๐บ๐ธ
TPI-Abuse
2026-10-03 07:14:35
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 03:14:31.139664 2026] [security2:error] [pid 13908:tid 13908] [client 34.19.75.177:36914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cathrynn.com"] [uri "/.htpasswd"] [unique_id "asCrVwSfZAVD0sFYZgUDVAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-10-03 06:05:19
(2 hours ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐ช๐ธ
robotstxt
2026-10-03 05:08:32
(3 hours ago)
34.19.75.177 - - [03/Oct/2026:05:08:30 +0000] "GET /..%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34 ...
show more
34.19.75.177 - - [03/Oct/2026:05:08:30 +0000] "GET /..%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.19.75.177"
34.19.75.177 - - [03/Oct/2026:05:08:30 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="34.19.75.177"
34.19.75.177 - - [03/Oct/2026:05:08:30 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2fproc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.19.75.177"
34.19.75.177 - - [03/Oct/2026:05:08:30 +0000] "GET /icons/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.19.75.177"
34.19.75.177 - - [03/Oct/2026:05:08:30 +0000] "GET /%2E%2E/%2E%2E/%2E%2E/%2E%2E/proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="34.19.75.177"
...
show less
Web Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 04:13:21
(4 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 00:13:16.922061 2026] [security2:error] [pid 7086:tid 7086] [client 34.19.75.177:60908] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||electrolux.pamplonaserviciotecnico.com|F|2"] [data ".pamplonaserviciotecnico.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "electrolux.pamplonaserviciotecnico.com"] [uri "/z9x8c7v6b5-debug-trigger-electrolux.pamplonaserviciotecnico.com"] [unique_id "asCA3EG-tdyiQK1e3dZxVAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 01:16:09
(7 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 21:16:02.046113 2026] [security2:error] [pid 6787:tid 6787] [client 34.19.75.177:35332] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||elpasoheroes.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elpasoheroes.com"] [uri "/z9x8c7v6b5-debug-trigger-elpasoheroes.com"] [unique_id "asBXUgwvomrUkE4MP4uGNgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-10-03 01:01:11
(7 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-10-03 01:00:06
(7 hours ago)
2.418 requests from abuseipdb.com blacklisted IP (1yr3mos2w)
Brute-Force
Bad Web Bot
๐ฉ๐ช
ardexter
2026-10-03 00:52:15
(7 hours ago)
Wordpress attack and DDOS
DDoS Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 00:18:45
(8 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 20:18:38.577539 2026] [security2:error] [pid 6095:tid 6095] [client 34.19.75.177:46402] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||elevese.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elevese.com"] [uri "/z9x8c7v6b5-debug-trigger-elevese.com"] [unique_id "asBJ3g2efVK5KFAKeiCiigAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-10-03 00:15:12
(8 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ซ๐ท
masterguru
2026-10-03 00:04:40
(8 hours ago)
BAD BOT - Detected and Blocked.. Matched phrase "ccbot" at REQUEST_HEADERS:User-Agent. (1100000-195)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-02 19:25:36
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.75.177 (177.75.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 15:25:28.385009 2026] [security2:error] [pid 6147:tid 6147] [client 34.19.75.177:45590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ellavandeven.com"] [uri "/wp-config.php.bak"] [unique_id "asAFKEKbbvlZ1QIk0yW7BwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
updown.io
2026-10-02 19:23:24
(13 hours ago)
{"level":"info","ts":1790968998.44909,"logger":"http.log.access.log1","msg":"handled request","reque ...
show more
{"level":"info","ts":1790968998.44909,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.19.75.177","remote_port":"35352","client_ip":"34.19.75.177","proto":"HTTP/2.0","method":"GET","host":"status.abcwarehouse.com","uri":"/static../.env","headers":{"Accept-Encoding":["gzip"],"Accept":["*/*"],"Cookie":["REDACTED"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"X-Nextjs-Data":["1"],"User-Agent":["Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"status.abcwarehouse.com","ech":false}},"bytes_read":0,"user_id":"","duration":0.000143635,"size":0,"status":429,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-After":["1"]}}
{"level":"info","ts":1790968998.4530005,"logger":"http.log.access.log1","
...
show less
DDoS Attack
Web App Attack
๐บ๐ธ
rsa
2026-10-02 18:11:00
(14 hours ago)
POST /exec-py HTTP/1.1
GET /admin/ HTTP/1.1
DDoS Attack
Exploited Host
Web App Attack
Anonymous
2026-10-02 17:30:02
(15 hours ago)
suspicious request in access.log
Web App Attack