🇺🇸
TPI-Abuse
2026-09-04 15:21:10
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 11:21:05.204537 2026] [security2:error] [pid 3195501:tid 3195525] [client 35.198.82.79:38502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thebiglies.com"] [uri "/wp-config.php.swp"] [unique_id "aprh4QuUpFkDAfmyFWTDmAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
MyGlobalFlowers
2026-09-04 14:40:03
(3 hours ago)
Multiple WAF Violations
Web App Attack
🇩🇪
raph
2026-09-04 14:15:46
(3 hours ago)
[Wordpress] crawler /wp-admin/*, /wp-content/*, etc.
Bad Web Bot
Web App Attack
🇩🇪
netclix.gr
2026-09-04 14:11:36
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.198.82.79 (DE/Germany/79.82.198.35.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.198.82.79 (DE/Germany/79.82.198.35.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-04 13:41:31
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 09:41:25.042633 2026] [security2:error] [pid 26557:tid 26620] [client 35.198.82.79:56114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ureseal.com"] [uri "/wp-config.php~"] [unique_id "aprKhVIYldfnp1qG2Jd8YwAAAdg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-04 13:33:26
(4 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.198.82.79 (DE/Germany/79.82.198.35.bc.google ...
show more
(mod_security) mod_security (id:949110) triggered by 35.198.82.79 (DE/Germany/79.82.198.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇩🇪
FD-IX
2026-09-04 13:01:48
(4 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 12:35:22
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:35:17.276978 2026] [security2:error] [pid 15223:tid 15223] [client 35.198.82.79:56964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.citywidereo.com"] [uri "/.env.example"] [unique_id "apq7BReCyHvRPj0t_V5HcAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:44:39
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:44:30.891796 2026] [security2:error] [pid 6921:tid 6921] [client 35.198.82.79:46218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "copiersasheville.computersraleigh.com"] [uri "/.env.save"] [unique_id "apqvHvsAsftgBHPi7ZDWkwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 11:40:02
(6 hours ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-04 11:26:06
(6 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 11:18:26
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:18:19.525710 2026] [security2:error] [pid 29599:tid 29599] [client 35.198.82.79:43002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emsystemsltd.com"] [uri "/.env.production"] [unique_id "apqo-z56bhVbGQ2prwsAtQAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 09:57:06
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.82.79 (79.82.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 05:57:00.730052 2026] [security2:error] [pid 6946:tid 6946] [client 35.198.82.79:37652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "okwellbeing.com"] [uri "/.env.bak"] [unique_id "apqV7KLeXPDQqQ9Cb306ywAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-04 09:24:03
(8 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
abenage
2026-09-04 09:23:54
(8 hours ago)
35.198.82.79 - - [04/Sep/2026:03:23:53 -0600] "GET /wp-config.php.bak HTTP/1.1" 404 162 "-" "crusade ...
show more
35.198.82.79 - - [04/Sep/2026:03:23:53 -0600] "GET /wp-config.php.bak HTTP/1.1" 404 162 "-" "crusader-worker/1.0"
show less
Bad Web Bot
Web App Attack