๐ฉ๐ช
ghostwarriors
2026-05-25 06:20:28
(2 weeks ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-05-19 19:39:32
(3 weeks ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 142.44.220.42 (CA/Ca ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 142.44.220.42 (CA/Canada/proxy-ca006-san42.ahrefs.net)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-07 17:15:29
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 142.44.220.42 (proxy-ca006-san42.ahrefs.net): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 142.44.220.42 (proxy-ca006-san42.ahrefs.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 13:15:21.853587 2026] [security2:error] [pid 27639:tid 27639] [client 142.44.220.42:50246] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.med-engineering.com|F|2"] [data ".ggwc.med-engineering.com.onu.vb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.med-engineering.com"] [uri "/bef.ggwc.med-engineering.com.onu.vb"] [unique_id "afzIqRmL_wpkhWDVd4C-RQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-05-01 19:22:57
(1 month ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 05:24:14
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 142.44.220.42 (proxy-ca006-san42.ahrefs.net): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 142.44.220.42 (proxy-ca006-san42.ahrefs.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 01:24:11.257698 2026] [security2:error] [pid 12945:tid 12945] [client 142.44.220.42:51358] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.christiansmobilemedic.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.christiansmobilemedic.com"] [uri "/well-get-your-car-back-on-the-road-in-no-time/christiansmobilemedic.com"] [unique_id "afLnewWJKpWK85PjxBqHagAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
vdub144
2026-04-28 07:47:08
(1 month ago)
Automated report from Gross Automation security system. | Attack type: meta_ai_scraper | Path: /prod ...
show more
Automated report from Gross Automation security system. | Attack type: meta_ai_scraper | Path: /product/TCI/HGL0500CW3C2000 | UA: Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/) | Blocked by: nginx-bot-hell
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-25 16:53:11
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 142.44.220.42 (proxy-ca006-san42.ahrefs.net): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 142.44.220.42 (proxy-ca006-san42.ahrefs.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 12:53:04.124074 2026] [security2:error] [pid 7887:tid 7887] [client 142.44.220.42:62754] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gpobiotech.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gpobiotech.com"] [uri "/hello-world/play24-vulkan.com"] [unique_id "aezxcPvRzTQJ6zejimE85QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-04-21 09:50:34
(1 month ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-21 07:14:16
(1 month ago)
Automated bot traffic โ residential proxy, fake browser fingerprint. UA="Mozilla/5.0 (compatible; Ah ...
show more
Automated bot traffic โ residential proxy, fake browser fingerprint. UA="Mozilla/5.0 (compatible; AhrefsBot/7.0; +http://ahrefs.com/robot/)"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-11 17:46:40
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 142.44.220.42 (proxy-ca006-san42.ahrefs.net): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 142.44.220.42 (proxy-ca006-san42.ahrefs.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 11 13:46:33.248996 2026] [security2:error] [pid 3850962:tid 3850962] [client 142.44.220.42:56570] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Hudson II/Hudson II/Vermont Bark/Loveseat/originals/Thumbs.db"] [unique_id "adqI-Tvhv1ECPSLE1fIEogAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
librebit
2026-04-08 13:21:20
(2 months ago)
Brute force
Brute-Force
๐ฉ๐ช
ghostwarriors
2026-04-05 03:20:20
(2 months ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
rtbh.com.tr
2026-03-04 20:11:53
(3 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐น๐ท
rtbh.com.tr
2026-03-01 20:11:49
(3 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐ฉ๐ช
ghostwarriors
2026-02-28 03:50:36
(3 months ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack