๐บ๐ธ
dot.mg
2026-10-06 22:56:02
(2 days ago)
Scan of vulnerable files
Web App Attack
๐ฉ๐ช
bazter.pro
2026-10-06 22:29:20
(2 days ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐น๐ท
ycoskun41
2026-10-06 22:20:01
(2 days ago)
fail2ban: plesk-modsecurity jail on genckocaeli.com
Web App Attack
๐บ๐ธ
masterguru
2026-10-06 18:42:10
(3 days ago)
COMODO WAF: URL file extension is restricted by policy. Match of "pmFromFile userdata_wl_extensions" ...
show more
COMODO WAF: URL file extension is restricted by policy. Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. (210730-169)
show less
Hacking
๐ฒ๐พ
Rizzy
2026-10-06 18:06:12
(3 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ช๐ธ
masterguru
2026-10-06 16:33:40
(3 days ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
๐บ๐ธ
dot.mg
2026-10-06 16:27:03
(3 days ago)
Bad behaviour
Web Spam
๐ฟ๐ฆ
conure.sh
2026-10-06 15:28:07
(3 days ago)
csagent: score 23.2: 404 noise floor x13, secrets grab x2; 1 domain(s) in 2s
Web App Attack
๐ฉ๐ช
svr
2026-10-06 15:21:05
(3 days ago)
Abusive Automated Web Scanner
Web App Attack
๐ช๐ธ
robotstxt
2026-10-06 14:00:01
(3 days ago)
35.242.255.131 - - [06/Oct/2026:13:59:36 +0000] "GET /media../.env HTTP/2.0" 403 16243 "-" "Mozilla/ ...
show more
35.242.255.131 - - [06/Oct/2026:13:59:36 +0000] "GET /media../.env HTTP/2.0" 403 16243 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36"
35.242.255.131 - - [06/Oct/2026:13:59:36 +0000] "GET /static../.env HTTP/2.0" 403 16243 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
35.242.255.131 - - [06/Oct/2026:13:59:36 +0000] "GET /images../.env HTTP/2.0" 403 16243 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )"
35.242.255.131 - - [06/Oct/2026:13:59:36 +0000] "GET /files../.env HTTP/2.0" 403 16244 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexitybot)"
35.242.255.131 - - [06/Oct/2026:13:59:36 +0000] "GET /public../.env HTTP/2.0" 403 16241 "-" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 12:43:33
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.242.255.131 (131.255.242.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.242.255.131 (131.255.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 08:43:26.895907 2026] [security2:error] [pid 18794:tid 18794] [client 35.242.255.131:34436] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||sutherlandyogastudio.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sutherlandyogastudio.com"] [uri "/z9x8c7v6b5-debug-trigger-sutherlandyogastudio.com"] [unique_id "asTs7pOWGkvcGHmlPcEjEwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-06 12:43:05
(3 days ago)
Blocked by ModSec and CSF
Port Scan
๐บ๐ธ
TPI-Abuse
2026-10-06 12:21:52
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.242.255.131 (131.255.242.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.242.255.131 (131.255.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 08:21:47.826466 2026] [security2:error] [pid 8937:tid 8937] [client 35.242.255.131:56248] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||summitartists.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "summitartists.com"] [uri "/z9x8c7v6b5-debug-trigger-summitartists.com"] [unique_id "asTn2820M2MSA218JfKZjgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-06 11:54:35
(3 days ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-06 11:51:32
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.242.255.131 (131.255.242.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.242.255.131 (131.255.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 07:51:27.062709 2026] [security2:error] [pid 24135:tid 24135] [client 35.242.255.131:50956] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stoneageartifacts.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stoneageartifacts.com"] [uri "/z9x8c7v6b5-debug-trigger-stoneageartifacts.com"] [unique_id "asTgvw6GamsU2XWgKNPYAAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack