] [unique_id "aqPVQWLPhJgtVadW5sniowAAAMw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-09-11 08:52:19
(9 hours ago)
Multiple WAF Violations
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-11 08:10:55
(10 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack