๐บ๐ธ
TPI-Abuse
2026-06-27 17:56:53
(9 minutes ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 13:56:50.189828 2026] [security2:error] [pid 26515:tid 26515] [client 149.22.87.53:51929] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kriske.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kriske.com"] [uri "/approximation/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "akAO4gwWZUUiHJv3PFU8dgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 03:29:14
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 23:29:06.322215 2026] [security2:error] [pid 28103:tid 28103] [client 149.22.87.53:43635] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||brazilianbikinis.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brazilianbikinis.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aj9DggFgPrC9jISnvtyhPgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 02:11:48
(15 hours ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 22:11:43.613338 2026] [security2:error] [pid 31989:tid 32000] [client 149.22.87.53:35973] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||computeinitiative.org|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "computeinitiative.org"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aj8xXwVg3LUjtmM3N5Y9tAAAAUk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 01:50:04
(16 hours ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 21:49:59.463139 2026] [security2:error] [pid 2653:tid 2653] [client 149.22.87.53:37721] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.williams-rodriguez.org|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.williams-rodriguez.org"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aj8sR1K-7xbEPd0G-nPjjAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 01:25:33
(16 hours ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 21:25:30.108415 2026] [security2:error] [pid 2710:tid 2710] [client 149.22.87.53:30031] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.hygeiamedical.icu|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.hygeiamedical.icu"] [uri "/hmcats25.html/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aj8miiCmSntdvpxpxanBiwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 00:53:25
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 20:53:19.407517 2026] [security2:error] [pid 27160:tid 27160] [client 149.22.87.53:52159] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.tttns.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.tttns.com"] [uri "/about-jason/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aj8e__zkqQfba2V-hW6BHwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-26 23:56:34
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 19:56:31.372408 2026] [security2:error] [pid 32023:tid 32023] [client 149.22.87.53:27113] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bowdens-landing.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bowdens-landing.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aj8Rr_0ZBOVJTvwvlIn23wAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-26 23:39:09
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 19:39:03.981543 2026] [security2:error] [pid 29541:tid 29541] [client 149.22.87.53:31387] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.beechleafdesign.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.beechleafdesign.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "aj8Nl5wZGk-cVT3ZmT28-AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 22:08:04
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 18:07:57.783384 2026] [security2:error] [pid 32674:tid 32674] [client 149.22.87.53:54873] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.milocor.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.milocor.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "ajxVPVWOYOcvUrLrqgg7owAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 21:36:12
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 17:36:06.728943 2026] [security2:error] [pid 10607:tid 10607] [client 149.22.87.53:40373] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||perthdps.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "perthdps.com"] [uri "/convicts/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "ajxNxofxm0MtSIYUwbYt5AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 21:03:31
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 17:03:24.580278 2026] [security2:error] [pid 6701:tid 6701] [client 149.22.87.53:60471] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||namefinder.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "namefinder.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "ajxGHJR0600PqHCX_TpiyAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 04:58:35
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 00:58:29.501677 2026] [security2:error] [pid 17484:tid 17484] [client 149.22.87.53:32457] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.voodooshop.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.voodooshop.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "ajtj9eGu7mWXzLg5q8nejQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 04:10:09
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 00:10:05.344131 2026] [security2:error] [pid 14774:tid 14774] [client 149.22.87.53:45495] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||amatosdrywall.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "amatosdrywall.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "ajtYnWUFck22qFTRA5JiAwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 03:25:11
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 23:24:57.200412 2026] [security2:error] [pid 19977:tid 19977] [client 149.22.87.53:36423] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.instituteofscience.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.instituteofscience.com"] [uri "/hydration.html/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "ajtOCdEsZHLN9PPJ0YmtxQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 02:17:19
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): ...
show more
(mod_security) mod_security (id:210730) triggered by 149.22.87.53 (unn-149-22-87-53.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 22:17:14.645412 2026] [security2:error] [pid 18037:tid 18044] [client 149.22.87.53:28775] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.ceresfund.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.ceresfund.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "ajs-KolKlkEvkqrNjMH6MAAAAQQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack