Anonymous
2026-08-25 19:16:22
(1 hour ago)
Scanner hitting /.env on ara-oman.com (GOOGLE-CLOUD) โ aaguard
Brute-Force
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-25 19:03:02
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 15:02:54.112418 2026] [security2:error] [pid 18375:tid 18397] [client 35.240.236.79:7358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aqutar.com"] [uri "/.env"] [unique_id "ao3m3iUAS_OeHmZuKRhy_wAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-25 18:40:38
(2 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.env (+1 more) | 2026-08-25 18:40 UTC
show less
Hacking
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-25 18:23:43
(2 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 18:20:58
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 14:20:53.444958 2026] [security2:error] [pid 32003:tid 32003] [client 35.240.236.79:39350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yourbrandhere.com"] [uri "/.git/config"] [unique_id "ao3dBQ-1WdTULqgPXoHXnwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:55:00
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:54:56.141014 2026] [security2:error] [pid 22278:tid 22278] [client 35.240.236.79:48614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aquanauticsige.com"] [uri "/.env"] [unique_id "ao3W8FQSJeIl4WvTJ4w7uQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-08-25 17:47:55
(2 hours ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:36:42
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:36:35.967996 2026] [security2:error] [pid 12399:tid 12399] [client 35.240.236.79:53070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "soereng.com"] [uri "/.git/config"] [unique_id "ao3So-kTcRq69O2LqIAOhgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-25 16:46:05
(3 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:42:20
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:42:14.828406 2026] [security2:error] [pid 23060:tid 23060] [client 35.240.236.79:18216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "misscharlottemusic.com"] [uri "/.git/config"] [unique_id "ao3F5vKBzKxSTz361dcGmgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:23:46
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:23:38.869782 2026] [security2:error] [pid 14800:tid 14800] [client 35.240.236.79:64024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lasvegaskiss.com"] [uri "/.git/config"] [unique_id "ao3Bihrih99ZQy01_f6P1wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:08:11
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:08:03.184093 2026] [security2:error] [pid 12926:tid 12926] [client 35.240.236.79:65338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "apsni.net"] [uri "/.env"] [unique_id "ao2949-8Htue67w78yiAVgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:45:38
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:45:33.617725 2026] [security2:error] [pid 22270:tid 22270] [client 35.240.236.79:21418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aprilparks.com"] [uri "/.env"] [unique_id "ao24neCUTObFp7UK_8bMuAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-25 15:20:05
(5 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:15:57
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.236.79 (79.236.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:15:54.399953 2026] [security2:error] [pid 19754:tid 19754] [client 35.240.236.79:18350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darrowco.com"] [uri "/.git/config"] [unique_id "ao2xqsbySbQsj5bZ807vmgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack