๐บ๐ธ
TPI-Abuse
2026-07-27 09:24:10
(13 hours ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 05:24:05.054720 2026] [security2:error] [pid 245010:tid 245010] [client 104.168.32.11:60216] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thevillageartcenter.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thevillageartcenter.com"] [uri "/mailto:[email protected] "] [unique_id "amcjteyUvEZ8R6_RnbQj5AAAACY"], referer: http://thevillageartcenter.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
conseilgouz
2026-07-25 17:50:19
(2 days ago)
scw-Joomla User : try to access forms...
Hacking
๐บ๐ธ
webgobe
2026-07-25 12:30:57
(2 days ago)
wew-(rsform) : try to access forms...
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-24 20:53:52
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 16:53:47.672829 2026] [security2:error] [pid 378733:tid 378733] [client 104.168.32.11:52740] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||hteca.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hteca.com"] [uri "/mailto:[email protected] "] [unique_id "amPQ22X8oCTGlYiXpDm3QQAAABo"], referer: http://hteca.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 20:35:42
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 16:35:37.734956 2026] [security2:error] [pid 25669:tid 25680] [client 104.168.32.11:58993] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ceol.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ceol.com"] [uri "/mailto:[email protected] "] [unique_id "amPMmRyTv1eQ9Wpr_JpyegAAAEk"], referer: http://ceol.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 17:42:37
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 13:42:32.763904 2026] [security2:error] [pid 4086081:tid 4086081] [client 104.168.32.11:65045] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||takemehomedogrescue.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "takemehomedogrescue.org"] [uri "/mailto:[email protected] "] [unique_id "amOkCNjWJYG_KBFxwzM5LgAAAAs"], referer: http://takemehomedogrescue.org
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
gigatech
2026-07-24 10:40:03
(3 days ago)
Webserver Probing
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 21:04:08
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 17:04:03.371295 2026] [security2:error] [pid 12906:tid 12906] [client 104.168.32.11:50769] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||10bestrestaurants.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "10bestrestaurants.com"] [uri "/mailto:[email protected] "] [unique_id "amKBw0AP8NMakCAvBMM5-wAAABA"], referer: http://10bestrestaurants.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 18:40:54
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 14:40:45.068243 2026] [security2:error] [pid 1127231:tid 1127231] [client 104.168.32.11:56209] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||5starfluffandfold.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "5starfluffandfold.com"] [uri "/mailto:[email protected] "] [unique_id "amJgLV4Ul6Yvp2L0JpcHpwAAAAI"], referer: http://5starfluffandfold.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-23 09:21:41
(4 days ago)
FortiWeb WAF: 70 attacks detected. Threat Score: 61000. Types: Client Management(35), Block IP List( ...
show more
FortiWeb WAF: 70 attacks detected. Threat Score: 61000. Types: Client Management(35), Block IP List(35). Origin: United States.
show less
Web App Attack
๐ฎ๐น
Progetto1
2026-07-23 07:10:02
(4 days ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 04:52:14
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 00:52:10.208180 2026] [security2:error] [pid 2179822:tid 2179822] [client 104.168.32.11:64010] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||antimu.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "antimu.com"] [uri "/mailto:[email protected] "] [unique_id "amGd-txNwhitWZonv-W4ZwAAAA8"], referer: http://antimu.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 22:29:09
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 18:29:01.836635 2026] [security2:error] [pid 1517903:tid 1517903] [client 104.168.32.11:55930] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kentsavagelaw.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kentsavagelaw.com"] [uri "/mailto:[email protected] "] [unique_id "amFELcHWdkTaibUekB7ppgAAAAo"], referer: http://kentsavagelaw.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 16:09:36
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing. ...
show more
(mod_security) mod_security (id:210730) triggered by 104.168.32.11 (104-168-32-11-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 12:09:31.559489 2026] [security2:error] [pid 1087824:tid 1087824] [client 104.168.32.11:64447] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||agrollum.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "agrollum.com"] [uri "/mailto:[email protected] "] [unique_id "amDrO9e9Ysqxy9C4G2mnNAAAAAI"], referer: http://agrollum.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
conseilgouz
2026-07-22 15:55:23
(5 days ago)
upw-(visforms) : try to access forms...
Hacking