๐บ๐ธ
TPI-Abuse
2026-06-13 15:41:18
(49 minutes ago)
(mod_security) mod_security (id:210730) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 11:41:12.959447 2026] [security2:error] [pid 21892:tid 21892] [client 34.93.184.75:41074] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sooperare.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sooperare.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "ai16GPGOnQNvjZmIeggIXgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-06-13 15:40:12
(50 minutes ago)
502 limiting connections by zone (12m59s)
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 14:46:36
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 10:46:32.112368 2026] [security2:error] [pid 5013:tid 5013] [client 34.93.184.75:55146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||crescentcitycafe.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "crescentcitycafe.net"] [uri "/dump.sql"] [unique_id "ai1tSA8Kp9CNe5QFpaLM9QAAAHo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
dcnet
2026-06-13 14:00:24
(2 hours ago)
FortiGate detected DOS attack from IPv4 address 34.93.184.75
DDoS Attack
Anonymous
2026-06-13 13:58:58
(2 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.93.184.75 (IN/India/75.184.93.34.bc. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.93.184.75 (IN/India/75.184.93.34.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ท
dynamix
2026-06-13 12:39:35
(3 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-06-13 12:31:30
(3 hours ago)
(caddyscan) Scanner path probe from 34.93.184.75 (IN/India/75.184.93.34.bc.googleusercontent.com): 5 ...
show more
(caddyscan) Scanner path probe from 34.93.184.75 (IN/India/75.184.93.34.bc.googleusercontent.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 34.93.184.75 - - [13/Jun/2026:12:31:27 +0000] "GET /server/actuator/heapdump HTTP/1.1"
[REDACTED] 200 2627 34.93.184.75 - - [13/Jun/2026:12:31:27 +0000] "GET /actuator/auditevents HTTP/1.1"
[REDACTED] 200 2627 34.93.184.75 - - [13/Jun/2026:12:31:27 +0000] "GET /server/actuator/env HTTP/1.1"
[REDACTED] 200 2627 34.93.184.75 - - [13/Jun/2026:12:31:27 +0000] "GET /internal/actuator/env HTTP/1.1"
[REDACTED] 200 2627 34.93.184.75 - - [13/Jun/2026:12:31:27 +0000] "GET /internal/actuator/heapdump HTTP/1.1"
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-13 09:05:53
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 05:05:48.941138 2026] [security2:error] [pid 10697:tid 10697] [client 34.93.184.75:36678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.robtown.com"] [uri "/.htaccess"] [unique_id "ai0dbBumRmA1DXL0QPq5yAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 08:17:11
(8 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 04:17:06.160895 2026] [security2:error] [pid 24128:tid 24128] [client 34.93.184.75:33678] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||intimeguards.com.americannetsecurity.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "intimeguards.com.americannetsecurity.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "ai0SAtilSIBLXZjDRu_ftgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-13 06:26:41
(10 hours ago)
[SatJun1308:26:35.3795262026][security2:error][pid4071091:tid4071334][client34.93.184.75:0]ModSecuri ...
show more
[SatJun1308:26:35.3795262026][security2:error][pid4071091:tid4071334][client34.93.184.75:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.garnimolinazzo.ch.81-17-25-250.cpanel.site\"][uri\"/v1/actuator/configprops\"][unique_id\"aiz4G6HKoBDuyQ212NgAZwAAAMw\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 04:44:28
(11 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.93.184.75 (75.184.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 00:44:20.817556 2026] [security2:error] [pid 31510:tid 31510] [client 34.93.184.75:59944] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||g-peopleland.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "g-peopleland.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aizgJDBvNNIJI5zfl4crGQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-13 04:23:51
(12 hours ago)
Unauthorized access to webpage admin
Web App Attack
๐ฎ๐น
VHosting
2026-06-13 04:05:04
(12 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-06-13 03:39:10
(12 hours ago)
categories: DDoS Attack
DDoS Attack
๐ฉ๐ช
updown.io
2026-06-13 03:16:55
(13 hours ago)
{"level":"info","ts":1781320614.7965322,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1781320614.7965322,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.93.184.75","remote_port":"47236","client_ip":"34.93.184.75","proto":"HTTP/1.1","method":"GET","host":"uupdate.mwww.hgfedgbwwwc7402a95-6fc9-4756-b4e6-fa6c7eeb29c6.random.159.89.98.98.nip.io","uri":"/.config/gcloud/credentials.db","headers":{"User-Agent":["Mozilla/5.0 (compatible; Yahoo! Slurp China; http://misc.yahoo.com.cn/help.html)"],"Accept-Charset":["utf-8"],"Accept-Encoding":["gzip"],"Connection":["close"]}},"bytes_read":0,"user_id":"","duration":0.000066977,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://uupdate.mwww.hgfedgbwwwc7402a95-6fc9-4756-b4e6-fa6c7eeb29c6.random.159.89.98.98.nip.io/.config/gcloud/credentials.db"],"Content-Type":[]}}
{"level":"info","ts":1781320614.7977555,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.93.184.75","remote_port":"47228","client_ip":"
...
show less
DDoS Attack
Web App Attack