Anonymous
2026-06-16 09:18:02
(6 hours ago)
FortiWeb WAF: 284 attacks detected. Threat Score: 177600. Types: Client Management(142), Block IP Li ...
show more
FortiWeb WAF: 284 attacks detected. Threat Score: 177600. Types: Client Management(142), Block IP List(142). Origin: United States.
show less
Web App Attack
Anonymous
2026-06-15 12:00:05
(1 day ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-06-15 06:20:17
(1 day ago)
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 15 09:20:16.416391 2026] [security2:error] [pid 948989:tid 949030] [client 35.252.95.42:51162] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "128"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 42.95.252.35.bc.googleusercontent.com"] [hostname "babis.photo"] [uri "/wp-content/plugins/justified-image-grid/timthumb.php"] [unique_id "ai-ZoNXD3_cY7WcDuxrC9wAAAI4"]
show less
Port Scan
๐จ๐ญ
Ribeye375
2026-06-15 06:03:30
(1 day ago)
HIPS nginx-access-errors - Block tcp/http,https
Brute-Force
๐ฌ๐ท
setupgr
2026-06-15 05:10:32
(1 day ago)
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 15 08:10:30.765191 2026] [security2:error] [pid 921871:tid 922010] [client 35.252.95.42:48194] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "128"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 42.95.252.35.bc.googleusercontent.com"] [hostname "babis.photo"] [uri "/wp-content/plugins/justified-image-grid/timthumb.php"] [unique_id "ai-JRu2clReoPvlJKliBqwAAAMU"]
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-14 21:56:36
(1 day ago)
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 15 00:56:31.595050 2026] [security2:error] [pid 921869:tid 921949] [client 35.252.95.42:51648] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "128"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 42.95.252.35.bc.googleusercontent.com"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/2020/02/niangon-ekali-8-scaled-600x400.jpg"] [unique_id "ai8jj17fuOvzHSXykmzjYwAAAAk"]
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-14 15:19:10
(2 days ago)
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 14 18:19:09.206007 2026] [security2:error] [pid 922089:tid 922130] [client 35.252.95.42:56668] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "128"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 42.95.252.35.bc.googleusercontent.com"] [hostname "asteriassantorini.com"] [uri "/wp-content/uploads/2023/05/SKOUTAS-WINERY-CHRISTINE-ASSYRTIKO-200x300.jpg"] [unique_id "ai7GbY2186Wa_UvIHKjSRgAAAY4"]
show less
Port Scan
๐บ๐ธ
nodepile
2026-06-14 13:53:23
(2 days ago)
Requests denied due to active blacklist hits (tenant=82 method=GET path=/media/catalog/product/cache ...
show more
Requests denied due to active blacklist hits (tenant=82 method=GET path=/media/catalog/product/cache/5e4c54b56bd9841aefad18a78cbb6958/1/_/1_2688_7.jpg ua='Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.114 Safari/537.36')
show less
Web App Attack
Exploited Host
Anonymous
2026-06-14 09:18:10
(2 days ago)
FortiWeb WAF: 652 attacks detected. Threat Score: 71800. Types: Client Management(326), Block IP Lis ...
show more
FortiWeb WAF: 652 attacks detected. Threat Score: 71800. Types: Client Management(326), Block IP List(326). Origin: United States.
show less
Web App Attack
๐ฎ๐น
sssrit
2026-06-14 09:14:08
(2 days ago)
35.252.95.42 - - [14/Jun/2026:11:14:07 +0200] "GET /sassari-e-dintorni/eventi-e-attivita/seminario-o ...
show more
35.252.95.42 - - [14/Jun/2026:11:14:07 +0200] "GET /sassari-e-dintorni/eventi-e-attivita/seminario-occhi-miei-occhi-tuoi-il-paesaggio-sardo-al-cinema/ HTTP/1.1" 404 10490 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.114 Safari/537.36"
...
show less
Web App Attack
๐ฌ๐ง
AvonleaConsulting
2026-06-13 23:22:42
(2 days ago)
Scanning unused Default website or suspicious access to valid sites from IP marked as abusive
Bad Web Bot
Web App Attack
๐ฉ๐ช
mygcode.de
2026-06-13 17:17:32
(2 days ago)
Scanning for Exploits
Bad Web Bot
๐ฉ๐ช
Vegascosmetics
2026-06-13 13:30:17
(3 days ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after suspicious activity. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐ฆ๐บ
Anytech
2026-06-13 06:26:34
(3 days ago)
Blocked by Conn-Monitor
Web App Attack
๐ฌ๐ท
setupgr
2026-06-13 04:30:45
(3 days ago)
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.252.95.42: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 13 07:30:41.329782 2026] [security2:error] [pid 617818:tid 617865] [client 35.252.95.42:34410] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "128"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 42.95.252.35.bc.googleusercontent.com"] [hostname "babis.photo"] [uri "/wp-content/plugins/justified-image-grid/timthumb.php"] [unique_id "aizc8bW1jJCSQWbpQzabtwAAAFE"]
show less
Port Scan