๐บ๐ธ
TPI-Abuse
2026-09-20 12:41:14
(5 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.82.103.31 (31.103.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.82.103.31 (31.103.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:41:07.021611 2026] [security2:error] [pid 15039:tid 15077] [client 34.82.103.31:44896] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cynosureinternetservices.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cynosureinternetservices.com"] [uri "/z9x8c7v6b5-debug-trigger-cynosureinternetservices.com"] [unique_id "aq_UY6ump6lny7qCk_v_jAAAAUc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-20 12:37:12
(9 minutes ago)
34.82.103.31 - - [20/Sep/2026:12:36:45 +0000] "GET /project/.env HTTP/2.0" 403 82858 "https://cool-d ...
show more
34.82.103.31 - - [20/Sep/2026:12:36:45 +0000] "GET /project/.env HTTP/2.0" 403 82858 "https://cool-dreams.com/project/.env" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36" "-" edge="34.82.103.31"
34.82.103.31 - - [20/Sep/2026:12:36:45 +0000] "GET /admin/.env HTTP/2.0" 403 82762 "https://cool-dreams.com/admin/.env" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)" "-" edge="34.82.103.31"
34.82.103.31 - - [20/Sep/2026:12:36:45 +0000] "GET /api/.env HTTP/2.0" 403 82744 "https://cool-dreams.com/api/.env" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)" "-" edge="34.82.103.31"
34.82.103.31 - - [20/Sep/2026:12:36:45 +0000] "GET /.github/workflows/deploy.yml HTTP/2.0" 403 82744 "https://cool-dreams.com/.github/workflows/deploy.yml" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-SearchBot/1.0; [email protected] )" "-" edge="34.82.103.31"
34.82.103.31 - - [20/Sep/2026:12:36:46 +0000] "GET /.env H
...
show less
Web App Attack
๐ซ๐ท
renzo64
2026-09-20 12:37:04
(9 minutes ago)
Domain : pleskcontrolpanel
Rule : config
2026-09-20 12:36:18 ***hidden-privacy*** GET /.git/HEAD - 8 ...
show more
Domain : pleskcontrolpanel
Rule : config
2026-09-20 12:36:18 ***hidden-privacy*** GET /.git/HEAD - 8443 - 34.82.103.31 Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] ) - 404 8 0 1171 438 152 - -
show less
Hacking
SQL Injection
๐ฉ๐ช
LRob
2026-09-20 12:35:11
(11 minutes ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /server.key (+3 more) | 2026-09-20 12:35 UTC
show less
Hacking
Web App Attack
๐ซ๐ท
COMAITE
2026-09-20 12:35:09
(11 minutes ago)
Common web attack from 34.82.103.31.
Web App Attack
Anonymous
2026-09-20 12:30:47
(15 minutes ago)
GET env.js | UA: Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html) | Time: ...
show more
GET env.js | UA: Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html) | Time: 2026-09-20 12:30:47 UTC
show less
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-09-20 12:22:25
(24 minutes ago)
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 34.82.103. ...
show more
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 34.82.103.31 (US/United States/[REDACTED_DOMAIN]): 20 in the last 3600 secs | UA: (apache_probe) Failed Access (403/404) 34.82.103.31 (US/United States/31.103.82.34.bc.googleusercontent.com): 20 in the last 3600 secs
show less
Brute-Force
Web App Attack
๐บ๐ธ
interbiznw.com
2026-09-20 12:17:23
(29 minutes ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
GabrielJST
2026-09-20 12:10:47
(35 minutes ago)
(mod_security) mod_security triggered on hostname [redacted] 34.82.103.31 (US/United States/31.103.8 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.82.103.31 (US/United States/31.103.82.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-20 12:10:40
(35 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.82.103.31 (31.103.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.82.103.31 (31.103.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 08:10:34.252837 2026] [security2:error] [pid 26146:tid 26146] [client 34.82.103.31:50904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beautyradio.com"] [uri "/.git/config"] [unique_id "aq_NOvLH9uUqGVBNDjTtdgAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 11:48:25
(58 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.82.103.31 (31.103.82.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.82.103.31 (31.103.82.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 07:48:19.282011 2026] [security2:error] [pid 30184:tid 30184] [client 34.82.103.31:52944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ablogisticsgroup.com"] [uri "/dist/.env"] [unique_id "aq_IA_UodE623adI-wqEMAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
NetVexor
2026-09-20 11:09:10
(1 hour ago)
Attack source identified and submitted via NetVexor BGP Blackhole Network
Port Scan
Hacking
Brute-Force