๐ณ๐ฟ
Antinson
2026-07-24 15:24:01
(17 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-24 11:31:15
(20 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.231.189.61 (61.189.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.231.189.61 (61.189.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 07:31:10.376576 2026] [security2:error] [pid 929201:tid 929244] [client 35.231.189.61:36336] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||manage.aafm.us|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "manage.aafm.us"] [uri "/configuration.php.bak"] [unique_id "amNM_iwbEMJg5iWeh3uobAAAAMU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
danskefilm.dk
2026-07-24 11:30:02
(20 hours ago)
wordpress login attempts
Web App Attack
๐ซ๐ท
Catalin Negru
2026-07-24 10:29:47
(21 hours ago)
2026-07-24 13:29:45,731 fail2ban.actions [890352]: NOTICE [apache-scan] Ban 35.231.189.61
20 ...
show more
2026-07-24 13:29:45,731 fail2ban.actions [890352]: NOTICE [apache-scan] Ban 35.231.189.61
2026-07-24 13:29:45,984 fail2ban.actions [890352]: NOTICE [apache-404] Ban 35.231.189.61
2026-07-24 13:29:46,123 fail2ban.actions [890352]: NOTICE [web-scanner] Ban 35.231.189.61
2026-07-24 13:29:46,194 fail2ban.actions [890352]: NOTICE [apache-security] Ban 35.231.189.61
2026-07-24 13:29:46,438 fail2ban.actions [890352]: NOTICE [laravel-env] Ban 35.231.189.61
...
show less
Brute-Force
Web App Attack
๐ณ๐ฑ
Savvii
2026-07-24 08:57:57
(23 hours ago)
30 attempts against mh-misbehave-ban on twig
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-07-24 07:09:28
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 35.231.189.61 (US/United States/South C ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.231.189.61 (US/United States/South Carolina/North Charleston/61.189.231.35.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
Hary74656
2026-07-24 07:08:57
(1 day ago)
[Fri Jul 24 09:08:42.136519 2026] [security2:error] [pid 3224:tid 3269] [remote 35.231.189.61:54856] ...
show more
[Fri Jul 24 09:08:42.136519 2026] [security2:error] [pid 3224:tid 3269] [remote 35.231.189.61:54856] [client 35.231.189.61] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /admin/.env"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "signup.weavernet.at"] [uri "/admin/.env"] [unique_id "amMPeuP3UGqTKE0DdULlWQAD1QU"]
[Fri Jul 24 09:08:47.154123 2026] [security2:error] [pid 3224:tid 3280] [remote 35.231.189.61:54856] [client 35.231.189.61] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/.git/" at REQUEST_FILENAME. [file "/usr/sha
...
show less
Web App Attack
Anonymous
2026-07-24 07:08:41
(1 day ago)
Aggressive web scan
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-07-24 04:02:50
(1 day ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
Anonymous
2026-07-24 02:13:43
(1 day ago)
Web attack
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-07-23 20:35:26
(1 day ago)
Too many 404 requests [BY]
Web App Attack
๐ฌ๐ง
gws-hostmaster
2026-07-23 19:57:15
(1 day ago)
ModSecurity OWASP CRS (Anomaly Score: 10): Restricted File Access Attempt;Restricted File Access Att ...
show more
ModSecurity OWASP CRS (Anomaly Score: 10): Restricted File Access Attempt;Restricted File Access Attempt: AI Coding Assistant Artifact;URL file extension is restricted by policy;
show less
Web App Attack
๐จ๐ญ
cybertailor
2026-07-23 19:48:17
(1 day ago)
35.231.189.61 - - [24/Jul/2026:00:48:14 +0500] "GET / HTTP/1.1" 404 146 "-" "Mozilla/5.0 (Macintosh; ...
show more
35.231.189.61 - - [24/Jul/2026:00:48:14 +0500] "GET / HTTP/1.1" 404 146 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:153.0) Gecko/20100101 Firefox/153.0"
35.231.189.61 - - [24/Jul/2026:00:48:14 +0500] "GET /.aws/config HTTP/1.1" 404 146 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Claude-User/1.0; +mailto:[email protected] "
35.231.189.61 - - [24/Jul/2026:00:48:14 +0500] "GET /config.js HTTP/1.1" 404 146 "-" "Mozilla/5.0 (compatible; Diffbot/1.0; +https://diffbot.com)"
35.231.189.61 - - [24/Jul/2026:00:48:14 +0500] "GET /config.json HTTP/1.1" 404 146 "-" "Mozilla/5.0 (compatible; Amzn-SearchBot/1.0; +https://developer.amazon.com/support/amazonbot)"
35.231.189.61 - - [24/Jul/2026:00:48:15 +0500] "GET /key.json HTTP/1.1" 404 146 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ClaudeBot/1.0; +mailto:[email protected] "
...
show less
Port Scan
๐ง๐ช
taivas.nl
2026-07-23 19:02:14
(1 day ago)
Bad_requests
Bad Web Bot
๐ฉ๐ช
Hazzard
2026-07-23 18:27:16
(1 day ago)
(PERMBLOCK) 35.231.189.61 (US/United States/South Carolina/North Charleston/61.189.231.35.bc.googleu ...
show more
(PERMBLOCK) 35.231.189.61 (US/United States/South Carolina/North Charleston/61.189.231.35.bc.googleusercontent.com/[redacted]) has had more than 4 temp blocks
show less
Hacking