🇫🇷
masterguru
2026-08-12 10:53:58
(4 weeks ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 150.251.225.183 (AT/Austria/-): 1 in the last ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 150.251.225.183 (AT/Austria/-): 1 in the last 3600 secs (0-196)
show less
Hacking
🇫🇷
masterguru
2026-08-12 00:51:50
(4 weeks ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 150.251.225.183 (AT/Austria/-): 1 in the last ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 150.251.225.183 (AT/Austria/-): 1 in the last 3600 secs (0-195)
show less
Hacking
🇺🇸
TPI-Abuse
2026-07-05 22:00:11
(2 months ago)
(mod_security) mod_security (id:220020) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:220020) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 18:00:06.080623 2026] [security2:error] [pid 14037:tid 14037] [client 150.251.225.183:53153] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(^|;)=(;|$)" at REQUEST_HEADERS:Cookie. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "74"] [id "220020"] [rev "2"] [msg "COMODO WAF: DoS vulnerability in Apache 2.2.17 - 2.2.21 (CVE-2012-0021)||cuul.co|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cuul.co"] [uri "/"] [unique_id "akrT5iuXaYkyRfr-KkXgTwAAAAM"], referer: http://christianalbat.de
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-05 19:12:07
(2 months ago)
(mod_security) mod_security (id:220020) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:220020) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 15:12:01.928652 2026] [security2:error] [pid 7210:tid 7232] [client 150.251.225.183:42645] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(^|;)=(;|$)" at REQUEST_HEADERS:Cookie. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "74"] [id "220020"] [rev "2"] [msg "COMODO WAF: DoS vulnerability in Apache 2.2.17 - 2.2.21 (CVE-2012-0021)||spiritualchristian.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spiritualchristian.com"] [uri "/"] [unique_id "akqsgVRvw7HmjF43Bo8X9AAAAAw"], referer: http://ra584.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-05 14:03:11
(2 months ago)
(mod_security) mod_security (id:220020) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:220020) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 10:03:08.384879 2026] [security2:error] [pid 1488:tid 1488] [client 150.251.225.183:42003] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(^|;)=(;|$)" at REQUEST_HEADERS:Cookie. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "74"] [id "220020"] [rev "2"] [msg "COMODO WAF: DoS vulnerability in Apache 2.2.17 - 2.2.21 (CVE-2012-0021)||endoperfect.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "endoperfect.com"] [uri "/"] [unique_id "akpkHB-a6NtwWEc-jIrpIAAAAAY"], referer: http://dongyingauction.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-06-23 12:15:27
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 19:24:19
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 15:24:16.584263 2026] [security2:error] [pid 16876:tid 16876] [client 150.251.225.183:54241] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||eckerberg.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "eckerberg.net"] [uri "/license.txt"] [unique_id "ai2uYKcuSlfb0TAj6tMrEgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 17:05:24
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 13:05:17.517295 2026] [security2:error] [pid 17912:tid 17912] [client 150.251.225.183:37733] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||jfhglobal.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "jfhglobal.net"] [uri "/license.txt"] [unique_id "ai2NzVb5-SS0zS2aBhJ9fwAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 15:57:41
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 11:57:35.281233 2026] [security2:error] [pid 22825:tid 22825] [client 150.251.225.183:45491] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||esendeniz.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "esendeniz.net"] [uri "/license.txt"] [unique_id "ai197xnTg0iIV9I746on4AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 13:55:52
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 09:55:47.873365 2026] [security2:error] [pid 13681:tid 13681] [client 150.251.225.183:22215] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||yukitex.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "yukitex.net"] [uri "/license.txt"] [unique_id "ai1hY1XweSf9kFu1PWly-AAAAGg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 13:20:09
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 09:20:02.915210 2026] [security2:error] [pid 29537:tid 29537] [client 150.251.225.183:31849] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||independentmusicconference.com|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "independentmusicconference.com"] [uri "/license.txt"] [unique_id "ai1ZAl4uqoz13_cGWqkSngAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 12:36:46
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:36:39.816296 2026] [security2:error] [pid 22702:tid 22702] [client 150.251.225.183:47777] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||scsurfside.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "scsurfside.net"] [uri "/license.txt"] [unique_id "ai1O17nXy4xRwoZHCLD1dAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 12:03:02
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:02:56.191445 2026] [security2:error] [pid 10737:tid 10737] [client 150.251.225.183:55349] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||woodlandantiques.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "woodlandantiques.net"] [uri "/license.txt"] [unique_id "ai1G8BjuGujOE-Kk3Fw95wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 11:44:18
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:44:11.029734 2026] [security2:error] [pid 24434:tid 24434] [client 150.251.225.183:30103] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||www.heartshapedboy.com|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "www.heartshapedboy.com"] [uri "/license.txt"] [unique_id "ai1Ci5SR1d1kYEX45r7TBwAAAGg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-13 02:49:29
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 150.251.225.183 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 22:49:22.415230 2026] [security2:error] [pid 21223:tid 21240] [client 150.251.225.183:41689] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||peoplecomeup.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "peoplecomeup.net"] [uri "/license.txt"] [unique_id "aizFMiJ6eqAceNCmPH8CYgAAAU4"]
show less
Brute-Force
Bad Web Bot
Web App Attack