๐ฒ๐ฝ
octageeks.com
2026-09-22 04:22:55
(9 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ซ๐ท
masterguru
2026-09-22 01:44:27
(12 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.240.232.170 (SG/Singapore/170.232. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.240.232.170 (SG/Singapore/170.232.240.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-22 00:41:42
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:41:36.857623 2026] [security2:error] [pid 21611:tid 21611] [client 35.240.232.170:47048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "runnercomics.com"] [uri "/.env"] [unique_id "arHOwAjfzmVg3pMLFjF05AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-21 23:57:05
(13 hours ago)
202 requests with url.path */@fs/*
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-21 23:56:47
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:56:42.650605 2026] [security2:error] [pid 17658:tid 17658] [client 35.240.232.170:47108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sailyourkayak.com"] [uri "/userfiles"] [unique_id "arHEOtdbJjcXFEVkX9tCzgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-21 23:55:21
(13 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-09-21 21:39:40
(16 hours ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 35.240.232.170 (SG/Singapore/170.232.240. ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 35.240.232.170 (SG/Singapore/170.232.240.35.bc.googleusercontent.com)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-21 20:15:36
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:15:31.794137 2026] [security2:error] [pid 29368:tid 29368] [client 35.240.232.170:53782] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||rosoctechnologies.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "rosoctechnologies.com"] [uri "/server.key"] [unique_id "arGQY01KBVuIFTGwbEwRuQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 19:49:17
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 15:49:10.249929 2026] [security2:error] [pid 29058:tid 29058] [client 35.240.232.170:34440] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.abecasis.com|F|2"] [data ".abecasis.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.abecasis.com"] [uri "/z9x8c7v6b5-debug-trigger-mail.abecasis.com"] [unique_id "arGKNvdzC9RW_zdaJ_zAggAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-21 18:54:00
(18 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 18:31:02
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 14:30:57.465388 2026] [security2:error] [pid 27553:tid 27553] [client 35.240.232.170:36834] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sandboarding.infojeffreysbay.com"] [uri "/server/.env"] [unique_id "arF34YEXAWLr_zuCIqbjbgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
RoboSOC
2026-09-21 18:04:31
(19 hours ago)
Spring Cloud SPEL Remote Code Execution Vulnerability, PTR: 170.232.240.35.bc.googleusercontent.com.
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-21 17:37:45
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 13:37:36.956288 2026] [security2:error] [pid 28428:tid 28428] [client 35.240.232.170:60282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.78cardsofthetarot-tarotmancy-tarot-cards-and-tarot-readings.com"] [uri "/src/.env"] [unique_id "arFrYHnD9tt8831Sj7HXWAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 17:16:30
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 13:16:26.095799 2026] [security2:error] [pid 10576:tid 10576] [client 35.240.232.170:59202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rudiscreations.com"] [uri "/.git/config"] [unique_id "arFmarbDHDxGPesS4fp0NgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 16:51:52
(20 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.240.232.170 (170.232.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 12:51:44.727865 2026] [security2:error] [pid 10849:tid 10849] [client 35.240.232.170:45068] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.salonpurelodi.com|F|2"] [data ".salonpurelodi.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.salonpurelodi.com"] [uri "/z9x8c7v6b5-debug-trigger-www.salonpurelodi.com"] [unique_id "arFgoArwXGwbKg7vzclHTgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack