π©πͺ
cloudmax
2026-09-21 23:07:21
(10 hours ago)
Cloudmax Protect [BOT BLOCK] - Suspicious User-Agent. Possible resource abuse, excessive requests, o ...
show more
Cloudmax Protect [BOT BLOCK] - Suspicious User-Agent. Possible resource abuse, excessive requests, or hacking attempt
show less
Bad Web Bot
π³π±
GabrielJST
2026-09-21 22:33:17
(10 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.76.119.47 (BE/Belgium/47.119.76.34.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.76.119.47 (BE/Belgium/47.119.76.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
πΊπΈ
robotstxt
2026-09-21 22:23:06
(10 hours ago)
34.76.119.47 - - [21/Sep/2026:22:22:37 +0000] "GET /.gitconfig HTTP/2.0" 403 2 "https://www.blimburn ...
show more
34.76.119.47 - - [21/Sep/2026:22:22:37 +0000] "GET /.gitconfig HTTP/2.0" 403 2 "https://www.blimburnseeds.com/.gitconfig" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot" "34.76.119.47" edge="172.71.118.137"
34.76.119.47 - - [21/Sep/2026:22:22:37 +0000] "GET /.aws/credentials HTTP/2.0" 403 36236 "https://www.blimburnseeds.com/.aws/credentials" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] )" "34.76.119.47" edge="172.71.118.137"
34.76.119.47 - - [21/Sep/2026:22:22:37 +0000] "GET /.aws/config HTTP/2.0" 403 36236 "https://www.blimburnseeds.com/.aws/config" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)" "34.76.119.47" edge="172.71.118.137"
34.76.119.47 - - [21/Sep/2026:22:22:37 +0000] "GET /.git-credentials HTTP/2.0" 403 2 "https://www.blimburnseeds.com/.git-credentials" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0;
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 21:32:00
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:31:58.055662 2026] [security2:error] [pid 8375:tid 8375] [client 34.76.119.47:57764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.dcsteven.com"] [uri "/@fs/app/.env"] [unique_id "arGiTu2PbTO8IX13DhYb_QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 20:41:33
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:41:27.201268 2026] [security2:error] [pid 20203:tid 20203] [client 34.76.119.47:43916] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.djmrmusic.com"] [uri "/@fs/app/.env"] [unique_id "arGWdyuPOva8tiLJCGzvHAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 20:20:57
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:20:53.148509 2026] [security2:error] [pid 17697:tid 17697] [client 34.76.119.47:60272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.faeriefeelers.com"] [uri "/agent/.env"] [unique_id "arGRpZYFNFmOgzEICOsfXQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 19:02:38
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 15:02:31.541661 2026] [security2:error] [pid 1328:tid 1328] [client 34.76.119.47:56954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bvnboysbasketball.com"] [uri "/app/.env"] [unique_id "arF_RzsWCNLb0tUr7Hcw0QAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 16:48:52
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 12:48:45.202145 2026] [security2:error] [pid 1436:tid 1436] [client 34.76.119.47:44746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.eta-mct.com"] [uri "/.env"] [unique_id "arFf7U5RTYbagcc4epKIZwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Stara
2026-09-21 15:33:09
(17 hours ago)
ModSecurity detected web attack - .env/config probing or SQLi/Code injection (Rule 949110)
Brute-Force
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 15:31:02
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 11:30:57.862260 2026] [security2:error] [pid 31733:tid 31733] [client 34.76.119.47:37468] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bigskyprints.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bigskyprints.com"] [uri "/z9x8c7v6b5-debug-trigger-bigskyprints.com"] [unique_id "arFNsSYIZ2WMO31KdZRd4QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-21 15:25:25
(17 hours ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
πΊπΈ
TPI-Abuse
2026-09-21 15:15:32
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 11:15:26.172944 2026] [security2:error] [pid 20653:tid 20653] [client 34.76.119.47:42160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.bhartman.com"] [uri "/userfiles"] [unique_id "arFKDs4Yq4QKCtAsSCd5twAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
updown.io
2026-09-21 14:49:07
(18 hours ago)
{"level":"info","ts":1790002139.385199,"logger":"http.log.access.log1","msg":"handled request","requ ...
show more
{"level":"info","ts":1790002139.385199,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.76.119.47","remote_port":"56932","client_ip":"34.76.119.47","proto":"HTTP/2.0","method":"POST","host":"status.3tristestigres.com","uri":"/graphql","headers":{"Sec-Ch-Ua-Mobile":["?0"],"Sec-Fetch-Site":["same-origin"],"Accept":["*/*"],"User-Agent":["Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"],"Referer":["https://status.3tristestigres.com"],"Sec-Fetch-Mode":["cors"],"Origin":["https://status.3tristestigres.com"],"Content-Type":["application/json"],"Accept-Encoding":["gzip, deflate, br, zstd"],"Sec-Fetch-Dest":["empty"],"Accept-Language":["en-US,en;q=0.9"],"Sec-Ch-Ua":["\"Chromium\";v=\"153\", \"Brave\";v=\"153\", \"Not_A Brand\";v=\"8\""],"Priority":["u=1, i"],"Sec-Ch-Ua-Platform":["\"macOS\""],"Content-Length":["86"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","serv
...
show less
DDoS Attack
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 14:48:40
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.76.119.47 (47.119.76.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 10:48:37.862299 2026] [security2:error] [pid 13140:tid 13140] [client 34.76.119.47:37418] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dianamead.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dianamead.com"] [uri "/z9x8c7v6b5-debug-trigger-dianamead.com"] [unique_id "arFDxfwTT3-58vgcLogZ7AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-21 14:44:00
(18 hours ago)
Blocked by ModSec and CSF
Port Scan