π²π½
octageeks.com
2026-09-23 04:13:35
(3 days ago)
Wordpress malicious attack:[octablocked]
Web App Attack
π«π·
dusfor72
2026-09-23 02:11:48
(3 days ago)
stupid access attempts on non-existant files
...
Brute-Force
Web App Attack
πΊπΈ
oralunal
2026-09-23 01:41:27
(3 days ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
π¬π§
Apache
2026-09-23 00:46:34
(3 days ago)
(mod_security) mod_security (id:930130) triggered by 35.243.149.227 (US/United States/227.149.243.35 ...
show more
(mod_security) mod_security (id:930130) triggered by 35.243.149.227 (US/United States/227.149.243.35.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
π«π·
tecnoacquisti.com
2026-09-23 00:23:25
(3 days ago)
PrestaShop Security Module: suspicious probe path detected (/.env)
Web App Attack
πΊπΈ
etu brutus
2026-09-22 21:43:16
(3 days ago)
35.243.149.227 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host
π«π·
β¨
2026-09-22 21:24:04
(3 days ago)
Domain : torresdealbanchez.com
Rule : env
2026-09-22 21:22:17 ***hidden-privacy*** GET /.env.old - 8 ...
show more
Domain : torresdealbanchez.com
Rule : env
2026-09-22 21:22:17 ***hidden-privacy*** GET /.env.old - 80 - 35.243.149.227 HTTP/1.1 Mozilla/5.0 (compatible; Baiduspider/2.0; http://www.baidu.com/search/spider.html) - torresdealbanchez.com 302 0 0 534 447 123 - -
show less
Hacking
SQL Injection
πΊπΈ
mnsf
2026-09-22 20:05:16
(3 days ago)
Abuse Detected (10)
Brute-Force
Web App Attack
π³π±
Alt255
2026-09-22 19:53:38
(3 days ago)
[cb-01vi] Web exploit scanning: 2 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-01vi] Web exploit scanning: 2 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.243.149.227 - - [22/Sep/2026:21:53:37 +0200] "GET /api/console/api_server?sense_version=%40%40SENSE_VERSION&apis=../../../../../../.env HTTP/2.0" 301 441 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 19:32:07
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.243.149.227 (227.149.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.243.149.227 (227.149.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 15:32:03.137575 2026] [security2:error] [pid 25025:tid 25025] [client 35.243.149.227:44566] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||toxicwater.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "toxicwater.com"] [uri "/z9x8c7v6b5-debug-trigger-toxicwater.com"] [unique_id "arLXs7ejvw-zjWZEusbJGwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 17:50:30
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.243.149.227 (227.149.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.243.149.227 (227.149.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:50:25.540307 2026] [security2:error] [pid 27938:tid 27938] [client 35.243.149.227:42980] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||trafficstopper.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "trafficstopper.com"] [uri "/z9x8c7v6b5-debug-trigger-trafficstopper.com"] [unique_id "arK_4cPhA8BrgrR4dC6mJgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Mendip_Defender
2026-09-22 17:44:55
(3 days ago)
35.243.149.227 - - [22/Sep/2026:18:45:12 +0100] "GET /api/v1/validate/code HTTP/1.1" 404 6447 "https ...
show more
35.243.149.227 - - [22/Sep/2026:18:45:12 +0100] "GET /api/v1/validate/code HTTP/1.1" 404 6447 "https://trailrides-wales.com/api/v1/validate/code" "CCBot/2.0 (https://commoncrawl.org/faq/)"
...
show less
Bad Web Bot
Anonymous
2026-09-22 16:26:27
(3 days ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
πΊπΈ
TPI-Abuse
2026-09-22 15:20:25
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 35.243.149.227 (227.149.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.243.149.227 (227.149.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:20:17.411796 2026] [security2:error] [pid 20842:tid 20842] [client 35.243.149.227:57664] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||treeofloveproductions.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "treeofloveproductions.com"] [uri "/z9x8c7v6b5-debug-trigger-treeofloveproductions.com"] [unique_id "arKcsQnETT0jO5CQswMpZwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-09-22 14:50:08
(4 days ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack