🇮🇹
paoloartone
2026-09-08 05:00:23
(8 hours ago)
Reverse proxy TCO: 589 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 07/09/202 ...
show more
Reverse proxy TCO: 589 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 07/09/2026.
show less
Web App Attack
Hacking
Port Scan
🇳🇱
Site.eu
2026-09-07 23:19:38
(14 hours ago)
Excessive 404/403 errors
Brute-Force
🇳🇱
homeshowdomain.nl
2026-09-07 22:00:49
(15 hours ago)
Auto-ban: >3000 req/min op 2026-09-07
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-07 21:00:28
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 17:00:21.865763 2026] [security2:error] [pid 19638:tid 19698] [client 35.245.230.226:25416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jonneher.com"] [uri "/@fs/..%252f..%252f..%252f..%252f..%252fapp/.env"] [unique_id "ap8l5UmQTCAE--xpkSqbdwAAARE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 20:43:42
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:43:38.015188 2026] [security2:error] [pid 352:tid 352] [client 35.245.230.226:28480] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.chooseyourowntrail.com"] [uri "/@fs/.env.production"] [unique_id "ap8h-gr8nvAm9UU5-GtPfAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
CoreTech srl
2026-09-07 20:15:02
(17 hours ago)
CloudLinux/Plesk alert - host=cloudlinux5 dominio=fontanacontarini.it ip=35.245.230.226 richieste=12 ...
show more
CloudLinux/Plesk alert - host=cloudlinux5 dominio=fontanacontarini.it ip=35.245.230.226 richieste=129 rischio=ALTO score=16 motivi=molte_richieste,molte_uri_uniche,ua_script_bot,path_sospetti,possibile_enumerazione_id cat_id=21,19 periodo=10min
show less
Web App Attack
Bad Web Bot
🇳🇱
WeCloudit-Anti-Abuse
2026-09-07 19:53:24
(17 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
🇨🇭
zynex
2026-09-07 19:44:30
(17 hours ago)
URL Probing: /@fs/..%252f..%252f..%252f..%252f..%252fapp/.env
Web App Attack
🇩🇪
netclix.gr
2026-09-07 19:35:33
(18 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.245.230.226 (US/United States/226.23 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.245.230.226 (US/United States/226.230.245.35.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-07 19:28:11
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:28:06.263422 2026] [security2:error] [pid 1505:tid 1505] [client 35.245.230.226:28486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.panama-boat-registration.com"] [uri "/@fs/src/.env"] [unique_id "ap8QRgumYyZD_SKZ_fGU5gAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:08:48
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:08:44.425379 2026] [security2:error] [pid 20273:tid 20273] [client 35.245.230.226:36938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.the-schlosser.net"] [uri "/@fs/.env.local"] [unique_id "ap8LvJVYiISJm6RyLEGU6gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-07 19:05:23
(18 hours ago)
Too many Status 40X (15)
Brute-Force
Web App Attack
🇧🇪
cmbplf
2026-09-07 19:04:56
(18 hours ago)
603 requests with url.path *.aws/*
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 18:50:36
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.230.226 (226.230.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:50:26.871570 2026] [security2:error] [pid 10346:tid 10346] [client 35.245.230.226:49576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.valueandmeaning.com"] [uri "/@fs/.env.production"] [unique_id "ap8HctMlCuULiCFqQfj5tgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-07 18:50:13
(18 hours ago)
Web App Attack