๐บ๐ธ
TPI-Abuse
2026-08-08 00:00:30
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.171.210.167 (167.210.171.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.171.210.167 (167.210.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 20:00:25.671225 2026] [security2:error] [pid 633318:tid 633318] [client 34.171.210.167:41984] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.lertap5.com|F|2"] [data ".dat"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.lertap5.com"] [uri "/Documentation/Samples/MondatY/mondaty.dat"] [unique_id "anZxmZBuR38HsTWxHxN0NQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-07 23:50:55
(2 weeks ago)
[08/Aug/2026:02:50:55 +0300] -- 34.171.210.167 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp- ...
show more
[08/Aug/2026:02:50:55 +0300] -- 34.171.210.167 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-content/uploads/2015/11/%D0%92%D1%96%D0%BB%D1%8C%D1%87%D0%B8%D0%BA_%D0%A2.%D0%91..pdf HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
rsa
2026-08-07 23:06:00
(2 weeks ago)
excessive crawling ddos
DDoS Attack
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-08-07 22:00:53
(2 weeks ago)
Double URL encoding detection. Threat Score: 7.9/10 (HIGH). Confidence: 60%. CVSS v3.1: 7.3/10 (High ...
show more
Double URL encoding detection. Threat Score: 7.9/10 (HIGH). Confidence: 60%. CVSS v3.1: 7.3/10 (High). CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 87%. MITRE ATT&CK: T1110 (Brute Force). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-08-07 21:00:09
(2 weeks ago)
Double URL encoding detection. Threat Score: 6.4/10 (MEDIUM). Reported by TangerangKota-CSIRT
Hacking
Web App Attack
๐ง๐ท
ufn.edu.br
2026-08-07 19:53:45
(2 weeks ago)
[Fri Aug 07 16:44:39.662622 2026] [access_compat:error] [pid 25832] [client 34.171.210.167:15361] AH ...
show more
[Fri Aug 07 16:44:39.662622 2026] [access_compat:error] [pid 25832] [client 34.171.210.167:15361] AH01797: client denied by server configuration: /var/www/html/index.php
[Fri Aug 07 16:44:39.663140 2026] [access_compat:error] [pid 9063] [client 34.171.210.167:15360] AH01797: client denied by server configuration: /var/www/html/index.php
[Fri Aug 07 16:53:44.326358 2026] [access_compat:error] [pid 25848] [client 34.171.210.167:18432] AH01797: client denied by server configuration: /var/www/html/index.php
...
show less
Exploited Host
Web App Attack
Anonymous
2026-08-07 19:45:19
(2 weeks ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐ต๐ฑ
bmino.pl
2026-08-07 18:45:31
(2 weeks ago)
Autoban IP(2): 34.171.210.167 - Hostname: Google LLC - City: Council Bluffs - Region: Iowa - Country ...
show more
Autoban IP(2): 34.171.210.167 - Hostname: Google LLC - City: Council Bluffs - Region: Iowa - Country: United States - Location: - Organization: Google Cloud (us-central1) - failed attempts.
show less
Bad Web Bot
Anonymous
2026-08-07 13:07:48
(2 weeks ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 98%, Country: US, Attack patterns: Auto ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 98%, Country: US, Attack patterns: Automated scanning
show less
Bad Web Bot
Web App Attack
Anonymous
2026-08-07 12:56:38
(2 weeks ago)
2026-08-07 14:56:38 ERROR util.AccessViolations - 34.171.210.167 report to fail2ban - action: block
...
show more
2026-08-07 14:56:38 ERROR util.AccessViolations - 34.171.210.167 report to fail2ban - action: block
...
show less
Hacking
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-07 11:59:34
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.171.210.167 (167.210.171.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.171.210.167 (167.210.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 07:59:27.316683 2026] [security2:error] [pid 2310265:tid 2310265] [client 34.171.210.167:9728] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.homebuilt.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.homebuilt.org"] [uri "/directory/[email protected] "] [unique_id "anXIn-_sU_NrshEUuGtn7AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Progetto1
2026-08-07 08:45:05
(2 weeks ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 06:57:18
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 34.171.210.167 (167.210.171.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.171.210.167 (167.210.171.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 02:57:09.658374 2026] [security2:error] [pid 4126646:tid 4126646] [client 34.171.210.167:59392] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.elcalamo.com"] [uri "/pda/solorzano-lobo de labio.PDB"] [unique_id "anWBxR-Ulvr0h2hs-w49QAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-07 06:49:40
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐ง๐ช
cmbplf
2026-08-07 06:01:46
(2 weeks ago)
3.490 requests to many distinct domains in 1 hour (3w6d22h)
Brute-Force
Bad Web Bot