๐บ๐ธ
TPI-Abuse
2026-09-30 04:09:05
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.118.171.159 (159.171.118.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.118.171.159 (159.171.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:08:57.925104 2026] [security2:error] [pid 31087:tid 31087] [client 34.118.171.159:58248] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.kinnairdenterprisesllc.com.pages4you.com|F|2"] [data ".kinnairdenterprisesllc.com.pages4you.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.kinnairdenterprisesllc.com.pages4you.com"] [uri "/z9x8c7v6b5-debug-trigger-www.kinnairdenterprisesllc.com.pages4you.com"] [unique_id "aryLWeNtow3vwzyFLiLwIQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
MarkGGN
2026-09-30 03:54:58
(1 week ago)
Web attack. 34.118.171.159 - - [30/Sep/2026:05:54:57 +0200] "GET /auth/login HTTP/2.0" 404 20 "-" "M ...
show more
Web attack. 34.118.171.159 - - [30/Sep/2026:05:54:57 +0200] "GET /auth/login HTTP/2.0" 404 20 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
34.118.171.159 - - [30/Sep/2026:05:54:58 +0200] "GET /admin/login HTTP/2.0" 404 20 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
show less
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-09-30 03:41:01
(1 week ago)
2026-09-30 05:39:06 GET /.env [301] && 2026-09-30 05:39:06 GET /credentials.json [301] && 2026-09-30 ...
show more
2026-09-30 05:39:06 GET /.env [301] && 2026-09-30 05:39:06 GET /credentials.json [301] && 2026-09-30 05:39:06 GET /.env.backup [301] && 202 more within 20 minutes
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 02:31:53
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.118.171.159 (159.171.118.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.118.171.159 (159.171.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 22:31:47.905778 2026] [security2:error] [pid 6200:tid 6200] [client 34.118.171.159:47222] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.kinareemagazine.thephysicsroom.com|F|2"] [data ".kinareemagazine.thephysicsroom.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.kinareemagazine.thephysicsroom.com"] [uri "/z9x8c7v6b5-debug-trigger-www.kinareemagazine.thephysicsroom.com"] [unique_id "arx0kwwdTbCQn3qmiSb0lgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 01:18:53
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.118.171.159 (159.171.118.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.118.171.159 (159.171.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 21:18:45.222154 2026] [security2:error] [pid 9504:tid 9504] [client 34.118.171.159:50876] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.kristasrecoverycoaching.com.kildarafarms.com|F|2"] [data ".kristasrecoverycoaching.com.kildarafarms.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.kristasrecoverycoaching.com.kildarafarms.com"] [uri "/z9x8c7v6b5-debug-trigger-www.kristasrecoverycoaching.com.kildarafarms.com"] [unique_id "arxjdaL-QMUFp7vZD8lcrwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-30 00:43:56
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-30 00:33:34
(1 week ago)
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encod ...
show more
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encoding/ /proxy/ /lock-token/ /content-range/ /if/ /x-http-method-override/ /x-http-method/ /x-method-override/ /x-middleware-subrequest/ /expect/" at TX:header_name_920450_x-middleware-subrequest. (920450-197)
show less
Bad Web Bot
Anonymous
2026-09-30 00:29:30
(1 week ago)
Aggressive web scan
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-29 23:28:24
(1 week ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-29 23:21:43
(1 week ago)
4.439 requests from abuseipdb.com blacklisted IP (4mos2w2d)
Brute-Force
Bad Web Bot
๐ฒ๐พ
Rizzy
2026-09-29 22:49:26
(1 week ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ง๐ท
radardatelecom
2026-09-29 22:26:02
(1 week ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-29 22:04:28
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
FD-IX
2026-09-29 21:33:45
(1 week ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ซ๐ท
COMAITE
2026-09-29 20:59:54
(1 week ago)
Suspicious URL access.
Web App Attack