Anonymous
2026-09-05 23:41:01
(1 week ago)
Malicious activity detected
Hacking
Web App Attack
🇫🇷
bigorre.org
2026-08-15 14:58:32
(4 weeks ago)
Forbidden access for mozilla/5.0 (compatible; googlebot/2.1; +http://www.google.com/bot.html)
Bad Web Bot
🇫🇮
Christopher Hughes
2026-08-12 20:11:39
(1 month ago)
107.174.194.229 - - [12/Aug/2026:21:11:37 +0100] "GET /news/ HTTP/1.1" 200 10818 "-" "Mozilla/5.0 (c ...
show more
107.174.194.229 - - [12/Aug/2026:21:11:37 +0100] "GET /news/ HTTP/1.1" 200 10818 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Web App Attack
🇫🇷
bigorre.org
2026-07-31 15:06:37
(1 month ago)
Forbidden access for mozilla/5.0 (compatible; googlebot/2.1; +http://www.google.com/bot.html)
Bad Web Bot
🇨🇭
backslash
2026-06-17 00:06:24
(2 months ago)
block ruleset 7B8FD6B12C4E12B6F0DAE02E53C0597FBEDDF5BC
Bad Web Bot
🇺🇸
TPI-Abuse
2026-01-16 08:00:11
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 107.174.194.229 (107-174-194-229-host.colocross ...
show more
(mod_security) mod_security (id:210492) triggered by 107.174.194.229 (107-174-194-229-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 16 03:00:05.013529 2026] [security2:error] [pid 18021:tid 18021] [client 107.174.194.229:52513] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/Web.config" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.nbcnewsradio.com"] [uri "/web.config"] [unique_id "aWnwBS6XnJ-eV0wRsZaSHQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-29 21:04:45
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 107.174.194.229 (107-174-194-229-host.colocross ...
show more
(mod_security) mod_security (id:210730) triggered by 107.174.194.229 (107-174-194-229-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 16:04:40.639924 2025] [security2:error] [pid 21770:tid 21792] [client 107.174.194.229:54663] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kettlehill.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kettlehill.com"] [uri "/\\\\example.com"] [unique_id "aVLs6O1IUNfWG5lsn0HDnQAAAZM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-01 06:22:57
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 107.174.194.229 (107-174-194-229-host.colocross ...
show more
(mod_security) mod_security (id:210730) triggered by 107.174.194.229 (107-174-194-229-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 01:22:48.426106 2025] [security2:error] [pid 31256:tid 31274] [client 107.174.194.229:51575] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kettlehill.kettlehill.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kettlehill.kettlehill.com"] [uri "/log.log"] [unique_id "aS00OG28JkE_f6YcP878AQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-13 11:24:32
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 107.174.194.229 (107-174-194-229-host.colocross ...
show more
(mod_security) mod_security (id:210730) triggered by 107.174.194.229 (107-174-194-229-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 06:24:27.792949 2025] [security2:error] [pid 20669:tid 20669] [client 107.174.194.229:40509] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ftp.nbcnewsradio.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ftp.nbcnewsradio.com"] [uri "/moveitisapi/moveitisapi.dll"] [unique_id "aRW_63LLddTJ3TKdTq-LyQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇪
RoboSOC
2025-10-16 12:37:32
(10 months ago)
Linear eMerge E3 Unauthenticated Command Injection Remote Root Exploit Vulnerability , PTR: 107-174- ...
show more
Linear eMerge E3 Unauthenticated Command Injection Remote Root Exploit Vulnerability , PTR: 107-174-194-229-host.colocrossing.com.
show less
Hacking
🇩🇪
dayda.net
2025-10-13 03:22:28
(11 months ago)
query: rest_route=/wp/v2/users/
Bad Web Bot
🇺🇸
TPI-Abuse
2025-05-29 22:37:09
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 107.174.194.229 (107-174-194-229-host.colocross ...
show more
(mod_security) mod_security (id:210492) triggered by 107.174.194.229 (107-174-194-229-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 29 18:37:02.343732 2025] [security2:error] [pid 3672432:tid 3672432] [client 107.174.194.229:58985] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.farmers123.com"] [uri "/.env.prod"] [unique_id "aDjhjv3eIy_mMY2PRShm_wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-01-17 14:20:18
(1 year ago)
| Shellshock attack detected
Hacking
SQL Injection
Web App Attack