๐ฉ๐ช
HandyTreff.de
2026-03-10 01:39:29
(3 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -22.782 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -22.782 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa
show less
Web App Attack
Bad Web Bot
๐ฆ๐บ
oncord
2025-11-27 23:09:59
(6 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2025-09-06 21:50:43
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 17:50:38.731924 2025] [security2:error] [pid 23386:tid 23386] [client 185.94.35.148:34793] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Hansen II/Pampa Rouge/originals/Thumbs.db"] [unique_id "aLysruLMW0BiOmZamQA8sAAAAAI"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Hansen%20II/Pampa%20Rouge/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-07 23:01:21
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 07 19:01:16.792633 2025] [security2:error] [pid 2796443:tid 2796443] [client 185.94.35.148:25499] [client 185.94.35.148] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fuentevictoria.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fuentevictoria.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aBvmPA_St_LwvyW628W14AAAAAU"], referer: https://fuentevictoria.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-06 20:46:43
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 06 16:46:35.429905 2025] [security2:error] [pid 1488658:tid 1488658] [client 185.94.35.148:9481] [client 185.94.35.148] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.backstore.com|F|2"] [data ".losangelesseating.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.backstore.com"] [uri "/www.losangelesseating.com"] [unique_id "aBp1KxVXlOE-mXZ9ivAL-AAAAAE"], referer: http://www.backstore.com/Web-Sites.htm
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2024-11-30 01:06:02
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐จ๐ญ
backslash
2024-11-02 09:20:06
(1 year ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-10-08 15:15:12
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 08 11:15:05.606174 2024] [security2:error] [pid 11371:tid 11371] [client 185.94.35.148:53985] [client 185.94.35.148] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wpwlv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wpwlv.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZwVMeVhyFkhSdMMTLexktgAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
sms.ru
2024-09-27 15:35:04
(1 year ago)
SMS pumping attack from foreign country
DDoS Attack
๐ซ๐ท
www.unitiz.com
2024-09-22 18:59:49
(1 year ago)
Probing non-existent URLs
Bad Web Bot
Web App Attack
Anonymous
2024-08-13 14:30:35
(1 year ago)
Automatic report - Vulnerability scan
/RDWeb/Pages/en-US/login.aspx
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-14 11:29:35
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 14 07:29:31.492300 2024] [security2:error] [pid 25900] [client 185.94.35.148:22285] [client 185.94.35.148] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Longhorn II/Havana Brown/Thumbs.db"] [unique_id "Zhu-G19eo04H4SkeuW6qOAAAAAQ"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Longhorn%20II/Havana%20Brown/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-24 23:38:31
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 185.94.35.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 24 18:38:24.875312 2023] [security2:error] [pid 30193] [client 185.94.35.148:48703] [client 185.94.35.148] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Golden-Technologies/pics/Golden Technologies 2009 Marketing CD/Lift Chairs/Comforter Wides Series/Thumbs.db"] [unique_id "ZYjA8Ik4fqU0-yOdd-CD0QAAAAs"], referer: https://vitalitywebb.com/backstore/Golden-Technologies/pics/Golden%20Technologies%202009%20Marketing%20CD/Lift%20Chairs/Comforter%20Wides%20Series/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2023-12-22 13:04:31
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ง๐ช
Martain
2023-12-09 23:29:56
(2 years ago)
unauthorized VPN access attempt (user: rmckenna)
Hacking
Brute-Force