๐ซ๐ท
Nicolmn
2026-08-26 16:37:19
(1 week ago)
Web form spam ( id lxmmcncpt.l )
Web Spam
๐ฉ๐ช
Reinhard
2026-08-26 14:51:13
(1 week ago)
Unknown activity, but too many attacks with too many users.
Hacking
๐จ๐ญ
backslash
2026-08-26 09:21:00
(1 week ago)
block ruleset 1E8A9918B1655D0828F2EEF05553DD2681055C9A
Web Spam
Anonymous
2026-08-26 08:39:52
(1 week ago)
ICONZDE WEBFORM SPAM 158.173.166.146 (158.173.166.146)
Web Spam
๐ฆ๐บ
oncord
2026-08-26 06:41:39
(1 week ago)
Form spam
Web Spam
๐ต๐ฑ
sefinek.net
2026-06-16 01:07:55
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from NO.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from NO.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: / | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-06-15 20:53:42
(2 months ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-07 09:03:45
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.166.146 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.166.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 05:03:40.800289 2026] [security2:error] [pid 19778:tid 19778] [client 158.173.166.146:53021] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||www.bobfaw.com|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "www.bobfaw.com"] [uri "/faws/license.txt"] [unique_id "aiUz7IxTtWHzJm3fN3ApuQAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 08:01:51
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.166.146 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.166.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 04:01:44.172942 2026] [security2:error] [pid 1364:tid 1364] [client 158.173.166.146:31281] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||verdeprofundo.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "verdeprofundo.net"] [uri "/license.txt"] [unique_id "aiUlaDylEuVX8z2BilsGZwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 07:23:10
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.166.146 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.166.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 03:23:07.134458 2026] [security2:error] [pid 17811:tid 17811] [client 158.173.166.146:35093] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||hersbach.net|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "hersbach.net"] [uri "/license.txt"] [unique_id "aiUcWwUuFArCyk8nPjmbsgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 05:39:23
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.166.146 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.166.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 01:39:19.745007 2026] [security2:error] [pid 31508:tid 31508] [client 158.173.166.146:36413] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||kln.ne.jp|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "kln.ne.jp"] [uri "/jehovah/license.txt"] [unique_id "aiUEB-A3xOUuVlqeGu0PyQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-05-23 14:57:01
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ฌ๐ง
consul.to
2026-05-17 08:09:28
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ฌ๐ง
consul.to
2026-05-11 06:56:05
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ฌ๐ง
consul.to
2026-05-01 15:53:53
(4 months ago)
Web attack/malicious scanning detected
Web App Attack