๐บ๐ธ
TPI-Abuse
2026-10-03 08:09:18
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 04:09:12.246021 2026] [security2:error] [pid 3287:tid 3287] [client 35.243.195.60:36448] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||curtsnet.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "curtsnet.com"] [uri "/z9x8c7v6b5-debug-trigger-curtsnet.com"] [unique_id "asC4KL3dJOT-84Q2wY7FWAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
cloudmax
2026-10-03 07:52:05
(2 days ago)
Cloudmax Protect [BOT BLOCK] - Suspicious User-Agent. Possible resource abuse, excessive requests, o ...
show more
Cloudmax Protect [BOT BLOCK] - Suspicious User-Agent. Possible resource abuse, excessive requests, or hacking attempt
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-03 07:25:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 03:25:14.281855 2026] [security2:error] [pid 26453:tid 26453] [client 35.243.195.60:55498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cgi-city.com"] [uri "/images../.env"] [unique_id "asCt2iGUkXyl7Nv07-UsCAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 05:38:26
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 01:38:20.158946 2026] [security2:error] [pid 3889:tid 3911] [client 35.243.195.60:42910] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.deyyoungart.com|F|2"] [data ".deyyoungart.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.deyyoungart.com"] [uri "/z9x8c7v6b5-debug-trigger-mail.deyyoungart.com"] [unique_id "asCUzB4Cjks8DYo_4jiulAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 04:26:22
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 00:26:15.400093 2026] [security2:error] [pid 3820:tid 3820] [client 35.243.195.60:45724] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.electric-meat-grinder.com|F|2"] [data ".electric-meat-grinder.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.electric-meat-grinder.com"] [uri "/z9x8c7v6b5-debug-trigger-www.electric-meat-grinder.com"] [unique_id "asCD50ZkkMWfTBc5VYB-qwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 03:24:26
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 23:24:20.423795 2026] [security2:error] [pid 8612:tid 8612] [client 35.243.195.60:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cloudbursttechnologies.com"] [uri "/public../.env"] [unique_id "asB1ZIsYHe-Prphu0M8cRQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
A.i.D.A.N.N
2026-10-03 03:22:38
(3 days ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐บ๐ธ
dot.mg
2026-10-03 03:08:05
(3 days ago)
Scan of vulnerable files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 02:20:26
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 22:20:23.127552 2026] [security2:error] [pid 3851:tid 3851] [client 35.243.195.60:41822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.davidocchino.com"] [uri "/api/.env/public/.env"] [unique_id "asBmZ558eew7nZtHIzcFvwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-03 02:17:18
(3 days ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-10-03 01:56:53
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 21:56:48.730885 2026] [security2:error] [pid 10346:tid 10346] [client 35.243.195.60:33562] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||diveshop-pr.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "diveshop-pr.com"] [uri "/z9x8c7v6b5-debug-trigger-diveshop-pr.com"] [unique_id "asBg4Orl6VZ818rEtWoENwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 01:26:19
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 21:26:13.007285 2026] [security2:error] [pid 17237:tid 17237] [client 35.243.195.60:52704] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cassandramari.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cassandramari.com"] [uri "/z9x8c7v6b5-debug-trigger-cassandramari.com"] [unique_id "asBZtSBIAybwk1QLRDU9ewAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-10-03 01:01:57
(3 days ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 00:13:45
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.243.195.60 (60.195.243.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.195.60 (60.195.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 20:13:36.599672 2026] [security2:error] [pid 12250:tid 12250] [client 35.243.195.60:43864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.chrismcc.com"] [uri "/js../.env"] [unique_id "asBIsGtusM0ycCrOn1QXUwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WizardsToolkit
2026-10-02 22:37:55
(3 days ago)
tried to access forbidden files; attempted to access /static//app/.env
Web App Attack