๐ฒ๐พ
Rizzy
2026-08-27 17:54:44
(33 minutes ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 17:45:43
(42 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:45:37.446963 2026] [security2:error] [pid 17056:tid 17056] [client 35.253.48.236:44818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keysenterprise.net"] [uri "/.env.production"] [unique_id "apB3wYPFCWRt3_M-MpBZZAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 17:34:43
(53 minutes ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
COMAITE
2026-08-27 17:09:39
(1 hour ago)
Suspicious URL access.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 17:01:59
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:01:51.184349 2026] [security2:error] [pid 16504:tid 16504] [client 35.253.48.236:48112] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sublimationconsultants.ipostsocialmedia.com"] [uri "/.env.dev"] [unique_id "apBtfzubPzT07by8L08w8wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-27 16:24:10
(2 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:13:19
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:13:14.101774 2026] [security2:error] [pid 30995:tid 30995] [client 35.253.48.236:35310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "navarreunited.nysasports.com"] [uri "/wp-config.php.bak"] [unique_id "apBiGv6qp_nuZ-uX28pABgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-27 16:05:39
(2 hours ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
๐บ๐ธ
Lee Daniel
2026-08-27 16:03:17
(2 hours ago)
35.253.48.236 - - [27/Aug/2026:12:03:16 -0400] "GET /.env HTTP/1.1" 403 6299 "-" "crusader-worker/1. ...
show more
35.253.48.236 - - [27/Aug/2026:12:03:16 -0400] "GET /.env HTTP/1.1" 403 6299 "-" "crusader-worker/1.0"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 15:40:42
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:40:36.491501 2026] [security2:error] [pid 31102:tid 31102] [client 35.253.48.236:42060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atsgroup.llc.myllc.email"] [uri "/wp-config.php.bak"] [unique_id "apBadFnaOmLZbubIfOh5egAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-08-27 15:19:45
(3 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 15:12:08
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:12:04.817466 2026] [security2:error] [pid 32168:tid 32168] [client 35.253.48.236:37350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brainstormer.visionremota.info"] [uri "/.env"] [unique_id "apBTxMvJBX2UhCx9dI1LDAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 14:35:03
(3 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 14:03:59
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:03:53.481246 2026] [security2:error] [pid 29159:tid 29159] [client 35.253.48.236:36838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "intergalactichuman.com"] [uri "/wp-config.php~"] [unique_id "apBDyQ60UuEptuokSFJLRwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 13:42:42
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.253.48.236 (236.48.253.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:42:36.890140 2026] [security2:error] [pid 7326:tid 7326] [client 35.253.48.236:60836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cathayexpress.com.dragoldio.com"] [uri "/wp-config.php.swp"] [unique_id "apA-zBOryDG9_FsTuZvEdAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack