๐บ๐ธ
TPI-Abuse
2026-09-22 00:43:35
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.50.85 (85.50.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.50.85 (85.50.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:43:32.572933 2026] [security2:error] [pid 7551:tid 7551] [client 34.148.50.85:56082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.surrenderhouse.com"] [uri "/.env.example"] [unique_id "arHPNDNCp05zTmIWJimz7gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-21 22:37:04
(10 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-21 22:27:37
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.50.85 (85.50.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.50.85 (85.50.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 18:27:29.299576 2026] [security2:error] [pid 27924:tid 27950] [client 34.148.50.85:56660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.swizzlestick.com"] [uri "/.git/HEAD"] [unique_id "arGvUc2yxpXeo1xwdH3KYwAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-21 22:25:47
(10 hours ago)
20 attempts against mh-misbehave-ban on mensa
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 21:35:17
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.50.85 (85.50.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.50.85 (85.50.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:35:12.494434 2026] [security2:error] [pid 14718:tid 14718] [client 34.148.50.85:40668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.szeliga.com"] [uri "/.git/config"] [unique_id "arGjEBLsUgEyzVLikFNSqgAAAD0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-21 21:26:06
(11 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
BlueWire Hosting
2026-09-21 21:05:33
(12 hours ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐ซ๐ท
dynamix
2026-09-21 20:38:21
(12 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 20:31:06
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.148.50.85 (85.50.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.148.50.85 (85.50.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:30:58.281230 2026] [security2:error] [pid 19596:tid 19596] [client 34.148.50.85:50510] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||teenybikini.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "teenybikini.com"] [uri "/rclone.conf"] [unique_id "arGUAqybigyGjJikeb8PegAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-21 20:11:19
(13 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
mnsf
2026-09-21 20:05:41
(13 hours ago)
Abuse Detected (4)
Brute-Force
Web App Attack
Anonymous
2026-09-21 19:50:08
(13 hours ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection