Anonymous
2026-09-16 13:45:08
(37 minutes ago)
Observed scanned 6 known-sensitive endpoint(s), e.g.: /.bashrc, /__vite_rsc_findSourceMapURL, /api/t ...
show more
Observed scanned 6 known-sensitive endpoint(s), e.g.: /.bashrc, /__vite_rsc_findSourceMapURL, /api/templates/preview, /env.bak, /production/.env, /uploads../.env
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 06:44:31
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.202.119.107 (107.119.202.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.202.119.107 (107.119.202.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 02:44:22.929055 2026] [security2:error] [pid 22065:tid 22065] [client 35.202.119.107:38298] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theillustrator.net"] [uri "/static//.env"] [unique_id "aqo6xkbnhJSJosl4F_2PKgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 06:00:02
(8 hours ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
larse99
2026-09-16 05:54:29
(8 hours ago)
Detected Scanning / Hacking activity
Port Scan
Hacking
๐ช๐ธ
masterguru
2026-09-16 05:44:17
(8 hours ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-16 05:42:24
(8 hours ago)
(mod_security) mod_security (id:210580) triggered by 35.202.119.107 (107.119.202.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210580) triggered by 35.202.119.107 (107.119.202.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 01:42:19.829324 2026] [security2:error] [pid 26624:tid 26624] [client 35.202.119.107:50244] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:path. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||studioarts.net|F|2"] [data "Matched Data: proc/self/environ found within ARGS:path: ../../../../proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "studioarts.net"] [uri "/userfiles"] [unique_id "aqosO7loTdTilxIHOD1aRQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-16 05:24:19
(8 hours ago)
excessive HTTP 404 errors
Bad Web Bot
๐ฉ๐ช
pltcldvlpr
2026-09-16 04:52:12
(9 hours ago)
CMS/framework probe: 35.202.119.107 - - [16/Sep/2026:06:52:11 +0200] "GET /var/run/secrets/kubernete ...
show more
CMS/framework probe: 35.202.119.107 - - [16/Sep/2026:06:52:11 +0200] "GET /var/run/secrets/kubernetes.io/serviceaccount/token HTTP/2.0" 301 178 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )" asn=396982 org="Google LLC" country=US
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 04:23:06
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.202.119.107 (107.119.202.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.202.119.107 (107.119.202.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:23:03.059638 2026] [security2:error] [pid 4653:tid 4653] [client 35.202.119.107:40464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stsis.me"] [uri "/%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env"] [unique_id "aqoZp9J4y4OBo4lh6WZUyAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:26:19
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.202.119.107 (107.119.202.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.202.119.107 (107.119.202.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:26:11.983020 2026] [security2:error] [pid 4991:tid 4991] [client 35.202.119.107:34244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stringview.com"] [uri "/static../.env"] [unique_id "aqoMU7qNO0L3guSA24mbXwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-09-16 03:24:40
(10 hours ago)
35.202.119.107 - - [16/Sep/2026:04:24:55 +0100] "GET /.aws/config HTTP/1.1" 404 6418 "-" "Mozilla/5. ...
show more
35.202.119.107 - - [16/Sep/2026:04:24:55 +0100] "GET /.aws/config HTTP/1.1" 404 6418 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )"
...
show less
Bad Web Bot
๐ฉ๐ช
dbmwebdesign
2026-09-16 03:20:15
(11 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ต๐ฑ
strefapi_com
2026-09-16 02:54:12
(11 hours ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 02:41:21
(11 hours ago)
[ti-02ra] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[ti-02ra] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 35.202.119.107 - - [16/Sep/2026:04:41:06 +0200] "GET /__vite_rsc_findSourceMapURL?filename=file:///root/.aws/credentials&environmentName=rsc HTTP/2.0" 404 1880 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)"
35.202.119.107 - - [16/Sep/2026:04:41:06 +0200] "GET /__vite_rsc_findSourceMapURL?filename=file:///proc/self/environ&environmentName=rsc HTTP/2.0" 404 1857 "-" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"
35.202.119.107 - - [16/Sep/2026:04:41:06 +0200] "GET /z9x8c7v6b5-debug-trigger-streetlightministries.nl HTTP/2.0" 404 1857 "-" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)"
35.202.119.107 - - [16/Sep/2026:04
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-09-16 02:38:39
(11 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack