๐จ๐ญ
backslash
2026-08-19 21:03:02
(9 minutes ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-19 20:45:34
(27 minutes ago)
(mod_security) mod_security (id:210730) triggered by 35.231.10.220 (220.10.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.231.10.220 (220.10.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 16:45:28.635623 2026] [security2:error] [pid 26074:tid 26074] [client 35.231.10.220:50926] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||brainwavecenters.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brainwavecenters.com"] [uri "/rclone.conf"] [unique_id "aoYV6GD2pcM0C9sUkogkXgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-08-19 20:41:47
(30 minutes ago)
[Wed Aug 19 22:41:47.578873 2026] [proxy_fcgi:error] [pid 232765:tid 232892] [remote 35.231.10.220:0 ...
show more
[Wed Aug 19 22:41:47.578873 2026] [proxy_fcgi:error] [pid 232765:tid 232892] [remote 35.231.10.220:0] AH01071: Got error 'Primary script unknown\n'
[Wed Aug 19 22:41:47.578906 2026] [proxy_fcgi:error] [pid 232765:tid 232860] [remote 35.231.10.220:0] AH01071: Got error 'Primary script unknown\n'
...
show less
Hacking
Web App Attack
๐ฉ๐ช
kommunos
2026-08-19 20:24:27
(48 minutes ago)
/configuration.php.bak
Web App Attack
๐ฎ๐น
Inartis
2026-08-19 20:05:59
(1 hour ago)
35.231.10.220 - - [19/Aug/2026:22:05:51 +0200] "GET /.git/config HTTP/1.1" 403 8030 "-" "Mozilla/5.0 ...
show more
35.231.10.220 - - [19/Aug/2026:22:05:51 +0200] "GET /.git/config HTTP/1.1" 403 8030 "-" "Mozilla/5.0 (compatible; Amzn-SearchBot/1.0; +https://developer.amazon.com/support/amazonbot)"
35.231.10.220 - - [19/Aug/2026:22:05:56 +0200] "GET /.env.example HTTP/1.1" 403 352 "-" "Mozilla/5.0 (compatible; Amzn-SearchBot/1.0; +https://developer.amazon.com/support/amazonbot)"
35.231.10.220 - - [19/Aug/2026:22:05:57 +0200] "GET /.env HTTP/1.1" 403 352 "-" "Mozilla/5.0 (compatible; Amzn-SearchBot/1.0; +https://developer.amazon.com/support/amazonbot)"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-08-19 19:53:06
(1 hour ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ณ๐ฑ
Roderic
2026-08-19 19:44:03
(1 hour ago)
(PERMBLOCK) 35.231.10.220 (US/United States/South Carolina/North Charleston/220.10.231.35.bc.googleu ...
show more
(PERMBLOCK) 35.231.10.220 (US/United States/South Carolina/North Charleston/220.10.231.35.bc.googleusercontent.com/[redacted]) has had more than 4 temp blocks
show less
Hacking
๐ฉ๐ช
macrob
2026-08-19 19:37:29
(1 hour ago)
2026/08/19 19:37:27 [error] 481493#481493: *498059055 access forbidden by rule, client: 35.231.10.22 ...
show more
2026/08/19 19:37:27 [error] 481493#481493: *498059055 access forbidden by rule, client: 35.231.10.220, server: binixo.mx, request: "GET /.aws/credentials HTTP/2.0", host: "binixo.mx"
2026/08/19 19:37:27 [error] 481493#481493: *498059055 access forbidden by rule, client: 35.231.10.220, server: binixo.mx, request: "GET /.aws/config HTTP/2.0", host: "binixo.mx"
2026/08/19 19:37:27 [error] 481493#481493: *498059055 access forbidden by rule, client: 35.231.10.220, server: binixo.mx, request: "GET /.git/config HTTP/2.0", host: "binixo.mx"
...
show less
Web App Attack
๐ฉ๐ช
findlab
2026-08-19 19:20:02
(1 hour ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Roderic
2026-08-19 19:06:11
(2 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-08-19 18:55:04
(2 hours ago)
Excessive multi-domain requests
Brute-Force
๐ท๐ด
iulianh
2026-08-19 18:51:28
(2 hours ago)
80,443
Brute-Force
SSH
Anonymous
2026-08-19 18:35:12
(2 hours ago)
Automatically blocked after 5 security events. Observed sensitive configuration-file probes. Source: ...
show more
Automatically blocked after 5 security events. Observed sensitive configuration-file probes. Source: Cloudflare security controls.
show less
Hacking
Web App Attack
๐ฌ๐ง
noise.agency
2026-08-19 18:29:56
(2 hours ago)
35.231.10.220 (US/United States/220.10.231.35.bc.googleusercontent.com), more than 10 Apache 403 hit ...
show more
35.231.10.220 (US/United States/220.10.231.35.bc.googleusercontent.com), more than 10 Apache 403 hits
show less
Hacking
๐ฎ๐ฉ
sockominfo
2026-08-19 18:00:37
(3 hours ago)
Reported by TangerangKota-CSIRT. Status: MALICIOUS
Hacking
Email Spam