πΊπΈ
TPI-Abuse
2026-10-10 20:41:47
(5 seconds ago)
(mod_security) mod_security (id:210730) triggered by 34.87.36.78 (78.36.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.36.78 (78.36.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 16:41:41.386876 2026] [security2:error] [pid 12746:tid 12746] [client 34.87.36.78:53502] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vffv.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vffv.com"] [uri "/z9x8c7v6b5-debug-trigger-vffv.com"] [unique_id "asqjBdcRbtKHEpiCNbbeEAAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΈπͺ
vaia.cloud
2026-10-10 20:40:01
(1 minute ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-10-10 20:39:03
(2 minutes ago)
Bot / scanning and/or hacking attempts: GET /__vite_rsc_findSourceMapURL?filename=file:///app/.env&a ...
show more
Bot / scanning and/or hacking attempts: GET /__vite_rsc_findSourceMapURL?filename=file:///app/.env&envi, GET /host.key HTTP/2.0, GET /llm/.env HTTP/2.0, GET /ml/.env HTTP/2.0, GET /%2eenv HTTP/2.0, GET //.env HTTP/2.0, GET /static//home/user/.env HTTP/2.0, GET /.idea/WebServers.xml HTTP/2.0
show less
Hacking
Web App Attack
π¨π¦
polycoda
2026-10-10 20:35:22
(6 minutes ago)
AutoBlock: π‘ Port Scan (Non Decay-Based) - β Excessive 40X Errors (Decay-Based)
Port Scan
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-10-10 20:16:25
(25 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.87.36.78 (78.36.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.36.78 (78.36.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 16:16:18.298119 2026] [security2:error] [pid 8667:tid 8667] [client 34.87.36.78:53918] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||versahealthcare.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "versahealthcare.com"] [uri "/z9x8c7v6b5-debug-trigger-versahealthcare.com"] [unique_id "asqdEjrWmUdSUIp062ra4gAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-10-10 20:13:22
(28 minutes ago)
Multiple WAF Violations
Web App Attack
π¬π§
consul.to
2026-10-10 20:11:33
(30 minutes ago)
Web attack/malicious scanning detected
Web App Attack
πΊπΈ
mnsf
2026-10-10 20:05:23
(36 minutes ago)
Too many Status 40X (13)
Brute-Force
Web App Attack
π³π±
Savvii
2026-10-10 20:04:08
(37 minutes ago)
20 attempts against mh_ha-misbehave-ban on bud
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-10 19:58:16
(43 minutes ago)
34.87.36.78 - - [10/Oct/2026:21:58:13 +0200] "GET /utq1ev7ng2gwws9a1h2d HTTP/1.1" 404 60367
34.87.36 ...
show more
34.87.36.78 - - [10/Oct/2026:21:58:13 +0200] "GET /utq1ev7ng2gwws9a1h2d HTTP/1.1" 404 60367
34.87.36.78 - - [10/Oct/2026:21:58:13 +0200] "GET /dist/manifest.json HTTP/1.1" 404 65196
34.87.36.78 - - [10/Oct/2026:21:58:14 +0200] "GET /static/manifest.json HTTP/1.1" 404 65202
34.87.36.78 - - [10/Oct/2026:21:58:14 +0200] "GET /assets/manifest.json HTTP/1.1" 404 65202
34.87.36.78 - - [10/Oct/2026:21:58:14 +0200] "GET /webpack-stats.json HTTP/1.1" 404 65195
34.87.36.78 - - [10/Oct/2026:21:58:14 +0200] "GET /modules/ps_facebook/views/js/front/conversion-api.js.map HTTP/1.1" 404 65314
34.87.36.78 - - [10/Oct/2026:21:58:14 +0200] "GET /manifest.json HTTP/1.1" 404 65180
34.87.36.78 - - [10/Oct/2026:21:58:14 +0200] "GET /graphql HTTP/1.1" 404 65162
34.87.36.78 - - [10/Oct/2026:21:58:14 +0200] "GET /asset-manifest.json HTTP/1.1" 404 65198
34.87.36.78 - - [10/Oct/2026:21:58:15 +0200] "GET /gcp-service.json HTTP/1.1" 404 60355
...
show less
Web Spam
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-10 19:56:39
(45 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.87.36.78 (78.36.87.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.87.36.78 (78.36.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 15:56:30.863672 2026] [security2:error] [pid 18214:tid 18214] [client 34.87.36.78:54134] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||veracurnow.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "veracurnow.com"] [uri "/z9x8c7v6b5-debug-trigger-veracurnow.com"] [unique_id "asqYbig8PBZxVtSwDpEXCwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
IndigoRidge
2026-10-10 19:48:47
(53 minutes ago)
[10/Oct/2026:15:48:42.642023 --0400] asqWmrGNxdFSeaBYI3iofQAAAZU 34.87.36.78 54766 205.233.18.17 708 ...
show more
[10/Oct/2026:15:48:42.642023 --0400] asqWmrGNxdFSeaBYI3iofQAAAZU 34.87.36.78 54766 205.233.18.17 7081
[10/Oct/2026:15:48:46.465091 --0400] asqWnhfHvtkobp-TTBY3XwAAAgQ 34.87.36.78 54958 205.233.18.17 7081
[10/Oct/2026:15:48:46.466025 --0400] asqWnqoZjtOqL935p5F@4AAAAks 34.87.36.78 54942 205.233.18.17 7081
[10/Oct/2026:15:48:46.475608 --0400] asqWnsFj72uduFq-JFQ6jQAAAAk 34.87.36.78 54964 205.233.18.17 7081
[10/Oct/2026:15:48:46.479312 --0400] asqWnpCaR1EKgkgr22W0aQAAA4Q 34.87.36.78 54972 205.233.18.17 7081
...
show less
Hacking
π«π·
venar
2026-10-10 19:39:26
(1 hour ago)
PrestaShop Security Module: suspicious probe path detected (/.git)
Web App Attack
Anonymous
2026-10-10 19:35:00
(1 hour ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
Anonymous
2026-10-10 19:31:10
(1 hour ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack