๐บ๐ธ
mnsf
2026-09-20 16:05:13
(3 days ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-09-20 15:22:03
(3 days ago)
vulnerability scan
Web App Attack
๐ฉ๐ช
netclix.gr
2026-09-20 15:09:23
(3 days ago)
(mod_security) mod_security triggered on hostname [redacted] 35.231.232.17 (US/United States/17.232. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.231.232.17 (US/United States/17.232.231.35.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-20 14:46:25
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 35.231.232.17 (17.232.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.232.17 (17.232.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:46:21.694483 2026] [security2:error] [pid 4132:tid 4132] [client 35.231.232.17:44254] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cloggersunlimited.com"] [uri "/backend/.env"] [unique_id "aq_xvRUh9XOwXsVkPk7RuQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 14:14:59
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 35.231.232.17 (17.232.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.232.17 (17.232.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:14:53.096691 2026] [security2:error] [pid 22523:tid 22523] [client 35.231.232.17:56032] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clinchspurs.com"] [uri "/etc/.env"] [unique_id "aq_qXaiwpTODFut2r7q3UAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-20 14:14:17
(4 days ago)
(mod_security) mod_security (id:949110) triggered by 35.231.232.17 (US/United States/17.232.231.35.b ...
show more
(mod_security) mod_security (id:949110) triggered by 35.231.232.17 (US/United States/17.232.231.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ซ๐ท
masterguru
2026-09-20 14:11:50
(4 days ago)
BAD BOT - Detected and Blocked.. Matched phrase "ccbot" at REQUEST_HEADERS:user-agent. (1100000-135)
Bad Web Bot
๐ช๐ธ
pepitogrillo
2026-09-20 14:01:51
(4 days ago)
35.231.232.17 - - [20/Sep/2026:14:01:50 +0000] "GET /@fs/app/.env?raw?? HTTP/1.1" 404 99464 "-" "Moz ...
show more
35.231.232.17 - - [20/Sep/2026:14:01:50 +0000] "GET /@fs/app/.env?raw?? HTTP/1.1" 404 99464 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
DNS Compromise
DNS Poisoning
Fraud Orders
DDoS Attack
Ping of Death
Phishing
Fraud VoIP
Open Proxy
Web Spam
Email Spam
Port Scan
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
IoT Targeted
๐ซ๐ท
dynamix
2026-09-20 13:52:34
(4 days ago)
Multiple WAF Violations
Web App Attack
๐ฌ๐ง
consul.to
2026-09-20 13:50:36
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 13:35:04
(4 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:30:19
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.231.232.17 (17.232.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.231.232.17 (17.232.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:30:15.921669 2026] [security2:error] [pid 23130:tid 23130] [client 35.231.232.17:56290] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||brucerohr.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brucerohr.com"] [uri "/z9x8c7v6b5-debug-trigger-brucerohr.com"] [unique_id "aq_f535tbJaiYRINYVUcSAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:08:44
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.231.232.17 (17.232.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.231.232.17 (17.232.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:08:40.071036 2026] [security2:error] [pid 19010:tid 19010] [client 35.231.232.17:44392] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||almudenastrust.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "almudenastrust.com"] [uri "/z9x8c7v6b5-debug-trigger-almudenastrust.com"] [unique_id "aq_a2BTCGpjczJffyaP9wQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dusfor72
2026-09-20 13:06:02
(4 days ago)
stupid access attempts on non-existant files
...
Brute-Force
Web App Attack