๐จ๐ฆ
polycoda
2026-10-01 14:45:10
(12 hours ago)
AutoBlock: ๐ก Port Scan (Non Decay-Based) - โ Excessive 40X Errors (Decay-Based)
Port Scan
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-01 14:45:07
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:45:02.399486 2026] [security2:error] [pid 18643:tid 18643] [client 35.237.134.174:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.antitribu.com|F|2"] [data ".antitribu.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.antitribu.com"] [uri "/z9x8c7v6b5-debug-trigger-www.antitribu.com"] [unique_id "ar5x7nZbES-KllkUc8PM7wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 14:23:38
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:23:30.339794 2026] [security2:error] [pid 23397:tid 23400] [client 35.237.134.174:47250] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.andrewbelschner.com|F|2"] [data ".andrewbelschner.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.andrewbelschner.com"] [uri "/z9x8c7v6b5-debug-trigger-www.andrewbelschner.com"] [unique_id "ar5s4jpugtEhSIF55Can4wAAAEE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 14:15:27
(12 hours ago)
IP matched detection query 50 and more bad rqs apache.
Hacking
Bad Web Bot
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-10-01 14:05:27
(12 hours ago)
Too many Status 40X (25)
Too many Status 50X (445)
Scanning/Probing (189)
Request Overload (470)
Brute-Force
Web App Attack
Anonymous
2026-10-01 13:48:02
(13 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-01 13:37:54
(13 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:37:47.061986 2026] [security2:error] [pid 32030:tid 32030] [client 35.237.134.174:35874] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.asdfwordpro.com|F|2"] [data ".asdfwordpro.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.asdfwordpro.com"] [uri "/z9x8c7v6b5-debug-trigger-www.asdfwordpro.com"] [unique_id "ar5iK07YSUph9W7gxVs-wQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:22:36
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:22:29.324499 2026] [security2:error] [pid 438:tid 438] [client 35.237.134.174:47018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.aeomis.com"] [uri "/laravel/.env"] [unique_id "ar5elSMPP5tmbmOhRUiSCQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:07:35
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:07:29.923101 2026] [security2:error] [pid 11410:tid 11410] [client 35.237.134.174:36166] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.banyonsbookdoctor.com"] [uri "/.env.js"] [unique_id "ar5bEe0lqBkHVhTFjzWgOgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-10-01 12:49:54
(14 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 12:45:51
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 08:45:48.207913 2026] [security2:error] [pid 29661:tid 29661] [client 35.237.134.174:34666] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||aeongames.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "aeongames.com"] [uri "/z9x8c7v6b5-debug-trigger-aeongames.com"] [unique_id "ar5V_PoVNj7OaClmKZ-S2AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-10-01 12:30:04
(14 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 12:28:56
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.237.134.174 (174.134.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 08:28:51.387003 2026] [security2:error] [pid 15144:tid 15144] [client 35.237.134.174:49044] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||vincenzorusso.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vincenzorusso.com"] [uri "/z9x8c7v6b5-debug-trigger-vincenzorusso.com"] [unique_id "ar5SA5Io4rXcaNHa7T4E7AAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack