๐ซ๐ท
bigorre.org
2026-08-26 15:00:57
(2 hours ago)
Forbidden access for mozilla/5.0 (compatible; googlebot/2.1; +http://www.google.com/bot.html)
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-07-27 20:52:46
(4 weeks ago)
Forbidden access for mozilla/5.0 (compatible; googlebot/2.1; +http://www.google.com/bot.html)
Bad Web Bot
๐ฉ๐ช
rh24
2026-04-30 02:33:54
(3 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 107.172.163.18 (US/U ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 107.172.163.18 (US/United States/107-172-163-18-host.colocrossing.com)
show less
Bad Web Bot
๐จ๐ญ
backslash
2026-04-04 07:03:01
(4 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-01-27 02:36:41
(6 months ago)
(mod_security) mod_security (id:221260) triggered by 107.172.163.18 (107-172-163-18-host.colocrossin ...
show more
(mod_security) mod_security (id:221260) triggered by 107.172.163.18 (107-172-163-18-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 26 21:34:48.494587 2026] [security2:error] [pid 16656:tid 16672] [client 107.172.163.18:34141] ModSecurity: Access denied with code 403 (phase 1). Pattern match "^(?:\\\\'\\\\w+?=)?\\\\(\\\\)\\\\s{" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "77"] [id "221260"] [rev "3"] [msg "COMODO WAF: Shellshock Command Injection Vulnerabilities in GNU Bash through 4.3 bash43-026 (CVE-2014-7187, CVE-2014-7186, CVE-2014-7169, CVE-2014-6278, CVE-2014-6277, CVE-2014-6271)||cpcalendars.kettlehill.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.kettlehill.com"] [uri "/cgi-bin/status"] [unique_id "aXgkSD4D1upuVdMC6K7wDQAAAE0"], referer: () { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-17 18:14:11
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 107.172.163.18 (107-172-163-18-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 107.172.163.18 (107-172-163-18-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 17 13:14:05.587448 2026] [security2:error] [pid 11949:tid 11949] [client 107.172.163.18:43853] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.nbcnewsradio.com"] [uri "/.wp-config.php.swp"] [unique_id "aWvRbUWf0o4e2Wsi6VLRsQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-13 09:27:35
(9 months ago)
(mod_security) mod_security (id:211190) triggered by 107.172.163.18 (107-172-163-18-host.colocrossin ...
show more
(mod_security) mod_security (id:211190) triggered by 107.172.163.18 (107-172-163-18-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 04:27:28.200982 2025] [security2:error] [pid 3433:tid 3433] [client 107.172.163.18:55095] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||ftp.nbcnewsradio.com|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /wp-content/plugins/localize-my-post/ajax/include.php?file=../../../../../../../../../../etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.nbcnewsradio.com"] [uri "/wp-content/plugins/localize-my-post/ajax/include.php"] [unique_id "aRWkgHL7o22ZPN_sgtK_TwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dpsbs
2025-10-14 08:03:53
(10 months ago)
multiple ips intrustions detected
Hacking
๐บ๐ธ
TPI-Abuse
2025-07-26 23:36:14
(1 year ago)
(mod_security) mod_security (id:221260) triggered by 107.172.163.18 (107-172-163-18-host.colocrossin ...
show more
(mod_security) mod_security (id:221260) triggered by 107.172.163.18 (107-172-163-18-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 26 19:36:00.186385 2025] [security2:error] [pid 26228:tid 26515] [client 107.172.163.18:56731] ModSecurity: Access denied with code 403 (phase 1). Pattern match "^(?:\\\\'\\\\w+?=)?\\\\(\\\\)\\\\s{" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "77"] [id "221260"] [rev "3"] [msg "COMODO WAF: Shellshock Command Injection Vulnerabilities in GNU Bash through 4.3 bash43-026 (CVE-2014-7187, CVE-2014-7186, CVE-2014-7169, CVE-2014-6278, CVE-2014-6277, CVE-2014-6271)||autodiscover.kettlehill.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.kettlehill.net"] [uri "/cgi-bin/test-cgi"] [unique_id "aIVmYFo7USZqEn78mkOymAAAAQA"], referer: () { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-29 19:43:56
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 107.172.163.18 (107-172-163-18-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 107.172.163.18 (107-172-163-18-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 29 15:43:47.410139 2025] [security2:error] [pid 3345169:tid 3345169] [client 107.172.163.18:55675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.farmers123.com"] [uri "/.env.development.local"] [unique_id "aDi48zTEp5ZDQHbXIGQLQAAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-05-01 18:50:03
(1 year ago)
| Shellshock attack attempt
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
ChamberofCommerce.com
2023-11-06 01:02:26
(2 years ago)
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested ...
show more
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested Before Block:226
show less
Bad Web Bot
๐บ๐ธ
ChamberofCommerce.com
2023-11-02 03:44:10
(2 years ago)
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested ...
show more
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested Before Block:227
show less
Bad Web Bot
๐บ๐ธ
ChamberofCommerce.com
2023-10-30 23:45:59
(2 years ago)
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested ...
show more
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested Before Block:226
show less
Bad Web Bot