๐บ๐ธ
TPI-Abuse
2026-10-01 17:14:45
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 13:14:42.229066 2026] [security2:error] [pid 27818:tid 27818] [client 34.19.201.174:39220] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.losbarbarosdelnorte.com|F|2"] [data ".losbarbarosdelnorte.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.losbarbarosdelnorte.com"] [uri "/z9x8c7v6b5-debug-trigger-autodiscover.losbarbarosdelnorte.com"] [unique_id "ar6VAkklbehSjdjPNulaagAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐ณ
unph
2026-10-01 16:56:18
(1 day ago)
Intento de acceso sospechoso bloqueado por AbuseIPDB Blocker Plugin
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-01 16:48:55
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 12:48:48.501288 2026] [security2:error] [pid 3918:tid 3918] [client 34.19.201.174:47960] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.judithcaldwell.com|F|2"] [data ".judithcaldwell.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.judithcaldwell.com"] [uri "/z9x8c7v6b5-debug-trigger-autodiscover.judithcaldwell.com"] [unique_id "ar6O8KkiyFDq6OgEWirRyQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 16:01:45
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 12:01:37.648065 2026] [security2:error] [pid 18576:tid 18576] [client 34.19.201.174:46698] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.laura-stone.com|F|2"] [data ".laura-stone.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.laura-stone.com"] [uri "/z9x8c7v6b5-debug-trigger-www.laura-stone.com"] [unique_id "ar6D4Rf3O_0lqN3k9NBfagAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-01 15:55:50
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-01 15:05:08
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 11:05:00.565870 2026] [security2:error] [pid 24705:tid 24716] [client 34.19.201.174:60728] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.moderncabinetcorp.com|F|2"] [data ".moderncabinetcorp.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.moderncabinetcorp.com"] [uri "/z9x8c7v6b5-debug-trigger-autodiscover.moderncabinetcorp.com"] [unique_id "ar52nIA_c8aNdCvGBTaYTgAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 14:35:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.19.201.174 (174.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.201.174 (174.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:35:10.254950 2026] [security2:error] [pid 16334:tid 16334] [client 34.19.201.174:58010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kentuckyminiaturehorsebreeders.org"] [uri "/images../.env"] [unique_id "ar5vnn9a6zUi_TtTytOa2gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:55:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.19.201.174 (174.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.201.174 (174.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:55:26.902069 2026] [security2:error] [pid 10800:tid 10800] [client 34.19.201.174:44676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jimhermelband.com"] [uri "/files../.env"] [unique_id "ar5mTn2Hjmg9sCJ_-QJeqQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-10-01 13:54:11
(1 day ago)
csagent: score 20.1: secrets grab x1, 404 noise floor x1, spoofed crawler UA x1; 1 domain(s) in 4s
Web App Attack
๐ซ๐ท
dynamix
2026-10-01 13:40:59
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฆ๐บ
rubixstudios
2026-10-01 13:40:03
(1 day ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:39:24
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:39:20.289024 2026] [security2:error] [pid 14075:tid 14075] [client 34.19.201.174:58314] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.landtug.com|F|2"] [data ".landtug.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.landtug.com"] [uri "/z9x8c7v6b5-debug-trigger-www.landtug.com"] [unique_id "ar5iiAKoMYAbSkkO5TMhbQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 13:19:39
(1 day ago)
Aggressive web scan
Web App Attack
๐จ๐ญ
4server
2026-10-01 12:45:02
(1 day ago)
[ThuOct0114:44:56.3333312026][security2:error][pid3481486:tid3481635][client34.19.201.174:0]ModSecur ...
show more
[ThuOct0114:44:56.3333312026][security2:error][pid3481486:tid3481635][client34.19.201.174:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:queryintrospectionquery\?\|__schema\\\\\\\\\?{\?\(\?:querytype\|types\?\)\)\?\\\\\\\\{\"atREQUEST_BODY.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"234\"][id\"344378\"][rev\"2\"][msg\"Atomicorp.comWAFRules:GraphQLInjectionAttackattempt\"][data\"MatchedData:__schema{types{foundwithinREQUEST_BODY:{\\\\x22query\\\\x22:\\\\x22{__schema{types{namefields{nameargs{namedefaultvalue}}}}}\\\\x22}\"][severity\"CRITICAL\"][tag\"SQLi\"][hostname\"www.leonitraslochi.ch\"][uri\"/graphql\"][unique_id\"ar5VyL8X6zayX4nb-EALqAAAAJU\"]\,referer:https://www.leonitraslochi.ch
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 12:32:24
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.201.174 (174.201.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 08:32:18.232191 2026] [security2:error] [pid 30205:tid 30205] [client 34.19.201.174:59738] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mapleleaf-marketing.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mapleleaf-marketing.com"] [uri "/z9x8c7v6b5-debug-trigger-mapleleaf-marketing.com"] [unique_id "ar5S0iiFUZ5O6HwdKlHDigAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack