๐บ๐ธ
TPI-Abuse
2026-09-21 04:50:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 00:50:07.967161 2026] [security2:error] [pid 1393:tid 1393] [client 34.80.161.247:42804] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.backyardtossers.com"] [uri "/.git/config"] [unique_id "arC3f-_InjGf5c0svQOh7wAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 03:10:23
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 23:10:15.261977 2026] [security2:error] [pid 31816:tid 31816] [client 34.80.161.247:46828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.barbaraedidin.com"] [uri "/.env.backup"] [unique_id "arCgF0jxcPcBiN9bVJcFowAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-21 02:24:50
(2 days ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-21 02:07:15
(2 days ago)
34.80.161.247 - - [20/Sep/2026:22:07:15 -0400] "GET /.aws/credentials HTTP/1.1" 403 377 "-" "CCBot/2 ...
show more
34.80.161.247 - - [20/Sep/2026:22:07:15 -0400] "GET /.aws/credentials HTTP/1.1" 403 377 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-09-21 01:42:00
(2 days ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐ฉ๐ช
Philister11
2026-09-21 01:36:32
(2 days ago)
CrowdSec: crowdsecurity/http-sensitive-files (TW/AS396982)
Web App Attack
Hacking
๐ซ๐ท
dynamix
2026-09-21 00:06:50
(2 days ago)
Multiple WAF Violations
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 23:55:04
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 22:31:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:31:07.005193 2026] [security2:error] [pid 14205:tid 14265] [client 34.80.161.247:50816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.docdalton.com"] [uri "/@fs/app/.env"] [unique_id "arBeq8rOIQOG4IaldDQHewAAAYE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 22:07:19
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 34.80.161.247 (247.161.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.80.161.247 (247.161.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:07:11.899362 2026] [security2:error] [pid 21264:tid 21264] [client 34.80.161.247:37668] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||backstore.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "backstore.com"] [uri "/z9x8c7v6b5-debug-trigger-backstore.com"] [unique_id "arBZDyjC_lc9kTgfZrxS9wAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 21:29:03
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:28:55.990977 2026] [security2:error] [pid 26873:tid 26979] [client 34.80.161.247:50078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jd-web-designs.com"] [uri "/.env.bak"] [unique_id "arBQF9jT7qmJAh1uk6NtTAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 21:14:01
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:13:57.945797 2026] [security2:error] [pid 15224:tid 15265] [client 34.80.161.247:52268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mailporte.com"] [uri "/api/.env"] [unique_id "arBMlUsX1x8GyyDxJvtgowAAAYQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 21:00:08
(2 days ago)
| [Dangerous/Taiwan] Aggressive IP 34.80.161.247 (~30 hits). Type: DoS Defender- Web server 400 erro ...
show more
| [Dangerous/Taiwan] Aggressive IP 34.80.161.247 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
Anonymous
2026-09-20 20:54:05
(2 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 19:40:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.161.247 (247.161.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 15:40:04.272143 2026] [security2:error] [pid 26233:tid 26233] [client 34.80.161.247:39760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bad.banis-associates.com"] [uri "/.git/config"] [unique_id "arA2lBKgUucilgfes0g3fQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack