๐ซ๐ท
masterguru
2026-09-30 05:08:58
(6 days ago)
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encod ...
show more
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encoding/ /proxy/ /lock-token/ /content-range/ /if/ /x-http-method-override/ /x-http-method/ /x-method-override/ /x-middleware-subrequest/ /expect/" at TX:header_name_920450_x-middleware-subrequest. (920450-197)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-30 05:05:12
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 35.198.255.204 (204.255.198.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.198.255.204 (204.255.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 01:05:07.919314 2026] [security2:error] [pid 2328:tid 2328] [client 35.198.255.204:53230] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||innolympics.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "innolympics.com"] [uri "/z9x8c7v6b5-debug-trigger-innolympics.com"] [unique_id "aryYg4IX1RGoW1rESSmOwAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 04:22:46
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 35.198.255.204 (204.255.198.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.255.204 (204.255.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:22:39.984263 2026] [security2:error] [pid 13878:tid 13878] [client 35.198.255.204:55538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "inmaine.us"] [uri "/src/.env"] [unique_id "aryOj2MtEYww75rKgnxHBgAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
pscriptos
2026-09-30 04:18:48
(6 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ฎ๐ฉ
sockominfo
2026-09-30 03:00:28
(6 days ago)
Reported by TangerangKota-CSIRT. Status: MALICIOUS
Hacking
Email Spam
๐ณ๐ด
jad-abuse
2026-09-30 02:14:18
(6 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: env_probe ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: env_probe, path_traversal, aws_creds, ssh_keys, config_backup, source_backup, actuator, ignition_debug. Observed by 1 sensor(s); 390 hits.
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 02:09:26
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 35.198.255.204 (204.255.198.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.255.204 (204.255.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 22:09:19.351174 2026] [security2:error] [pid 22598:tid 22598] [client 35.198.255.204:37626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ficklepassionproductions.com"] [uri "/.env.backup"] [unique_id "arxvT4DE-Hn85913B01aAAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-30 01:44:50
(6 days ago)
Aggressive web scan
Web App Attack
๐ต๐ฑ
lns.bz
2026-09-30 01:28:08
(6 days ago)
Web app attack [PL.Lu]
Exploited Host
Web App Attack
๐ฉ๐ช
bazter.pro
2026-09-30 01:00:58
(6 days ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-30 00:35:02
(6 days ago)
442 requests with url.path */@fs/*
Brute-Force
Bad Web Bot
๐ณ๐ฑ
EGP Abuse Dept
2026-09-30 00:29:51
(6 days ago)
Unauthorized connection to proxy port 8080
Port Scan
Hacking
๐ณ๐ฑ
Site.eu
2026-09-30 00:10:26
(6 days ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-29 21:33:26
(6 days ago)
[ns31.kdns.gr] httpd-config-scan: sites=www.inpv.gr; logs=/var/log/httpd/domains/inpv.gr.log; sample ...
show more
[ns31.kdns.gr] httpd-config-scan: sites=www.inpv.gr; logs=/var/log/httpd/domains/inpv.gr.log; samples=/frontend/.env | /.env | /.env.example
show less
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-29 20:48:05
(6 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 128
Exploited Host
Web App Attack