๐ฌ๐ง
thetomtaylor.co.uk
2026-10-08 09:08:02
(2 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 08:25:23
(3 hours ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 04:25:20.471002 2026] [security2:error] [pid 26360:tid 26360] [client 151.240.93.228:53209] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.brandsmedia.com|F|4"] [data "panscient.com"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.brandsmedia.com"] [uri "/robots.txt"] [unique_id "asdTcHsUVEoJ83377gGiRgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-10-08 03:05:41
(8 hours ago)
Request Overload (103)
Brute-Force
Web App Attack
๐บ๐ธ
SketchyDude
2026-10-08 02:24:41
(9 hours ago)
Banned by Fail2Ban jail: apache-auth
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-10-08 01:32:47
(10 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 23:40:07
(12 hours ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 19:40:00.204198 2026] [security2:error] [pid 25608:tid 25608] [client 151.240.93.228:31215] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.advantage-plus.net|F|4"] [data "panscient.com"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.advantage-plus.net"] [uri "/robots.txt"] [unique_id "asbYUIiZ9JK1KSN5cX1O0AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 22:58:25
(12 hours ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 18:58:18.584643 2026] [security2:error] [pid 1710:tid 1710] [client 151.240.93.228:47359] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.virtualvideo.org|F|4"] [data "panscient.com"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.virtualvideo.org"] [uri "/robots.txt"] [unique_id "asbOioFD2ipsebCapv_ZGAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 16:07:03
(19 hours ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 12:06:55.555324 2026] [security2:error] [pid 14381:tid 14381] [client 151.240.93.228:61621] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.geceindia.com|F|4"] [data "panscient.com"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.geceindia.com"] [uri "/robots.txt"] [unique_id "asZuH5nOdSFoMOUZRuskqQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 13:13:38
(22 hours ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 09:13:35.303297 2026] [security2:error] [pid 32165:tid 32165] [client 151.240.93.228:57125] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.chaubaolau.com|F|4"] [data "panscient.com"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.chaubaolau.com"] [uri "/robots.txt"] [unique_id "asZFf7kdK64TGIBF8X7KBwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 12:45:52
(23 hours ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 08:45:48.234340 2026] [security2:error] [pid 6754:tid 6754] [client 151.240.93.228:20027] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.whitelabelcasinoportal.net|F|4"] [data "panscient.com"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.whitelabelcasinoportal.net"] [uri "/robots.txt"] [unique_id "asY-_GggD_u9KUEq6Wr-kwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 11:58:40
(23 hours ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 07:58:35.706647 2026] [security2:error] [pid 26000:tid 26000] [client 151.240.93.228:21075] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.benefit-design.com|F|4"] [data "panscient.com"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.benefit-design.com"] [uri "/robots.txt"] [unique_id "asYz6zdtXIKNHkRfAXdY2wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Celtic
2026-10-07 05:56:29
(1 day ago)
Blocked by Fail2Ban with Jail (plesk-modsecurity)
Brute-Force
SSH
๐บ๐ธ
IndigoRidge
2026-10-07 05:37:05
(1 day ago)
[07/Oct/2026:01:36:59.415254 --0400] asXaeymWPPfrmgYTBnymhgAAAQA 151.240.93.228 36420 205.233.18.17 ...
show more
[07/Oct/2026:01:36:59.415254 --0400] asXaeymWPPfrmgYTBnymhgAAAQA 151.240.93.228 36420 205.233.18.17 7081
[07/Oct/2026:01:36:59.777729 --0400] asXae09wGxhMTMTrGvCyKQAAAZI 151.240.93.228 36444 205.233.18.17 7081
[07/Oct/2026:01:37:00.850015 --0400] asXafCmWPPfrmgYTBnymhwAAAQk 151.240.93.228 36470 205.233.18.17 7081
[07/Oct/2026:01:37:01.832401 --0400] asXafbNOpV8cjIg4NS8iPQAAAsM 151.240.93.228 36490 205.233.18.17 7081
[07/Oct/2026:01:37:04.860181 --0400] asXagE9wGxhMTMTrGvCyKwAAAYE 151.240.93.228 36630 205.233.18.17 7081
...
show less
Hacking
๐ฌ๐ง
Apache
2026-10-07 04:46:53
(1 day ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (US/United States/-): 5 in the l ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (US/United States/-): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Email Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 02:23:41
(1 day ago)
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 151.240.93.228 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 22:23:38.237306 2026] [security2:error] [pid 5155:tid 5155] [client 151.240.93.228:24451] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.marydeal.com|F|4"] [data "panscient.com"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.marydeal.com"] [uri "/robots.txt"] [unique_id "asWtKvVlY1Q_upUM3BrDxgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack