๐บ๐ธ
TPI-Abuse
2026-09-01 13:50:45
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.196.4.105 (105.4.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.4.105 (105.4.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:50:38.990636 2026] [security2:error] [pid 26078:tid 26078] [client 35.196.4.105:56514] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mapleleaf-marketing.com"] [uri "/wp-config.php.bak"] [unique_id "apbYLt3mkefL4YiOJEFJaAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-09-01 12:30:15
(2 hours ago)
Multiple WAF Violations
Web App Attack
๐ฌ๐ง
consul.to
2026-09-01 12:27:41
(2 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
debestelapp
2026-09-01 12:10:09
(2 hours ago)
Web App Attack
๐ฉ๐ช
Hazzard
2026-09-01 11:09:33
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐ฌ๐ง
Mendip_Defender
2026-09-01 10:58:23
(3 hours ago)
[01/Sep/2026:11:58:34.665653 +0100] apav2jovh059K9DdwUzqNwAAAFA 35.196.4.105 41808 188.246.206.60 70 ...
show more
[01/Sep/2026:11:58:34.665653 +0100] apav2jovh059K9DdwUzqNwAAAFA 35.196.4.105 41808 188.246.206.60 7081
[01/Sep/2026:11:58:34.672068 +0100] apav2jovh059K9DdwUzqOQAAAEU 35.196.4.105 41796 188.246.206.60 7081
...
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-01 10:58:13
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.4.105 (105.4.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.4.105 (105.4.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:58:09.553678 2026] [security2:error] [pid 13352:tid 13352] [client 35.196.4.105:58090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.yuichiro.us"] [uri "/.env.old"] [unique_id "apavwaOTqFoiuckvb2G0CQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Halux
2026-09-01 10:50:24
(4 hours ago)
35.196.4.105 Probing protected path or service
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:04:47
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.4.105 (105.4.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.4.105 (105.4.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:04:41.064726 2026] [security2:error] [pid 23105:tid 23105] [client 35.196.4.105:39084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unitedfuturistassociation.com"] [uri "/.env.save"] [unique_id "apajOXCo97W57z9HfrZ4YAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-09-01 09:59:26
(4 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.196.4.105 (US/United States/105.4.19 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.196.4.105 (US/United States/105.4.196.35.bc.googleusercontent.com)
show less
SQL Injection
๐ฌ๐ง
Aetherweb Ark
2026-09-01 09:42:28
(5 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.196.4.105 (US/United States/105.4.196.35.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 35.196.4.105 (US/United States/105.4.196.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 09:38:31
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.4.105 (105.4.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.4.105 (105.4.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:38:25.618907 2026] [security2:error] [pid 11196:tid 11196] [client 35.196.4.105:38148] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sixtiesdiner.jbaydeliveries.com"] [uri "/.env.prod"] [unique_id "apadEamkFk0szxkabVaRugAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-09-01 08:24:30
(6 hours ago)
[TueSep0110:24:25.2260312026][security2:error][pid2470761:tid2471215][client35.196.4.105:0]ModSecuri ...
show more
[TueSep0110:24:25.2260312026][security2:error][pid2470761:tid2471215][client35.196.4.105:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"manishimwe.ch.81-17-25-250.cpanel.site\"][uri\"/.env.save\"][unique_id\"apaLudM88xUsHM-i8uijawAAAJU\"]
show less
Hacking
Web App Attack
๐ฎ๐น
clamehost.it
2026-09-01 07:48:03
(7 hours ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
๐จ๐ฟ
Prcek
2026-09-01 07:30:56
(7 hours ago)
PortScan:HOST=35.196.4.105,DPORTS=443
Port Scan