๐บ๐ธ
TPI-Abuse
2026-09-22 09:11:44
(13 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.87.147.63 (63.147.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.147.63 (63.147.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 05:11:40.329226 2026] [security2:error] [pid 21767:tid 21767] [client 34.87.147.63:47726] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||framestoria.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "framestoria.com"] [uri "/z9x8c7v6b5-debug-trigger-framestoria.com"] [unique_id "arJGTGlbMtGbXLGHXH5uIgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-09-22 09:09:44
(15 minutes ago)
Aggressive web search of vulnerable pages: /static../.env /_nuxt/../.env /files../.env /static//home ...
show more
Aggressive web search of vulnerable pages: /static../.env /_nuxt/../.env /files../.env /static//home/user/.env /static//.env ...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-09-22 09:05:26
(19 minutes ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 08:53:48
(31 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.87.147.63 (63.147.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.147.63 (63.147.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 04:53:41.352507 2026] [security2:error] [pid 25501:tid 25501] [client 34.87.147.63:43766] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||grupoporvenir.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "grupoporvenir.com"] [uri "/z9x8c7v6b5-debug-trigger-grupoporvenir.com"] [unique_id "arJCFWJoM4NSkZRMZ_0N7wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
interbiznw.com
2026-09-22 08:42:24
(42 minutes ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฉ๐ช
Phenix Info
2026-09-22 08:41:31
(43 minutes ago)
SmallGuard.fr - Forbidden Ext.
Web App Attack
๐ฉ๐ช
itsolon
2026-09-22 08:40:29
(44 minutes ago)
[22/Sep/2026:10:40:28 +0200] 179006642876.540392 34.87.147.63 41296 217.154.7.177 443
[22/Sep/2026:1 ...
show more
[22/Sep/2026:10:40:28 +0200] 179006642876.540392 34.87.147.63 41296 217.154.7.177 443
[22/Sep/2026:10:40:28 +0200] 179006642851.116556 34.87.147.63 41296 217.154.7.177 443
[22/Sep/2026:10:40:28 +0200] 17900664281.101281 34.87.147.63 41288 217.154.7.177 443
[22/Sep/2026:10:40:28 +0200] 179006642816.683616 34.87.147.63 41288 217.154.7.177 443
[22/Sep/2026:10:40:28 +0200] 179006642822.295253 34.87.147.63 41288 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
JLKnoch Software GmbH
2026-09-22 08:38:11
(46 minutes ago)
CrowdSec crowdsecurity/http-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 08:32:24
(52 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.87.147.63 (63.147.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.147.63 (63.147.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 04:32:20.717551 2026] [security2:error] [pid 25975:tid 25975] [client 34.87.147.63:51460] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kooroshvaziri.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kooroshvaziri.com"] [uri "/z9x8c7v6b5-debug-trigger-kooroshvaziri.com"] [unique_id "arI9FENpVhixucexBrLzegAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ambor
2026-09-22 08:31:30
(53 minutes ago)
L0ss Honeypot: Environment file access attempt. Path: /.env
Web App Attack
๐ฉ๐ช
MSC IT for Business GmbH
2026-09-22 08:20:09
(1 hour ago)
GASTO/CrowdSec: gasto/404-flood triggered (via crowdsec-agent, categories 15,21)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 08:09:51
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.87.147.63 (63.147.87.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.147.63 (63.147.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 04:09:43.488471 2026] [security2:error] [pid 615:tid 637] [client 34.87.147.63:34800] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nothingwithoutwater.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nothingwithoutwater.com"] [uri "/z9x8c7v6b5-debug-trigger-nothingwithoutwater.com"] [unique_id "arI3x8-OAFL6V8CCXBcRuAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-09-22 07:51:00
(1 hour ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
๐ฎ๐น
VHosting
2026-09-22 07:50:03
(1 hour ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ซ๐ท
AGEPCom
2026-09-22 07:45:42
(1 hour ago)
Smart-Ban: IP bannie via score AbuseIPDB
Brute-Force
Web App Attack