๐ฉ๐ช
XICTRON
2026-10-08 17:55:04
(19 minutes ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐จ๐ญ
backslash
2026-10-08 17:33:00
(41 minutes ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
๐ฎ๐น
Progetto1
2026-10-08 17:30:03
(44 minutes ago)
Multiple exploit attempts
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ณ๐ฑ
lns.bz
2026-10-08 17:11:36
(1 hour ago)
.env scanning [DOOZ]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 17:10:08
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 136.69.176.229 (229.176.69.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 136.69.176.229 (229.176.69.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 13:10:01.435648 2026] [security2:error] [pid 2042:tid 2070] [client 136.69.176.229:43362] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ozworkshop.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ozworkshop.com"] [uri "/z9x8c7v6b5-debug-trigger-ozworkshop.com"] [unique_id "asfOaR5byyq3AbxEr2EzKQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-08 17:09:08
(1 hour ago)
Excessive multi-domain requests
Brute-Force
๐ฌ๐ง
consul.to
2026-10-08 17:05:59
(1 hour ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
mnsf
2026-10-08 17:05:37
(1 hour ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐ฉ๐ช
ramazan
2026-10-08 16:56:23
(1 hour ago)
Fail2Ban: nginx-4xx | Failures: 10 | Log: /.vite/manifest.json /6465r8rlvuz6fzijbl4w /build/manifest ...
show more
Fail2Ban: nginx-4xx | Failures: 10 | Log: /.vite/manifest.json /6465r8rlvuz6fzijbl4w /build/manifest.json /dist/.vite/manifest.json /dist/manifest.json
show less
Web App Attack
Hacking
๐ฉ๐ช
ardexter
2026-10-08 16:53:22
(1 hour ago)
Wordpress attack and DDOS
DDoS Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 16:49:46
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 136.69.176.229 (229.176.69.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 136.69.176.229 (229.176.69.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 12:49:39.773659 2026] [security2:error] [pid 29699:tid 29699] [client 136.69.176.229:40992] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ozera.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ozera.com"] [uri "/z9x8c7v6b5-debug-trigger-ozera.com"] [unique_id "asfJoxscCXZLv6aZrMzZJAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 16:20:07
(1 hour ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-10-08 16:19:23
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 136.69.176.229 (229.176.69.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 136.69.176.229 (229.176.69.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 12:19:18.272730 2026] [security2:error] [pid 15918:tid 15918] [client 136.69.176.229:52418] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||oxyveg.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "oxyveg.com"] [uri "/z9x8c7v6b5-debug-trigger-oxyveg.com"] [unique_id "asfChl6YWwa4stpCyxZ0GAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 16:03:42
(2 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-08 16:03:33
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 136.69.176.229 (229.176.69.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 136.69.176.229 (229.176.69.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 12:03:25.861377 2026] [security2:error] [pid 16945:tid 16945] [client 136.69.176.229:51556] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||oxfordgrpco.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "oxfordgrpco.com"] [uri "/z9x8c7v6b5-debug-trigger-oxfordgrpco.com"] [unique_id "ase-zZgTRl4yLPmRqNu8NQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack