๐ฌ๐ท
setupgr
2026-06-20 21:36:37
(3 days ago)
(mod_security) mod_security (id:11000011) triggered by 35.222.38.39 (US/United States/Iowa/Council B ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.222.38.39 (US/United States/Iowa/Council Bluffs/-/[AS396982 GOOGLE-CLOUD-PLATFORM]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 21 00:36:36.061800 2026] [security2:error] [pid 2277:tid 2354] [client 35.222.38.39:34636] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "131"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 39.38.222.35.bc.googleusercontent.com"] [severity "CRITICAL"] [hostname "mail.setworldup.com"] [uri "/wordpress/"] [unique_id "ajcH5FVjV5VR3hAZ4rl-3AAAAEI"]
show less
Port Scan
๐ฉ๐ช
todix
2026-06-20 20:03:56
(3 days ago)
WebAttack or semilar from 35.222.38.39
Web App Attack
๐ฌ๐ท
setupgr
2026-06-20 19:39:46
(3 days ago)
(mod_security) mod_security (id:11000011) triggered by 35.222.38.39 (US/United States/Iowa/Council B ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.222.38.39 (US/United States/Iowa/Council Bluffs/-/[AS396982 GOOGLE-CLOUD-PLATFORM]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 22:39:45.311821 2026] [security2:error] [pid 579778:tid 579818] [client 35.222.38.39:36838] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "131"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 39.38.222.35.bc.googleusercontent.com"] [severity "CRITICAL"] [hostname "mail.pose.gr"] [uri "/wordpress/"] [unique_id "ajbsgXz2f_B-MiyFXhszTwAAAI0"]
show less
Port Scan
๐จ๐ฆ
Not Fake
2026-06-20 19:35:00
(3 days ago)
$f2bV_matches
Web App Attack
๐จ๐ฆ
polycoda
2026-06-20 18:14:50
(4 days ago)
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - ๐ Directory Listings (Decay-Based) - โช๏ธ Exces ...
show more
AutoBlock: ๐ฏ Vulnerability Scanner (Non Decay-Based) - ๐ Directory Listings (Decay-Based) - โช๏ธ Excessive 30X Errors (Decay-Based)
show less
Hacking
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-20 18:10:38
(4 days ago)
High error rate and elevated request volume targeting cPanel servers
Bad Web Bot
๐ฌ๐ท
setupgr
2026-06-20 17:53:01
(4 days ago)
(mod_security) mod_security (id:11000011) triggered by 35.222.38.39 (US/United States/Iowa/Council B ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.222.38.39 (US/United States/Iowa/Council Bluffs/-/[AS396982 GOOGLE-CLOUD-PLATFORM]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 20:53:01.650637 2026] [security2:error] [pid 785068:tid 785112] [client 35.222.38.39:46582] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "131"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 39.38.222.35.bc.googleusercontent.com"] [severity "CRITICAL"] [hostname "mail.sea-sound.com"] [uri "/wordpress/"] [unique_id "ajbTfRGXBK2iHtemAo_o6wAAARE"]
show less
Port Scan
๐จ๐ฆ
polycoda
2026-06-20 17:48:49
(4 days ago)
๐ Probes for backup files such as: temp.zip, main.zip, backup.zip, backup.sql, back.zip, old.zip, pa ...
show more
๐ Probes for backup files such as: temp.zip, main.zip, backup.zip, backup.sql, back.zip, old.zip, pack.zip, docs.zip, html.zip, www.zip, www1.zip, website.zip, web.zip, wp-config.php.zip, public_html.zip, wordpress.sql, etc...
show less
Hacking
Web App Attack