๐บ๐ธ
TPI-Abuse
2026-10-01 15:13:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 11:13:12.943820 2026] [security2:error] [pid 19508:tid 19508] [client 34.142.211.31:42580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.primacomm.com"] [uri "/.htpasswd"] [unique_id "ar54iFrrSfZo-NO4yDy3PAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 15:09:30
(2 days ago)
Aggressive web scan
Web App Attack
Anonymous
2026-10-01 14:55:56
(2 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-10-01 14:53:05
(2 days ago)
excessive HTTP 404 errors
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-01 14:37:19
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:37:15.275430 2026] [security2:error] [pid 16728:tid 16728] [client 34.142.211.31:57908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oceansgift.com"] [uri "/core/.env"] [unique_id "ar5wG9VURON_r00R6P_E-AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 14:29:53
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.142.211.31 (SG/Singapore/31.211.142. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.142.211.31 (SG/Singapore/31.211.142.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-10-01 14:08:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:08:44.703106 2026] [security2:error] [pid 11247:tid 11247] [client 34.142.211.31:44080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.moontouchmassage.com"] [uri "/.htpasswd"] [unique_id "ar5pbK8U5B9krlOqBaay6AAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:51:03
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:50:55.814835 2026] [security2:error] [pid 29446:tid 29446] [client 34.142.211.31:59696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.noscentpro.com"] [uri "/.htpasswd"] [unique_id "ar5lP38ajBkvWm_HfuVMLwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-10-01 13:30:08
(2 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:26:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.211.31 (31.211.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:26:37.360441 2026] [security2:error] [pid 12393:tid 12393] [client 34.142.211.31:60236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.rntoday.com"] [uri "/files../.env"] [unique_id "ar5fjZjE0jINqQMHpRg7qAAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
omc
2026-10-01 13:26:18
(2 days ago)
AH01630: Client denied by server config.
Bad Web Bot
Web App Attack
๐บ๐ธ
omc
2026-10-01 13:26:17
(2 days ago)
GET /z9x8c7v6b5-debug-trigger-oakmountaincoaching.com [Q4]. Flooding or excessive polling, 120 hit ...
show more
GET /z9x8c7v6b5-debug-trigger-oakmountaincoaching.com [Q4]. Flooding or excessive polling, 120 hits [BR].
show less
Bad Web Bot
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-01 13:09:53
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 34.142.211.31 (31.211.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.142.211.31 (31.211.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:09:47.734374 2026] [security2:error] [pid 9950:tid 9950] [client 34.142.211.31:34132] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.pamelalambert.com|F|2"] [data ".pamelalambert.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.pamelalambert.com"] [uri "/z9x8c7v6b5-debug-trigger-www.pamelalambert.com"] [unique_id "ar5bm66yZ_MQkI2niM_IBQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 12:50:16
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 34.142.211.31 (31.211.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.142.211.31 (31.211.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 08:50:08.201856 2026] [security2:error] [pid 16415:tid 16415] [client 34.142.211.31:52620] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.paulzaremba.com|F|2"] [data ".paulzaremba.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.paulzaremba.com"] [uri "/z9x8c7v6b5-debug-trigger-www.paulzaremba.com"] [unique_id "ar5XAGIGaIcbOLVWDKvgtAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-10-01 12:40:03
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack