🇮🇩
Burayot
2026-09-13 20:22:34
(2 hours ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 160.20.109.3 (TR/Türkiye/-): 1 in th ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 160.20.109.3 (TR/Türkiye/-): 1 in the last 3600 secs
show less
Web App Attack
Anonymous
2026-09-13 18:43:25
(4 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-13 17:56:10
(5 hours ago)
(mod_security) mod_security (id:210730) triggered by 160.20.109.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 160.20.109.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 13:56:05.623239 2026] [security2:error] [pid 7113:tid 7113] [client 160.20.109.3:64507] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||delicatessefoods.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "delicatessefoods.com"] [uri "/logs/access.log"] [unique_id "aqbjtVoAsFFbKk2PxlfwZwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 17:04:47
(5 hours ago)
(mod_security) mod_security (id:210730) triggered by 160.20.109.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 160.20.109.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 13:04:40.757448 2026] [security2:error] [pid 20641:tid 20641] [client 160.20.109.3:61493] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||daveweisman.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "daveweisman.com"] [uri "/logs/combined.log"] [unique_id "aqbXqDv5XmwRPGeWcBnAkwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 16:31:25
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 160.20.109.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 160.20.109.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 12:31:19.213134 2026] [security2:error] [pid 14903:tid 14903] [client 160.20.109.3:61029] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||danged.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "danged.com"] [uri "/log/access.log"] [unique_id "aqbP1xTGzTCjQC2F12XpeAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-13 15:55:11
(7 hours ago)
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 13:36:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 160.20.109.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 160.20.109.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 09:36:17.025153 2026] [security2:error] [pid 4189135:tid 4189154] [client 160.20.109.3:49618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paywithfortress.com"] [uri "/.git/logs/HEAD"] [unique_id "apWDUYqG1gcln32l1KoH3AAAARE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇱
spd.co.il
2026-08-29 19:03:11
(2 weeks ago)
Web application attack detected
Hacking
Web App Attack
🇳🇱
Site.eu
2026-08-27 10:31:51
(2 weeks ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-08-26 12:47:00
(2 weeks ago)
Excessive crawling/scraping. Vulnerable file probing.
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-08-25 10:48:15
(2 weeks ago)
Multiple WAF Violations
Web App Attack
🇬🇧
consul.to
2026-08-24 10:47:06
(2 weeks ago)
Web attack/malicious scanning detected
Web App Attack
🇩🇪
Vegascosmetics
2026-08-23 22:46:25
(3 weeks ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after SQL injection / SQLi probing. Evidenc ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after SQL injection / SQLi probing. Evidence: AttackPattern: (backup|src|source|sql|archive|snapshot|restore|recovery|deploy|artifact|bundle|package|app|frontend|backend)\.(zip|tar|gz...
show less
Hacking
Web App Attack
🇩🇪
ghostwarriors
2026-08-23 00:50:13
(3 weeks ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
🇬🇧
consul.to
2026-08-22 20:54:09
(3 weeks ago)
Web attack/malicious scanning detected
Web App Attack