๐จ๐ฆ
zXero
2026-09-23 12:41:56
(1 hour ago)
Fail2Ban automatic report - jail: recidive
Brute-Force
SSH
DDoS Attack
๐ฒ๐ฝ
octageeks.com
2026-09-23 04:18:36
(10 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
Anonymous
2026-09-23 03:25:32
(11 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: BE, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: BE, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 02:20:43
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.114.73 (73.114.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.114.73 (73.114.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 22:20:34.062224 2026] [security2:error] [pid 31639:tid 31639] [client 35.240.114.73:35202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.northfultonneurology.com"] [uri "/.htpasswd"] [unique_id "arM3cpJlMsVjWxAAQ3EhOwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-23 01:35:02
(12 hours ago)
cloudlinux2 fail2ban: 2026-09-23 03:04:09,170 fail2ban.filter [1598]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-23 03:04:09,170 fail2ban.filter [1598]: INFO [plesk-wordpress] Found 136.144.33.151 - 2026-09-23 03:04:08cloudlinux2 fail2ban: 2026-09-23 03:04:24,114 fail2ban.filter [1598]: INFO [plesk-wordpress] Found 173.239.214.75 - 2026-09-23 03:04:23cloudlinux2 fail2ban: 2026-09-23 03:04:18,016 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 160.153.246.243 - 2026-09-23 03:04:17cloudlinux2 fail2ban: 2026-09-23 03:04:37,320 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 74.7.227.135 - 2026-09-23 03:04:37cloudlinux2 fail2ban: 2026-09-23 03:04:38,302 fail2ban.filter [1598]: INFO [plesk-wordpress] Found 66.116.251.167 - 2026-09-23 03:04:38cloudlinux2 fail2ban: 2026-09-23 03:04:53,722 fail2ban.actions [1598]: NOTICE [plesk-modsecurity] Ban 35.240.114.73cloudlinux2 fail2ban: 2026-09-23 03:04:53,310 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 35.240.114.73 - 2026-09-23 03:04:53cloudlinux2 fail2ban:
show less
Web App Attack
๐ง๐ท
Halux
2026-09-23 01:30:41
(12 hours ago)
35.240.114.73 Probing protected path or service
Web App Attack
Anonymous
2026-09-23 01:04:42
(13 hours ago)
35.240.114.73 - - [23/Sep/2026:09:04:40 +0800] "POST /api/v1/validate/code HTTP/1.1" 404 47588 "-" " ...
show more
35.240.114.73 - - [23/Sep/2026:09:04:40 +0800] "POST /api/v1/validate/code HTTP/1.1" 404 47588 "-" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)"
35.240.114.73 - - [23/Sep/2026:09:04:41 +0800] "GET /static/manifest.json HTTP/1.1" 404 39532 "https://www.nonsensemakers.com/static/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
35.240.114.73 - - [23/Sep/2026:09:04:41 +0800] "GET /static/manifest.json HTTP/1.1" 404 39532 "https://www.nonsensemakers.com/static/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
35.240.114.73 - - [23/Sep/2026:09:04:41 +0800] "GET /assets/manifest.json HTTP/1.1" 404 39532 "https://www.nonsensemakers.com/assets/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
35.2
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-23 00:36:33
(13 hours ago)
Logfile match
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-22 22:25:26
(16 hours ago)
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-22 22:03:39
(16 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
Anonymous
2026-09-22 21:47:03
(16 hours ago)
35.240.114.73 - - [22/Sep/2026:21:47:02 +0000] "-" 400 166 "-" "-"
35.240.114.73 - - [22/Sep/2026:21 ...
show more
35.240.114.73 - - [22/Sep/2026:21:47:02 +0000] "-" 400 166 "-" "-"
35.240.114.73 - - [22/Sep/2026:21:47:03 +0000] "-" 400 166 "-" "-"
35.240.114.73 - - [22/Sep/2026:21:47:03 +0000] "-" 400 166 "-" "-"
...
show less
Brute-Force
๐ช๐ธ
pydsoluciones
2026-09-22 21:04:20
(17 hours ago)
PrestaShop Security Module: Suspicious path detected (/.env)
Web App Attack
๐ฉ๐ช
4server
2026-09-22 20:59:04
(17 hours ago)
[TueSep2222:58:58.9999022026][security2:error][pid1276168:tid1276210][client35.240.114.73:0]ModSecur ...
show more
[TueSep2222:58:58.9999022026][security2:error][pid1276168:tid1276210][client35.240.114.73:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Stringmatchwithin\".asa/.asax/.ascx/.backup/.bak/.bat/.cdx/.cer/.cfg/.cmd/.com/.config/.conf/.cs/.csproj/.csr/.dat/.db/.dbf/.dll/.dos/.htr/.htw/.ida/.idc/.idq/.inc/.ini/.key/.licx/.lnk/.log/.mdb/.old/.pass/.pdb/.pol/.printer/.pwd/.rdb/.resources/.resx/.sql/.swp/.sys/.vb/.vbs/.vbproj/.vsdisco/.webinfo/.xsx/\"atTX:extension.[file\"/etc/apache2/conf.d/modsec_rules/00_asl_zz_strict.conf\"][line\"91\"][id\"390716\"][rev\"2\"][msg\"Atomicorp.comWAFRules:URLfileextensionisrestrictedbypolicy\"][data\".com\"][severity\"ERROR\"][hostname\"gruppobalu.com\"][uri\"/z9x8c7v6b5-debug-trigger-gruppobalu.com\"][unique_id\"arLsEv_fn0D4S7QkwTq6_wAAAEQ\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 20:51:26
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.240.114.73 (73.114.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.240.114.73 (73.114.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 16:51:18.483042 2026] [security2:error] [pid 2436:tid 2436] [client 35.240.114.73:59874] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||illumoonatedtarot.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "illumoonatedtarot.com"] [uri "/z9x8c7v6b5-debug-trigger-illumoonatedtarot.com"] [unique_id "arLqRjMk29uLTI7n1mWHAAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 20:38:44
(17 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking