๐ณ๐ฑ
Site.eu
2026-10-08 14:14:45
(20 hours ago)
Excessive multi-domain requests
Brute-Force
๐ต๐ฑ
strefapi_com
2026-10-06 10:28:43
(3 days ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐ง๐ท
radardatelecom
2026-10-05 22:27:04
(3 days ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐บ๐ธ
leasj
2026-10-05 21:41:39
(3 days ago)
Observed Scanned 43 known-sensitive endpoint(s), e.g.: /media../.env, /files../.env, /static../.env, ...
show more
Observed Scanned 43 known-sensitive endpoint(s), e.g.: /media../.env, /files../.env, /static../.env, /uploads../.env, /assets../.env.
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 11:33:11
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.227.133.239 (239.133.227.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.227.133.239 (239.133.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 07:33:04.995491 2026] [security2:error] [pid 25306:tid 25306] [client 35.227.133.239:40492] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||susanleeward.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "susanleeward.com"] [uri "/z9x8c7v6b5-debug-trigger-susanleeward.com"] [unique_id "asOK8P0cfD9uCEogi2QS-QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 10:10:06
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.227.133.239 (239.133.227.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.227.133.239 (239.133.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 06:09:59.322054 2026] [security2:error] [pid 15756:tid 15756] [client 35.227.133.239:35482] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||supportconvalelementary.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "supportconvalelementary.com"] [uri "/z9x8c7v6b5-debug-trigger-supportconvalelementary.com"] [unique_id "asN3d8Ij7d5NzrOfJC9QdgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-10-05 09:37:42
(4 days ago)
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .backup/ ...
show more
URL file extension is restricted by policy. String match within ".ani/ .asa/ .asax/ .ascx/ .backup/ .bak/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .com/ .compositefont/ .config/ .conf/ .crt/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dist/ .dll/ .dos/ .dpkg-dist/ .drv/ .gadget/ .hta/ .htr/ .htw/ .ida/ .idc/ .idq/ .inc/ .inf/ .ini/ .jse/ .key/ .licx/ .lnk/ .log/ .mdb/ .msc/ .ocx/ .old/ .pass/ .pdb/ .pfx/ .pif/ .pem/ .pol/ .prf/ .printer/ .pwd/ .rdb/ .rdp/ .reg/ .resources/ .resx/ .scr/ .sct/ .shs/ .sql/ .swp/ .sys/ .tlb/ .tmp/ .url/ .vb/ .vbe/ .vbs/ .vbproj/ .vsdisco/ .vxd/ .webinfo/ .ws/ .wsc/ .wsf/ .wsh/ .xsd/ .xsx/" at TX:extension. (920440-195)
show less
Hacking
๐ฆ๐บ
2000cn.com.au
2026-10-05 09:14:37
(4 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฆ๐บ
A.i.D.A.N.N
2026-10-05 08:36:33
(4 days ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐บ๐ธ
Mundo Bueno
2026-10-05 07:46:49
(4 days ago)
[ISILIA Protection v2.3] Tentative d'accรจs: /api/.env [RATE LIMITED - 1800s quarantine] | Pays: US | ...
show more
[ISILIA Protection v2.3] Tentative d'accรจs: /api/.env [RATE LIMITED - 1800s quarantine] | Pays: US | UA: Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)
show less
Hacking
Web App Attack
๐ฉ๐ช
raph
2026-10-05 06:39:14
(4 days ago)
[LIB DIR] crawler /vendor/*, /node_modules/*, /laravel/*, etc.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 06:39:04
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.227.133.239 (239.133.227.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.227.133.239 (239.133.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 02:38:55.947552 2026] [security2:error] [pid 12340:tid 12340] [client 35.227.133.239:57570] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||suedblick.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "suedblick.com"] [uri "/z9x8c7v6b5-debug-trigger-suedblick.com"] [unique_id "asNF_1H5DwiCmUVtFYtuOQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-05 05:12:52
(4 days ago)
Excessive multi-domain requests
Brute-Force
๐ฌ๐ง
consul.to
2026-10-05 04:52:11
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 04:22:11
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.227.133.239 (239.133.227.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.227.133.239 (239.133.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 00:22:07.058096 2026] [security2:error] [pid 14859:tid 14859] [client 35.227.133.239:40178] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||strippolefitness.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "strippolefitness.com"] [uri "/z9x8c7v6b5-debug-trigger-strippolefitness.com"] [unique_id "asMl79aXvYtnwXbFrmvDCwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack