๐ซ๐ท
bigorre.org
2026-07-24 11:18:24
(1 day ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
Anonymous
2026-06-22 12:00:00
(1 month ago)
Fake Googlebot: User-Agent claims Googlebot/2.1 but the source IP (AS62874 WEB2OBJECTS, US) is outsi ...
show more
Fake Googlebot: User-Agent claims Googlebot/2.1 but the source IP (AS62874 WEB2OBJECTS, US) is outside Google's official IP ranges and has no crawl-*.googlebot.com reverse DNS. 1 requests observed between 2026-05-23 and 2026-06-22.
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-09-03 18:40:43
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 03 14:40:08.205182 2024] [security2:error] [pid 11371:tid 11371] [client 104.239.78.34:56297] [client 104.239.78.34] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.stdavids-media.com"] [uri "/.env.live"] [unique_id "ZtdYCPf1wNyOBAncOxKOwwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-01 01:53:11
(1 year ago)
(mod_security) mod_security (id:211190) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211190) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 31 21:51:51.198983 2024] [security2:error] [pid 3087873:tid 3087887] [client 104.239.78.34:48895] [client 104.239.78.34] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||mail.kettlehill.net|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /servlets/FetchFile?fileName=../../../../../../../../../../etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kettlehill.net"] [uri "/servlets/FetchFile"] [unique_id "ZtPIt1ZVdRO6ImKeyeuN9wAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-07-24 02:34:31
(2 years ago)
Common attack or app scan event detected and blocked
Port Scan
Hacking
Web App Attack
๐ฉ๐ช
ps-center
2024-07-16 02:33:09
(2 years ago)
SS1: Web Attack GET /wp-content/plugins/jsmol2wp/php/jsmol.php?isform=true&call=saveFile&data=%3C%2F ...
show more
SS1: Web Attack GET /wp-content/plugins/jsmol2wp/php/jsmol.php?isform=true&call=saveFile&data=%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E&mimetype=text/html&%20charset=utf-8
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2024-06-28 13:02:04
(2 years ago)
Unauthorized login attempts [ accesslogs]
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-06-27 07:08:39
(2 years ago)
(mod_security) mod_security (id:211190) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211190) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 27 03:08:28.277014 2024] [security2:error] [pid 31360:tid 47386280683264] [client 104.239.78.34:59557] [client 104.239.78.34] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||ftp.kettlehill.com|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /index.php?option=com_cartweberp&controller=../../../../../../../../etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.kettlehill.com"] [uri "/index.php"] [unique_id "Zn0P7FyO989uQdQJj5NWBAAAAQI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2024-05-08 07:00:43
(2 years ago)
Unauthorized login attempts []
Brute-Force
๐ช๐ธ
10dencehispahard SL
2024-05-08 06:17:34
(2 years ago)
Web Attack
DDoS Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-01 16:06:13
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 01 12:05:42.991493 2024] [security2:error] [pid 12229:tid 47912221054720] [client 104.239.78.34:50483] [client 104.239.78.34] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ftp.kettlehill.net|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ftp.kettlehill.net"] [uri "/ftp.db"] [unique_id "ZgrbVm0Dp7d7uSkzCrbP5QAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2024-03-27 07:00:25
(2 years ago)
Unauthorized login attempts [ BI-16635]
Brute-Force
๐ช๐ธ
10dencehispahard SL
2024-03-27 06:51:51
(2 years ago)
WP scan
Web App Attack
Anonymous
2024-03-13 16:03:13
(2 years ago)
Common attack or app scan event detected and blocked
Port Scan
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-25 21:25:25
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 104.239.78.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 25 16:24:36.212488 2024] [security2:error] [pid 11388] [client 104.239.78.34:34311] [client 104.239.78.34] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||stdavids-media.com|F|2"] [data ".com.sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stdavids-media.com"] [uri "/stdavids-media.com.sql"] [unique_id "ZbLRlJMM5WE3Hba79kY3FwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack