๐บ๐ธ
TPI-Abuse
2026-09-23 15:20:14
(9 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 11:20:07.534908 2026] [security2:error] [pid 17393:tid 17393] [client 34.55.59.51:38236] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mcthorpe.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mcthorpe.com"] [uri "/z9x8c7v6b5-debug-trigger-mcthorpe.com"] [unique_id "arPuJyI45G087yrVNvQNjQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 14:32:08
(57 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 10:31:59.964704 2026] [security2:error] [pid 12675:tid 12675] [client 34.55.59.51:46068] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||menagri.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "menagri.com"] [uri "/z9x8c7v6b5-debug-trigger-menagri.com"] [unique_id "arPi30g7bV-hIc5wzsWeqAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 14:05:14
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 10:05:05.927364 2026] [security2:error] [pid 31833:tid 31833] [client 34.55.59.51:54248] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mewebdesign.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mewebdesign.com"] [uri "/z9x8c7v6b5-debug-trigger-mewebdesign.com"] [unique_id "arPckSbM18dNsd7VQ62pGgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 13:48:16
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 09:48:11.605795 2026] [security2:error] [pid 25852:tid 25852] [client 34.55.59.51:37564] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||michelehoop.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "michelehoop.com"] [uri "/z9x8c7v6b5-debug-trigger-michelehoop.com"] [unique_id "arPYm8hTb-hx93EX2yx98QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Zundapper
2026-09-23 13:48:03
(1 hour ago)
34.55.59.51 - - [23/Sep/2026:15:48:01 +0200] "GET /5prvviau10w7gkmq0bpl HTTP/2.0" 404 106 "-" "Mozil ...
show more
34.55.59.51 - - [23/Sep/2026:15:48:01 +0200] "GET /5prvviau10w7gkmq0bpl HTTP/2.0" 404 106 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)"
34.55.59.51 - - [23/Sep/2026:15:48:01 +0200] "GET /z9x8c7v6b5-debug-trigger-michelemontecchi.com HTTP/2.0" 404 106 "-" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)"
34.55.59.51 - - [23/Sep/2026:15:48:01 +0200] "GET /qpreq8dcy82a20ob24l6 HTTP/2.0" 404 106 "-" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"
34.55.59.51 - - [23/Sep/2026:15:48:02 +0200] "GET /config/storage.yml HTTP/2.0" 404 106 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)"
34.55.59.51 - - [23/Sep/2026:15:48:02 +0200] "GET /config/env/aws_credentials.env HTTP/2.0" 404 106 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)"
...
show less
Web App Attack
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-23 13:32:41
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 09:32:34.435473 2026] [security2:error] [pid 15905:tid 15905] [client 34.55.59.51:53874] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mikethehomehelper.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mikethehomehelper.com"] [uri "/z9x8c7v6b5-debug-trigger-mikethehomehelper.com"] [unique_id "arPU8iqrWIShMQwRLWjAFQAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 13:12:57
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 09:12:53.918440 2026] [security2:error] [pid 29495:tid 29495] [client 34.55.59.51:50718] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mindroothealth.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mindroothealth.com"] [uri "/z9x8c7v6b5-debug-trigger-mindroothealth.com"] [unique_id "arPQVaANvo1g3X131yLn3wAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-23 12:45:08
(2 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-09-23 12:38:19
(2 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 12:37:05
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.55.59.51 (51.59.55.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 08:36:59.292470 2026] [security2:error] [pid 6342:tid 6362] [client 34.55.59.51:38624] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||missmadlove.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "missmadlove.com"] [uri "/z9x8c7v6b5-debug-trigger-missmadlove.com"] [unique_id "arPH6-eel4VzTqfKQCUcFwAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack