๐ฉ๐ช
ger-stg-sifi1
2026-08-28 16:49:52
(1 hour ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
pscriptos
2026-08-28 16:42:27
(1 hour ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ฌ๐ง
Aetherweb Ark
2026-08-28 16:16:21
(1 hour ago)
(mod_security) mod_security (id:949110) triggered by 35.239.36.100 (US/United States/100.36.239.35.b ...
show more
(mod_security) mod_security (id:949110) triggered by 35.239.36.100 (US/United States/100.36.239.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
antlac1
2026-08-28 15:47:21
(2 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ฌ๐ง
retrokitty.net
2026-08-28 14:26:11
(3 hours ago)
35.239.36.100 - - [28/Aug/2026:14:26:09 +0000] "GET /.env.bak HTTP/1.1" 503 23436 "-" "crusader-work ...
show more
35.239.36.100 - - [28/Aug/2026:14:26:09 +0000] "GET /.env.bak HTTP/1.1" 503 23436 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐ฉ๐ช
Hazzard
2026-08-28 14:01:21
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐บ๐ฆ
URAN Publishing Service
2026-08-28 13:36:50
(4 hours ago)
[28/Aug/2026:16:36:49 +0300] -- 35.239.36.100 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-c ...
show more
[28/Aug/2026:16:36:49 +0300] -- 35.239.36.100 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-config.php.swp HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 13:32:34
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.36.100 (100.36.239.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.36.100 (100.36.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 09:32:30.922746 2026] [security2:error] [pid 12838:tid 12838] [client 35.239.36.100:42340] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mysteriesrevealed.click"] [uri "/.env.backup"] [unique_id "apGN7h5FkKglky_kB4CTngAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-28 13:23:02
(4 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 12:51:01
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.36.100 (100.36.239.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.36.100 (100.36.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:50:55.246823 2026] [security2:error] [pid 5542:tid 5582] [client 35.239.36.100:44330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thestoryofmyvoice.com"] [uri "/.env.local"] [unique_id "apGEL7MmR7jBSrW6msXJmQAAAYE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 12:45:01
(5 hours ago)
suspicious request in access.log
Web App Attack
๐จ๐ญ
DasBiberlein
2026-08-28 11:51:49
(6 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-28 11:21:35
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.36.100 (100.36.239.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.36.100 (100.36.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:21:27.199663 2026] [security2:error] [pid 11441:tid 11441] [client 35.239.36.100:43240] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nolenelam.com"] [uri "/.env"] [unique_id "apFvN_6kInAAKwiBc0K-3QAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 10:48:14
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.36.100 (100.36.239.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.36.100 (100.36.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:48:06.214891 2026] [security2:error] [pid 27511:tid 27511] [client 35.239.36.100:45116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.knowledgepreservationalliance.theknowledgemaster.com"] [uri "/.env.example"] [unique_id "apFnZns7_XOQJqh0sgTrbwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-28 10:07:47
(7 hours ago)
Web attack/malicious scanning detected
Web App Attack