🇺🇸
rsa
2026-09-02 23:03:00
(1 week ago)
excessive crawling ddos
Bad Web Bot
Web App Attack
🇸🇮
extremevital
2026-07-05 12:47:03
(2 months ago)
110.239.222.166 - - [05/Jul/2026:14:47:01 +0200] "GET /sitemapproducts.xml HTTP/1.0" 200 383017 1533 ...
show more
110.239.222.166 - - [05/Jul/2026:14:47:01 +0200] "GET /sitemapproducts.xml HTTP/1.0" 200 383017 153375 "-" "SemrushBot-EO"
...
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-01-18 03:40:12
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 110.239.222.166 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 110.239.222.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 17 22:40:01.254298 2026] [security2:error] [pid 3595:tid 3595] [client 110.239.222.166:42141] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.soviaenterprises.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.soviaenterprises.com"] [uri "/tylercomputing.com"] [unique_id "aWxWEQhYFIK5pEDw0tt6_gAAAA8"], referer: http://soviaenterprises.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
MAGIC
2026-01-12 03:09:47
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇿🇦
Tokolosh Hunters
2026-01-09 16:08:41
(8 months ago)
AutoBlockWindow-Known bad useragent query-2026-01-09 16:08:39
Bad Web Bot
🇺🇸
TPI-Abuse
2025-12-16 21:59:35
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 110.239.222.166 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 110.239.222.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 16 16:59:29.840040 2025] [security2:error] [pid 2116:tid 2116] [client 110.239.222.166:43353] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.pswebsite.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.pswebsite.com"] [uri "/answer.com"] [unique_id "aUHWQT5Esx37u8jActFy3gAAAAo"], referer: http://pswebsite.com/answers.htm
show less
Brute-Force
Bad Web Bot
Web App Attack
🇯🇵
Valhalla
2025-12-11 20:55:14
(9 months ago)
/xmlrpc.php
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2025-10-18 04:27:18
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 110.239.222.166 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 110.239.222.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 18 00:27:11.732859 2025] [security2:error] [pid 22132:tid 22132] [client 110.239.222.166:43387] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.soviaenterprises.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.soviaenterprises.com"] [uri "/usoilinc.com"] [unique_id "aPMXH4JSUWcpH7mOmwjY7QAAAAM"], referer: http://www.soviaenterprises.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-08-11 05:05:18
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
🇦🇺
MAGIC
2025-07-26 02:12:37
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇨🇭
backslash
2025-07-18 20:30:09
(1 year ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
Anonymous
2025-07-12 07:05:21
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-07-01 10:02:49
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
🇦🇺
MAGIC
2025-05-27 21:00:21
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇦🇺
MAGIC
2025-05-22 17:02:45
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot