๐บ๐ธ
TPI-Abuse
2026-09-23 14:52:21
(1 minute ago)
(mod_security) mod_security (id:210730) triggered by 34.90.163.186 (186.163.90.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.90.163.186 (186.163.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 10:52:14.757204 2026] [security2:error] [pid 1243:tid 1243] [client 34.90.163.186:38970] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||paulaperez.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "paulaperez.com"] [uri "/z9x8c7v6b5-debug-trigger-paulaperez.com"] [unique_id "arPnngQ0r_WcKs8ZiSkxkAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
xyz.rip
2026-09-23 14:44:28
(9 minutes ago)
WAF Violation
...
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 14:36:23
(17 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.90.163.186 (186.163.90.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.90.163.186 (186.163.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 10:36:16.613882 2026] [security2:error] [pid 9608:tid 9608] [client 34.90.163.186:48268] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||paulshorrock.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "paulshorrock.com"] [uri "/z9x8c7v6b5-debug-trigger-paulshorrock.com"] [unique_id "arPj4DZOmAH2oslVGpZ5nQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-23 14:30:04
(23 minutes ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
zumbo.net
2026-09-23 14:03:06
(50 minutes ago)
[Wed Sep 23 17:02:59.390075 2026] [proxy_fcgi:error] [pid 408351:tid 408368] [client 34.90.163.186:0 ...
show more
[Wed Sep 23 17:02:59.390075 2026] [proxy_fcgi:error] [pid 408351:tid 408368] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
[Wed Sep 23 17:03:05.324073 2026] [proxy_fcgi:error] [pid 408352:tid 408395] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
[Wed Sep 23 17:03:05.393752 2026] [proxy_fcgi:error] [pid 408351:tid 408358] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
[Wed Sep 23 17:03:05.399412 2026] [proxy_fcgi:error] [pid 408351:tid 408375] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
[Wed Sep 23 17:03:05.415261 2026] [proxy_fcgi:error] [pid 408351:tid 408388] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2026-09-23 13:42:02
(1 hour ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
๐ฉ๐ช
rh24
2026-09-23 13:41:00
(1 hour ago)
(badbots) Bad bot user-agent [redacted] from 34.90.163.186 (186.163.90.34.bc.googleusercontent.com)
Hacking
๐ซ๐ท
COMAITE
2026-09-23 13:35:19
(1 hour ago)
Suspicious URL access.
Web App Attack
๐ฌ๐ง
SafBH
2026-09-23 13:24:03
(1 hour ago)
CrowdSec Decision: Attempted to access a forbidden path / Vulnerability probing: "[/.env]"
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 13:10:28
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.90.163.186 (186.163.90.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.90.163.186 (186.163.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 09:10:23.873218 2026] [security2:error] [pid 26698:tid 26698] [client 34.90.163.186:37004] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stlouisdave.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stlouisdave.com"] [uri "/z9x8c7v6b5-debug-trigger-stlouisdave.com"] [unique_id "arPPv3GNUvZpHa87GYw1AgAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
zumbo.net
2026-09-23 13:07:30
(1 hour ago)
[Wed Sep 23 16:07:26.097965 2026] [proxy_fcgi:error] [pid 530132:tid 530148] [client 34.90.163.186:0 ...
show more
[Wed Sep 23 16:07:26.097965 2026] [proxy_fcgi:error] [pid 530132:tid 530148] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
[Wed Sep 23 16:07:30.102132 2026] [proxy_fcgi:error] [pid 530133:tid 530173] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
[Wed Sep 23 16:07:30.112381 2026] [proxy_fcgi:error] [pid 530132:tid 530141] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
[Wed Sep 23 16:07:30.158389 2026] [proxy_fcgi:error] [pid 530133:tid 530179] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
[Wed Sep 23 16:07:30.158927 2026] [proxy_fcgi:error] [pid 530133:tid 530171] [client 34.90.163.186:0] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Web App Attack
Anonymous
2026-09-23 13:07:09
(1 hour ago)
Automated web scanner. Requested suspicious paths: /dist/manifest.json | /webpack-stats.json | /asse ...
show more
Automated web scanner. Requested suspicious paths: /dist/manifest.json | /webpack-stats.json | /asset-manifest.json. UTC: 2026-09-23 12:53:31.
show less
Web App Attack
๐ฎ๐น
VHosting
2026-09-23 12:45:08
(2 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 12:34:05
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.90.163.186 (186.163.90.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.90.163.186 (186.163.90.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 08:34:01.342453 2026] [security2:error] [pid 29590:tid 29590] [client 34.90.163.186:42182] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vjrott.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vjrott.com"] [uri "/z9x8c7v6b5-debug-trigger-vjrott.com"] [unique_id "arPHOfuty6TFSwjZDHarfgAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-23 12:24:34
(2 hours ago)
34.90.163.186 - - [23/Sep/2026:12:24:03 +0000] "GET / HTTP/2.0" 403 30397 "https://wpvulnerability.c ...
show more
34.90.163.186 - - [23/Sep/2026:12:24:03 +0000] "GET / HTTP/2.0" 403 30397 "https://wpvulnerability.com/" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" "-" edge="34.90.163.186"
34.90.163.186 - - [23/Sep/2026:12:24:04 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 403 20121 "https://wpvulnerability.com/dist/.vite/manifest.json" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36 EdgA/153.0.0.0" "-" edge="34.90.163.186"
34.90.163.186 - - [23/Sep/2026:12:24:04 +0000] "GET /?34f48c=affe892836.js& HTTP/2.0" 403 2 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36 EdgA/153.0.0.0" "-" edge="34.90.163.186"
34.90.163.186 - - [23/Sep/2026:12:24:04 +0000] "GET /dist/manifest.json HTTP/2.0" 403 20065 "https://wpvulnerability.com/dist/manifest.json" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobil
...
show less
Web App Attack