๐ง๐ท
Halux
2026-09-02 23:04:52
(19 minutes ago)
35.199.127.38 Probing protected path or service
Web App Attack
Anonymous
2026-09-02 22:09:59
(1 hour ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: BR, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: BR, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 21:51:58
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.199.127.38 (38.127.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.127.38 (38.127.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 17:51:51.213713 2026] [security2:error] [pid 32635:tid 32635] [client 35.199.127.38:59932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dash.marat.info"] [uri "/.git/config"] [unique_id "apiad0yg9Gurt_ttKZE1JAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Yosi
2026-09-02 17:20:52
(6 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
Anonymous
2026-09-02 16:14:21
(7 hours ago)
IP matched detection query more than 2 hosts and only bad rq long ban.
Brute-Force
Web App Attack
Hacking
๐ซ๐ท
masterguru
2026-09-02 11:06:21
(12 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐บ๐ธ
mnsf
2026-09-02 10:05:17
(13 hours ago)
Abuse Detected (16)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 09:59:57
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.127.38 (38.127.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.127.38 (38.127.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 05:59:50.592888 2026] [security2:error] [pid 21969:tid 21969] [client 35.199.127.38:41832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dragonmaker.combustionlogic.com"] [uri "/.git/config"] [unique_id "apfzlv7RbJptE_-Ae1nFvwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
AetherFox
2026-09-02 07:58:43
(15 hours ago)
AetherFox VoidGuard detected: [Wed Sep 02 07:58:41.836447 2026] [authz_core:error] [pid 277708:tid 2 ...
show more
AetherFox VoidGuard detected: [Wed Sep 02 07:58:41.836447 2026] [authz_core:error] [pid 277708:tid 277755] [client 35.199.127.38:60962] AH01630: client denied by server configuration: proxy:https://[MASKED]/
[Wed Sep 02 07:58:42.269660 2026] [authz_core:error] [pid 277708:tid 277745] [client 35.199.127.38:60962] AH01630: client denied by server configuration: proxy:https://[MASKED]/
[Wed Sep 02 07:58:42.480743 2026] [authz_core:error] [pid 277708:tid 277737] [client 35.199.127.38:60962] AH01630: client denied by server configuration: proxy:https://[MASKED]/
[Wed Sep 02 07:58:42.700549 2026] [authz_core:error] [pid 277708:tid 277733] [client 35.199.127.38:60962] AH01630: client denied by server configuration: proxy:https://[MASKED]/
[Wed Sep 02 07:58:42.915568 2026] [authz_core:error] [pid 277708:tid 277731] [client 35.199.127.38:60962] AH01630: client denied by server configuration: proxy:https://[MASKED]/.git/config
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-02 05:51:58
(17 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+1 more) | 2026-09-02 05:51 UTC
show less
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 04:19:33
(19 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฌ๐ง
cg-design.co.uk
2026-09-02 03:30:32
(19 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.199.127.38 (BR/Brazil/38.127.199.35. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.199.127.38 (BR/Brazil/38.127.199.35.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ท
COMAITE
2026-09-02 02:56:49
(20 hours ago)
Suspicious URL access.
Web App Attack
๐บ๐ธ
kosada.com
2026-09-02 02:03:11
(21 hours ago)
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla ...
show more
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 02:01:06
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.127.38 (38.127.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.127.38 (38.127.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:00:59.162126 2026] [security2:error] [pid 16465:tid 16465] [client 35.199.127.38:34296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dpginc1.iyp-home.com"] [uri "/.git/config"] [unique_id "apeDW1r6JH-952zgad-ALgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack