๐บ๐ธ
TPI-Abuse
2026-10-07 09:10:51
(22 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.am ...
show more
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 05:10:47.704656 2026] [security2:error] [pid 29793:tid 29793] [client 34.226.207.119:52952] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.phantomkennels.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.phantomkennels.com"] [uri "/[email protected] "] [unique_id "asYMl5XO-Crjur1ZbrX54wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 04:01:34
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.am ...
show more
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 00:01:28.650638 2026] [security2:error] [pid 22560:tid 22560] [client 34.226.207.119:40930] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.brookspowell.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.brookspowell.com"] [uri "/mail to: [email protected] "] [unique_id "asXEGGErBaZpeGYSeERZsQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 03:37:28
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.am ...
show more
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 23:37:21.920172 2026] [security2:error] [pid 16949:tid 16949] [client 34.226.207.119:48130] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.flashbackmusicmemories.com|F|2"] [data ".40svocaltrio.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.flashbackmusicmemories.com"] [uri "/www.40svocaltrio.com"] [unique_id "asW-ceqTSrmQVQpDvCgMJwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 21:18:52
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.am ...
show more
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 17:18:47.781034 2026] [security2:error] [pid 9475:tid 9475] [client 34.226.207.119:33232] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.john-bell-associates.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.john-bell-associates.com"] [uri "/reddit.com"] [unique_id "asVlt-OsgiHTc4oQYn2rKAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 11:53:31
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.am ...
show more
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 07:53:25.792052 2026] [security2:error] [pid 2710:tid 2710] [client 34.226.207.119:32956] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.dalessalesandservice.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.dalessalesandservice.com"] [uri "/[email protected] "] [unique_id "asThNZrfKD9yhT36LTLgTAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
FireGuard Server
2026-10-06 01:35:06
(2 days ago)
Blocked by os-abuseipdb; 7 hits, proto=tcp, ports=80
Port Scan
Hacking
๐ซ๐ท
bigorre.org
2026-10-05 15:55:53
(2 days ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ฟ๐ฆ
vanderhost
2026-10-04 00:54:51
(4 days ago)
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /storage/ffc-documents/0 ...
show more
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /storage/ffc-documents/01KM3SP6R6MQ784A7GM1PDFXVC.pdf via rule: /storage
show less
Web App Attack
Bad Web Bot
๐ฎ๐น
Progetto1
2026-10-02 20:15:03
(5 days ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
Lino Project
2026-10-01 21:47:51
(6 days ago)
34.226.207.119 - - [01/Oct/2026:23:47:48 +0200] "GET /new-media-tv/ HTTP/1.1" 200 23436 "-" "Mozilla ...
show more
34.226.207.119 - - [01/Oct/2026:23:47:48 +0200] "GET /new-media-tv/ HTTP/1.1" 200 23436 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.75 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
taivas.nl
2026-10-01 04:33:13
(1 week ago)
Many_bad_calls
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 01:56:03
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.am ...
show more
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 21:55:58.321627 2026] [security2:error] [pid 2203:tid 2203] [client 34.226.207.119:57236] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||glassclublake.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "glassclublake.com"] [uri "/[email protected] "] [unique_id "ar29rpxcQtxeGlGHkGF1kQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-10-01 01:05:25
(1 week ago)
Too many Status 40X (29)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 01:02:03
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.am ...
show more
(mod_security) mod_security (id:210730) triggered by 34.226.207.119 (ec2-34-226-207-119.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 21:01:56.077331 2026] [security2:error] [pid 18766:tid 18781] [client 34.226.207.119:44550] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.aafm.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.aafm.org"] [uri "/http/charteredfinancialmanager.com"] [unique_id "ar2xBLxmlDTP2SKvwHo0GAAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
taivas.nl
2026-09-30 18:32:12
(1 week ago)
Bad_requests
Bad Web Bot