๐ฌ๐ง
WebNiraj
2026-08-19 12:59:44
(24 minutes ago)
(mod_security) mod_security (id:949110) triggered by 34.139.196.66 (US/United States/66.196.139.34.b ...
show more
(mod_security) mod_security (id:949110) triggered by 34.139.196.66 (US/United States/66.196.139.34.bc.googleusercontent.com): 5 in the last 3600 secs [SIGMA]
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-19 12:55:58
(28 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 08:55:53.809752 2026] [security2:error] [pid 1254:tid 1254] [client 34.139.196.66:50492] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vintagetejas.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vintagetejas.com"] [uri "/z9x8c7v6b5-debug-trigger-vintagetejas.com"] [unique_id "aoWn2e5ZkMC-1LgSmuW2OgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
COMAITE
2026-08-19 12:38:42
(45 minutes ago)
Suspicious URL access.
Web App Attack
Anonymous
2026-08-19 12:30:11
(54 minutes ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-19 12:20:13
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 08:20:05.986436 2026] [security2:error] [pid 11116:tid 11116] [client 34.139.196.66:59198] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||voidpope.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "voidpope.com"] [uri "/z9x8c7v6b5-debug-trigger-voidpope.com"] [unique_id "aoWfdbIIdmQkKo1MLJbi_gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-19 12:06:05
(1 hour ago)
Too many Status 40X (19)
Scanning/Probing (19)
Brute-Force
Web App Attack
๐ช๐ธ
masterguru
2026-08-19 11:50:19
(1 hour ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
๐ณ๐ฑ
Site.eu
2026-08-19 11:45:01
(1 hour ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-19 11:39:54
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 07:39:49.484590 2026] [security2:error] [pid 1700:tid 1700] [client 34.139.196.66:42790] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vincetronics.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vincetronics.com"] [uri "/rclone.conf"] [unique_id "aoWWBYp--hxpr9Ezn0yEogAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-19 11:38:40
(1 hour ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ซ๐ท
masterguru
2026-08-19 11:27:51
(1 hour ago)
Restricted File Access Attempt. Matched phrase ".aws/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 11:24:10
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 07:24:02.344727 2026] [security2:error] [pid 7242:tid 7242] [client 34.139.196.66:53028] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||von-s.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "von-s.com"] [uri "/z9x8c7v6b5-debug-trigger-von-s.com"] [unique_id "aoWSUseaBi2CTqBaxetY9gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 10:51:49
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.139.196.66 (66.196.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 06:51:43.216643 2026] [security2:error] [pid 2585:tid 2585] [client 34.139.196.66:51222] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||virlouise.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "virlouise.com"] [uri "/z9x8c7v6b5-debug-trigger-virlouise.com"] [unique_id "aoWKvzKf8NgG4HHQl6VYlwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-19 10:45:09
(2 hours ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-08-19 10:38:40
(2 hours ago)
VILICO WEBEXPLOIT 34.139.196.66 (66.196.139.34.bc.googleusercontent.com)
Web App Attack