๐ฉ๐ช
Hazzard
2026-09-15 16:28:25
(3 days ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-13 21:45:20
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.20.237.90 (90.237.20.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.237.90 (90.237.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 17:45:13.641561 2026] [security2:error] [pid 28177:tid 28177] [client 34.20.237.90:49912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.stevedegroodt.com"] [uri "/.htaccess"] [unique_id "aqcZacc0ChYtL1ksnBfSLQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 17:14:27
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 34.20.237.90 (90.237.20.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.20.237.90 (90.237.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 13:14:22.187915 2026] [security2:error] [pid 4317:tid 4317] [client 34.20.237.90:42668] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.seasidesolution.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.seasidesolution.com"] [uri "/dump.sql"] [unique_id "aqbZ7jE6n1eHBho0m97BmQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 13:45:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.20.237.90 (90.237.20.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.20.237.90 (90.237.20.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 09:45:49.680087 2026] [security2:error] [pid 28385:tid 28402] [client 34.20.237.90:34456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.attorneylouisiana.com"] [uri "/.htaccess"] [unique_id "aqQGDakL8gnFJbPoitwl2AAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-11 05:13:43
(1 week ago)
32 attacks on config grabbing URLs, config grabbing URLs (type 2), site downloads, PHP URLs:
GET /.h ...
show more
32 attacks on config grabbing URLs, config grabbing URLs (type 2), site downloads, PHP URLs:
GET /.htaccess HTTP/1.1
GET /appsettings.json HTTP/1.1
GET /backup.rar HTTP/1.1
GET /info.php HTTP/1.1
show less
Hacking
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-09-09 07:24:01
(1 week ago)
categories: DDoS Attack
DDoS Attack
๐ฌ๐ง
consul.to
2026-09-08 03:31:01
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ด
jad-abuse
2026-09-06 18:40:52
(1 week ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: ai_secret ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: ai_secrets, env_probe, db_dump. Observed by 1 sensor(s); 180 hits.
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-05 21:58:57
(1 week ago)
[06/Sep/2026:00:58:57 +0300] -- 34.20.237.90 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /. ...
show more
[06/Sep/2026:00:58:57 +0300] -- 34.20.237.90 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /.continue/config.json HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-04 19:05:26
(2 weeks ago)
Too many Status 40X (13)
Brute-Force
Web App Attack
๐บ๐ธ
dot.mg
2026-09-04 17:53:22
(2 weeks ago)
Scan of vulnerable files
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-09-04 17:30:03
(2 weeks ago)
categories: DDoS Attack
DDoS Attack
๐ซ๐ท
IRISIO
2026-09-04 08:57:43
(2 weeks ago)
scans/SQL injection/spam posts : 24 queries
Web App Attack
SQL Injection
๐บ๐ธ
mnsf
2026-09-03 18:05:15
(2 weeks ago)
Too many Status 40X (13)
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-09-03 11:52:36
(2 weeks ago)
Web attack/malicious scanning detected
Web App Attack