🇧🇪
cmbplf
2026-09-10 02:25:59
(7 hours ago)
4.027 requests with url.path *.env
392 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
🇩🇪
larse99
2026-09-10 02:10:48
(8 hours ago)
Detected Scanning / Hacking activity
Port Scan
Hacking
🇮🇹
CoreTech srl
2026-09-10 01:24:00
(8 hours ago)
cloudlinux2 fail2ban: 2026-09-10 03:19:01,693 fail2ban.actions [1892]: NOTICE [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-10 03:19:01,693 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Unban 8.231.159.135cloudlinux2 fail2ban: 2026-09-10 03:19:01,413 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 90.74.24.82 - 2026-09-10 03:19:00cloudlinux2 fail2ban: 2026-09-10 03:20:06,381 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Unban 34.158.199.137cloudlinux2 fail2ban: 2026-09-10 03:21:16,145 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 178.43.250.123 - 2026-09-10 03:21:14cloudlinux2 fail2ban: 2026-09-10 03:21:23,332 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 172.98.33.44 - 2026-09-10 03:21:22cloudlinux2 fail2ban: 2026-09-10 03:21:23,369 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 172.98.33.42 - 2026-09-10 03:21:22cloudlinux2 fail2ban: 2026-09-10 03:21:27,832 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 185.251.19.53 - 2026-09-10 03:21:26cloudlinux2 fail2ban: 2026-09-10 03:22:01,793 fail2
show less
Web App Attack
Anonymous
2026-09-10 00:51:32
(9 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-10 00:28:30
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.197.213.85 (85.213.197.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.213.85 (85.213.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 20:28:24.045583 2026] [security2:error] [pid 19994:tid 20020] [client 35.197.213.85:40706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jupitermaturin.com"] [uri "/.git/config"] [unique_id "aqH5qAt0UfY72TV_LBOyowAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇾
lns.bz
2026-09-09 23:52:34
(10 hours ago)
Too many 404 requests [BY]
Web App Attack
Anonymous
2026-09-09 23:52:00
(10 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇩🇪
Marc
2026-09-09 23:19:50
(10 hours ago)
35.197.213.85 - - [10/Sep/2026:01:19:49 +0200] "GET /.git/config HTTP/1.1" 404 705 "-" "Mozilla/5.0 ...
show more
35.197.213.85 - - [10/Sep/2026:01:19:49 +0200] "GET /.git/config HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 35.197.213.85 - - [10/Sep/2026:01:19:50 +0200] "GET /.env HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 35.197.213.85 - - [10/Sep/2026:01:19:50 +0200] "GET /.env.local HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Brute-Force
🇺🇸
CBJ
2026-09-09 21:04:49
(13 hours ago)
fail2ban: apache-filepath-recon
...
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 21:00:25
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.197.213.85 (85.213.197.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.213.85 (85.213.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 17:00:15.607925 2026] [security2:error] [pid 9797:tid 9797] [client 35.197.213.85:58964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "juncurryahn.com"] [uri "/.git/config"] [unique_id "aqHI39BUMIkaEC8HZhUHlgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 18:44:10
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.197.213.85 (85.213.197.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.213.85 (85.213.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 14:44:03.582530 2026] [security2:error] [pid 1712:tid 1712] [client 35.197.213.85:34752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rejuvenationresources.com"] [uri "/.git/config"] [unique_id "aqGo8zqPgyrv3tCdiBXXFQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
cg-design.co.uk
2026-09-09 18:33:22
(15 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.197.213.85 (GB/United Kingdom/85.213 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.197.213.85 (GB/United Kingdom/85.213.197.35.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-09 18:03:44
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.197.213.85 (85.213.197.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.213.85 (85.213.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 14:03:37.749395 2026] [security2:error] [pid 26682:tid 26704] [client 35.197.213.85:47706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "julianositalianrestaurant.com"] [uri "/.git/config"] [unique_id "aqGfeRyuhDUYnJu5STkGoQAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-09 16:36:33
(17 hours ago)
20 attempts against mh-misbehave-ban on yuzu
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
agenciahypelab.com.br
2026-09-09 14:54:55
(19 hours ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH