🇳🇱
BlueWire Hosting
2026-09-15 13:59:53
(11 minutes ago)
Aggressive scanning resulting into 404
Bad Web Bot
🇺🇸
interbiznw.com
2026-09-15 13:49:16
(21 minutes ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 13:36:13
(34 minutes ago)
(mod_security) mod_security (id:210580) triggered by 35.223.46.211 (211.46.223.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210580) triggered by 35.223.46.211 (211.46.223.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:36:07.002634 2026] [security2:error] [pid 1025385:tid 1025385] [client 35.223.46.211:50900] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "proc/self/environ" at ARGS:filename. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||ic1.biz|F|2"] [data "Matched Data: proc/self/environ found within ARGS:filename: file:/proc/self/environ"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "ic1.biz"] [uri "/__vite_rsc_findSourceMapURL"] [unique_id "aqlJxt9qpc_soWdHNU6-SgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Alboweb B.V.
2026-09-15 13:11:03
(59 minutes ago)
Bad web bot activity detected by Fail2Ban in plesk-apache-badbot jail
Bad Web Bot
🇳🇱
Savvii
2026-09-15 13:01:50
(1 hour ago)
95 attempts against mh_ha-misbehave-ban on twig
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
EmK530
2026-09-15 12:48:51
(1 hour ago)
URL flagged by RegEx: /@fs/home/ec2-user/.aws/credentials?raw??
Web App Attack
🇳🇱
mieg
2026-09-15 12:43:24
(1 hour ago)
Web vulnerability probing
Brute-Force
Web App Attack
🇩🇪
AetherFox
2026-09-15 12:41:41
(1 hour ago)
AetherFox VoidGuard detected: [Tue Sep 15 12:41:40.858306 2026] [authz_core:error] [pid 2445704:tid ...
show more
AetherFox VoidGuard detected: [Tue Sep 15 12:41:40.858306 2026] [authz_core:error] [pid 2445704:tid 2445707] [client 35.223.46.211:53330] AH01630: client denied by server configuration: proxy:https://[MASKED]/localhost.key
[Tue Sep 15 12:41:41.172076 2026] [authz_core:error] [pid 2445704:tid 2445728] [client 35.223.46.211:53330] AH01630: client denied by server configuration: proxy:https://[MASKED]/private-key
[Tue Sep 15 12:41:41.244367 2026] [authz_core:error] [pid 2445704:tid 2445715] [client 35.223.46.211:53358] AH01630: client denied by server configuration: proxy:https://[MASKED]/privatekey.key
[Tue Sep 15 12:41:41.257142 2026] [authz_core:error] [pid 2445704:tid 2445717] [client 35.223.46.211:53338] AH01630: client denied by server configuration: proxy:https://[MASKED]/host.key
[Tue Sep 15 12:41:41.300878 2026] [authz_core:error] [pid 2445704:tid 2445709] [client 35.223.46.211:53330] AH01630: client denied by server configuration: proxy:https://5.
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 12:40:18
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.223.46.211 (211.46.223.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.223.46.211 (211.46.223.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:40:15.060828 2026] [security2:error] [pid 5030:tid 5030] [client 35.223.46.211:45252] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dodojuice.com"] [uri "/@fs/proc/self/cwd/.env"] [unique_id "aqk8r54zVk608PjE2FYTPgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
dalslab ltd
2026-09-15 12:26:51
(1 hour ago)
35.223.46.211 - - [15/Sep/2026:14:26:51 +0200] "POST /graphql HTTP/1.1" 405 556 "http://dalslab.com" ...
show more
35.223.46.211 - - [15/Sep/2026:14:26:51 +0200] "POST /graphql HTTP/1.1" 405 556 "http://dalslab.com" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
35.223.46.211 - - [15/Sep/2026:14:26:51 +0200] "GET /public/plugins/grafana-clock-panel/../../../../../../../../proc/self/environ HTTP/1.1" 400 154 "-" "-"
35.223.46.211 - - [15/Sep/2026:14:26:51 +0200] "POST /api/graphql HTTP/1.1" 405 556 "http://dalslab.com" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
35.223.46.211 - - [15/Sep/2026:14:26:51 +0200] "GET /%2E%2E/%2E%2E/%2E%2E/%2E%2E/proc/self/environ HTTP/1.1" 400 154 "-" "-"
35.223.46.211 - - [15/Sep/2026:14:26:51 +0200] "GET /public/plugins/text/../../../../../../../../proc/self/environ HTTP/1.1" 400 154 "-" "-"
...
show less
Web Spam
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 12:15:23
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 35.223.46.211 (211.46.223.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.223.46.211 (211.46.223.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:15:14.814466 2026] [security2:error] [pid 10323:tid 10323] [client 35.223.46.211:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cloudex.link|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cloudex.link"] [uri "/rclone.conf"] [unique_id "aqk20tqzWP0pgTKxAXHOzQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
ChamberofCommerce.com
2026-09-15 12:09:14
(2 hours ago)
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested ...
show more
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested Before Block:227
show less
Bad Web Bot
🇳🇱
Site.eu
2026-09-15 12:03:59
(2 hours ago)
Excessive 404/403 errors
Brute-Force
🇳🇱
Savvii
2026-09-15 11:59:26
(2 hours ago)
24 attempts against mh-misbehave-ban on lunar
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-15 11:22:45
(2 hours ago)
20 attempts against mh-misbehave-ban on choy
Brute-Force
Bad Web Bot
Web App Attack