๐บ๐ธ
TPI-Abuse
2026-09-16 03:57:08
(20 minutes ago)
(mod_security) mod_security (id:210730) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:57:01.516205 2026] [security2:error] [pid 27395:tid 27395] [client 35.237.202.254:55762] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||johnpritchett.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "johnpritchett.com"] [uri "/z9x8c7v6b5-debug-trigger-johnpritchett.com"] [unique_id "aqoTjdsV47MlTer-qnKfsQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
IVski.com
2026-09-16 03:52:51
(25 minutes ago)
IVski WAF | Sensitive file probe - looking for exposed .env
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:34:03
(44 minutes ago)
(mod_security) mod_security (id:210730) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:33:58.551744 2026] [security2:error] [pid 9691:tid 9691] [client 35.237.202.254:59602] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||hendersonhomes.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hendersonhomes.com"] [uri "/z9x8c7v6b5-debug-trigger-hendersonhomes.com"] [unique_id "aqoOJocngIjMXqC9tYdlGQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 03:26:42
(51 minutes ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-16 03:13:39
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:13:32.987118 2026] [security2:error] [pid 28174:tid 28174] [client 35.237.202.254:43760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fractalsky.com"] [uri "/.git/HEAD"] [unique_id "aqoJXFlK9sF7pPpmjs2fEAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-09-16 02:44:33
(1 hour ago)
Too many 404 requests [BY]
Web App Attack
๐ซ๐ท
demomodule
2026-09-16 02:38:41
(1 hour ago)
PrestaShop Security Module: suspicious probe path detected (/.git)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 02:30:42
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:30:35.898186 2026] [security2:error] [pid 1455:tid 1455] [client 35.237.202.254:40250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "creartest.com"] [uri "/.env.example"] [unique_id "aqn_S4DxeMhD3hCuCo_DJAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Zundapper
2026-09-16 02:20:13
(1 hour ago)
35.237.202.254 - - [16/Sep/2026:04:20:12 +0200] "GET /dist/manifest.json HTTP/2.0" 404 167 "-" "Mozi ...
show more
35.237.202.254 - - [16/Sep/2026:04:20:12 +0200] "GET /dist/manifest.json HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
35.237.202.254 - - [16/Sep/2026:04:20:12 +0200] "GET /static/manifest.json HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
35.237.202.254 - - [16/Sep/2026:04:20:12 +0200] "GET /assets/manifest.json HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
35.237.202.254 - - [16/Sep/2026:04:20:12 +0200] "GET /asset-manifest.json HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
35.237.202.254 - - [16/Sep/2026:04:20:12 +0200] "GET /webpack-stats.json HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (K
...
show less
Web App Attack
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-16 01:56:09
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:56:02.600620 2026] [security2:error] [pid 10523:tid 10523] [client 35.237.202.254:47904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cmcnow.net"] [uri "/.git/config"] [unique_id "aqn3MtZLnR61TEkVwSte8gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 01:17:07
(3 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
nationaleventpros.com
2026-09-16 01:06:34
(3 hours ago)
vulnerability scan
Web App Attack
๐ฌ๐ง
andypiper
2026-09-16 01:00:49
(3 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:45:34
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.202.254 (254.202.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:45:26.359879 2026] [security2:error] [pid 26748:tid 26748] [client 35.237.202.254:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cloudex.link"] [uri "/.git/HEAD"] [unique_id "aqnmpqAS6PFHb3FwsfS1wwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-09-16 00:15:22
(4 hours ago)
Domain : redirect.netenergy.uk
Rule : env
2026-09-16 00:14:13 217.194.210.152 GET /.env.production - ...
show more
Domain : redirect.netenergy.uk
Rule : env
2026-09-16 00:14:13 217.194.210.152 GET /.env.production - 443 - 35.237.202.254 HTTP/2 Mozilla/5.0 (compatible; MistralAI-User/1.0; https://mistral.ai/) - clipnclimbipswich.com 404 0 2 1529 456 86 - -
show less
Hacking
SQL Injection