๐บ๐ธ
TPI-Abuse
2025-10-01 07:43:34
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 34.174.63.143 (143.63.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.174.63.143 (143.63.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 01 03:43:29.216714 2025] [security2:error] [pid 1780:tid 1804] [client 34.174.63.143:55564] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dasperformance.com|F|2"] [data ".das performance.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dasperformance.com"] [uri "/tag/custom-harley-davidson/W WW.DAS performance.com"] [unique_id "aNzbodmvRqGov2_930WFOQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Skyrider
2025-10-01 06:08:56
(11 months ago)
34.174.63.143 - - [01/Oct/2025:08:08:53 +0200] "GET /members/r-d3r.3907/ HTTP/2.0" 403 12399 "-" "Mo ...
show more
34.174.63.143 - - [01/Oct/2025:08:08:53 +0200] "GET /members/r-d3r.3907/ HTTP/2.0" 403 12399 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
34.174.63.143 - - [01/Oct/2025:08:08:53 +0200] "GET /members/eon.3927/ HTTP/2.0" 403 12397 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
34.174.63.143 - - [01/Oct/2025:08:08:54 +0200] "GET /faq/ HTTP/2.0" 403 12163 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
34.174.63.143 - - [01/Oct/2025:08:08:55 +0200] "GET /members/batista.48866/ HTTP/2.0" 403 12398 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
34.174.63.143 - - [01/Oct/2025:08:08:55 +0200] "GET /members/pablo25.52919/ HTTP/2.0" 403 12398 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2025-09-30 15:10:06
(11 months ago)
Excessive 403/404/405 PHP/CMS errors from scanning or broken bots
...
Web App Attack
Anonymous
2025-09-30 01:08:20
(11 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-crawl-non_statics
Bad Web Bot
Web App Attack
๐ณ๐ฑ
exxos
2025-09-28 23:03:01
(11 months ago)
HTTP1.x attacks
DDoS Attack
Anonymous
2025-09-28 18:18:03
(11 months ago)
Malicious activity detected
Hacking
Web App Attack
๐ซ๐ท
bigorre.org
2025-09-28 10:41:28
(11 months ago)
unidentified crawl, no bot reference in user agent
Bad Web Bot
Anonymous
2025-09-28 09:02:11
(11 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-crawl-non_statics
Bad Web Bot
Web App Attack
Anonymous
2025-09-26 04:33:17
(11 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-crawl-non_statics
Bad Web Bot
Web App Attack
Anonymous
2025-09-26 02:13:07
(11 months ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
construct.net
2025-09-24 16:51:46
(11 months ago)
Triggered rate limiter: 25 page requests in under 10 seconds. [PRD-VM-WEB1a]
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-09-24 13:55:37
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 34.174.63.143 (143.63.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.174.63.143 (143.63.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 24 09:55:33.094639 2025] [security2:error] [pid 3388872:tid 3388872] [client 34.174.63.143:36090] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nymarts.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nymarts.com"] [uri "/nymarts.com"] [unique_id "aNP4VR-qj22hTE7SB4tvtAAAAAo"], referer: https://santander.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Skyrider
2025-09-24 03:57:45
(11 months ago)
34.174.63.143 - - [24/Sep/2025:05:57:38 +0200] "GET /faq/ HTTP/2.0" 403 12172 "-" "Mozilla/5.0 (Wind ...
show more
34.174.63.143 - - [24/Sep/2025:05:57:38 +0200] "GET /faq/ HTTP/2.0" 403 12172 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
34.174.63.143 - - [24/Sep/2025:05:57:41 +0200] "GET /members/godgoku.43440/ HTTP/2.0" 403 12405 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
34.174.63.143 - - [24/Sep/2025:05:57:45 +0200] "GET /misc/location-info?location=December HTTP/2.0" 403 5401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
34.174.63.143 - - [24/Sep/2025:05:57:45 +0200] "GET /threads/xstortionists-brolli-model-skin-wip.2189/post-21254 HTTP/2.0" 403 5401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
34.174.63.143 - - [24/Sep/2025:05:57:45 +0200] "GET /members/darthigor.41793/ HTTP/2.0" 403 5401 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/136.0"
show less
Bad Web Bot
Web App Attack
Anonymous
2025-09-23 23:52:03
(11 months ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
construct.net
2025-09-23 18:50:15
(11 months ago)
Triggered rate limiter: 40 page requests in under 20 seconds. [PRD-VM-WEB2a]
Bad Web Bot