πΊπΈ
TPI-Abuse
2026-09-01 02:12:14
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 35.196.80.147 (147.80.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.196.80.147 (147.80.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 22:12:07.229226 2026] [security2:error] [pid 26795:tid 26795] [client 35.196.80.147:58720] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.emeraldcoastappraisals.com.g-h2o.com|F|2"] [data ".env.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.emeraldcoastappraisals.com.g-h2o.com"] [uri "/.env.bak"] [unique_id "apY0d0aIUrb_iN_xJxY0TwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 01:55:03
(1 hour ago)
suspicious request in access.log
Web App Attack
π³π±
Savvii
2026-09-01 00:35:43
(2 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-08-31 21:59:41
(5 hours ago)
Auto-ban: >3000 req/min op 2026-08-31
Web App Attack
SSH
Hacking
π¨π
zynex
2026-08-31 13:54:15
(13 hours ago)
URL Probing: /.env
Web App Attack
π²πΎ
Rizzy
2026-08-31 13:18:57
(14 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
π«π·
Octopuce
2026-08-31 12:39:40
(14 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
π¬π§
consul.to
2026-08-31 12:29:18
(14 hours ago)
Web attack/malicious scanning detected
Web App Attack
πΈπͺ
vaia.cloud
2026-08-31 12:05:02
(15 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
π¦πΊ
screwlooseit.com.au
2026-08-31 11:04:04
(16 hours ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/147.80.196.35.bc.googleuserconten ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/147.80.196.35.bc.googleusercontent.com
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 11:04:02
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.80.147 (147.80.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.80.147 (147.80.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 07:03:57.597398 2026] [security2:error] [pid 22922:tid 22922] [client 35.196.80.147:44262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fatcaverecords.fatcavemedia.com"] [uri "/.git/config"] [unique_id "apVfnXTslZ87I0ADf6xzwgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 10:38:23
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.80.147 (147.80.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.80.147 (147.80.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:38:17.172513 2026] [security2:error] [pid 28382:tid 28382] [client 35.196.80.147:54780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fastquizmaker.com.creartest.com"] [uri "/.git/config"] [unique_id "apVZmT8FhKGlGwrrWgiSggAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³πΏ
Antinson
2026-08-31 08:53:15
(18 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-08-31 08:30:22
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.80.147 (147.80.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.80.147 (147.80.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:30:13.460302 2026] [security2:error] [pid 26732:tid 26732] [client 35.196.80.147:43516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.farnborough-airshow.christinepeat.com"] [uri "/.git/config"] [unique_id "apU7lc2_b5rlADImzZQcUgAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΏπ¦
conure.sh
2026-08-31 08:11:56
(19 hours ago)
csagent: score 19.9: secrets grab x2; 1 domain(s) in 2s
Web App Attack