Anonymous
2026-06-08 00:24:00
(2 days ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-05-13 17:40:29
(3 weeks ago)
(mod_security) mod_security (id:218580) triggered by 140.235.3.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:218580) triggered by 140.235.3.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 13:40:19.319219 2026] [security2:error] [pid 5799:tid 5799] [client 140.235.3.125:11019] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:\\\\/\\\\*[!+](?:[\\\\w\\\\s=_\\\\-()]+)?\\\\*\\\\/)" at ARGS:/category/154/start-192. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "76"] [id "218580"] [rev "1"] [msg "COMODO WAF: MySQL in-line comment detected.||www.genesis-castle.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "www.genesis-castle.com"] [uri "/gallery/index.php"] [unique_id "agS3gyuqn0Q_0nbqOW3GWQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-16 01:54:21
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 140.235.3.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 140.235.3.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 15 21:54:09.617976 2026] [security2:error] [pid 2262566:tid 2262566] [client 140.235.3.125:23177] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Kendall/Thumbs.db"] [unique_id "aeBBQW4xtLDmdb0WH6QAvwAAAAY"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Kendall/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 11:54:21
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 140.235.3.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 140.235.3.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 07:54:14.588561 2026] [security2:error] [pid 4080:tid 4080] [client 140.235.3.125:23059] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Bristol II/Stetson Bordeaux/Thumbs.db"] [unique_id "abVMZm1nVZ_rhU5HxJeoBAAAAAA"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Bristol%20II/Stetson%20Bordeaux/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-03-12 05:12:01
(2 months ago)
block ruleset 798ECF92F12ADC636D3520C2890AF17ADEFDE3BE
Bad Web Bot
๐ฆ๐บ
oncord
2026-02-13 11:26:37
(3 months ago)
Form spam
Web Spam
๐จ๐ญ
backslash
2026-02-10 03:40:14
(4 months ago)
block ruleset 798ECF92F12ADC636D3520C2890AF17ADEFDE3BE
Bad Web Bot
๐บ๐ธ
nodepile
2026-02-09 20:55:42
(4 months ago)
Requests denied due to proxy/VPN risk (tenant=82 method=GET path=/bmw-5series-e60-20032010-dynavin-d ...
show more
Requests denied due to proxy/VPN risk (tenant=82 method=GET path=/bmw-5series-e60-20032010-dynavin-d99-multimedia-navigation-p-6492.html ua='Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.2065.144 Safari/537.36')
show less
Open Proxy
VPN IP
๐บ๐ธ
TPI-Abuse
2026-01-24 05:51:38
(4 months ago)
(mod_security) mod_security (id:210350) triggered by 140.235.3.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 140.235.3.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 24 00:51:31.581256 2026] [security2:error] [pid 10929:tid 10929] [client 140.235.3.125:36221] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.mitchellamazing.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.mitchellamazing.com"] [uri "/"] [unique_id "aXRd43gpC7qzYnPFlAh0ggAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-01-02 19:11:38
(5 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐ฑ๐ป
garmtech.com
2025-12-06 15:15:02
(6 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐ฑ๐ป
garmtech.com
2025-11-27 17:59:02
(6 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐บ๐ธ
TPI-Abuse
2025-09-11 07:38:13
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 140.235.3.125 (140-235-3-125.cloudairone.com): ...
show more
(mod_security) mod_security (id:210350) triggered by 140.235.3.125 (140-235-3-125.cloudairone.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 11 03:38:08.336991 2025] [security2:error] [pid 6332:tid 6332] [client 140.235.3.125:18187] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||pr-professional.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "pr-professional.com"] [uri "/"] [unique_id "aMJ8YKIXc6lp1MrOl6A9ZAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-08-31 02:42:41
(9 months ago)
XML RPC Scan Activities
Brute-Force
Web App Attack
๐บ๐ธ
ipblock.com
2025-07-28 17:13:00
(10 months ago)
IPBlock protected site ID [4055-d][s=02].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack