Anonymous
2026-10-05 06:09:07
(6 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-05 04:28:58
(7 hours ago)
(mod_security) mod_security (id:210730) triggered by 187.77.129.129 (srv1813101.hstgr.cloud): 1 in t ...
show more
(mod_security) mod_security (id:210730) triggered by 187.77.129.129 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 00:28:54.115743 2026] [security2:error] [pid 8161:tid 8161] [client 187.77.129.129:39234] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cienmalos.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cienmalos.com"] [uri "/okok.cer"] [unique_id "asMnhjGl9y2CvTzd64vIuwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 00:12:02
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-10-03 08:04:21
(2 days ago)
Banned by Fail2Ban on server
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 19:30:42
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 187.77.129.129 (srv1813101.hstgr.cloud): 1 in t ...
show more
(mod_security) mod_security (id:210730) triggered by 187.77.129.129 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 15:30:33.932912 2026] [security2:error] [pid 17152:tid 17168] [client 187.77.129.129:41930] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.expozium.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.expozium.com"] [uri "/okok.cer"] [unique_id "asAGWaH8o7jH9SWkNBmIRwAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-10-02 07:45:02
(3 days ago)
crowdsecurity/http-backdoors-attempts
Brute-Force
Web App Attack
Anonymous
2026-10-02 06:05:17
(3 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: MY, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: MY, Attack patterns: WordPress scanning, Webshell probing, Backup file probing
show less
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 05:10:32
(4 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: MY, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: MY, Attack patterns: WordPress scanning, Webshell probing, Backup file probing
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-10-01 00:54:13
(4 days ago)
Aggressive scanning resulting into 404
Bad Web Bot
๐ซ๐ท
SpaceHost-Server
2026-09-30 22:20:38
(4 days ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 12:18:14
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 187.77.129.129 (srv1813101.hstgr.cloud): 1 in t ...
show more
(mod_security) mod_security (id:210730) triggered by 187.77.129.129 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 08:18:10.674005 2026] [security2:error] [pid 27721:tid 27721] [client 187.77.129.129:46684] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thephysicsroom.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thephysicsroom.com"] [uri "/okok.cer"] [unique_id "arz-Avwg8FlUhnadjnOCyAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-30 10:46:51
(5 days ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-30 04:13:23
(5 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-29 12:57:33
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 187.77.129.129 (srv1813101.hstgr.cloud): 1 in t ...
show more
(mod_security) mod_security (id:210730) triggered by 187.77.129.129 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 08:57:26.700707 2026] [security2:error] [pid 19291:tid 19291] [client 187.77.129.129:54630] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||register-yacht-cayman.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "register-yacht-cayman.com"] [uri "/okok.cer"] [unique_id "aru1tpeSXarruqCWaTMaegAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-29 12:24:00
(5 days ago)
Excessive crawling/scraping. Vulnerable file probing.
Brute-Force
Bad Web Bot
Web App Attack