Anonymous
2025-12-27 11:10:35
(9 months ago)
FortiWeb WAF: 1996 attacks detected. Threat Score: 199600. Types: Client Management(998), GEO IP(998 ...
show more
FortiWeb WAF: 1996 attacks detected. Threat Score: 199600. Types: Client Management(998), GEO IP(998). Origin: Russian Federation.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-25 15:50:56
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 25 10:50:50.468676 2025] [security2:error] [pid 23718:tid 23718] [client 188.143.244.154:45980] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||oregonolives.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "oregonolives.com"] [uri "/index_files/WS_FTP.LOG"] [unique_id "aU1dWjKQC_wKMEFs6DUdrAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2025-12-19 19:05:08
(9 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2025-12-18 09:26:24
(9 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฆ๐น
Vyelli
2025-12-16 05:54:00
(9 months ago)
Bad Web Bot
๐จ๐ญ
backslash
2025-12-12 22:20:24
(9 months ago)
block ruleset DA4A07AEE48B136A3922182BE8AA8BFBC1840803
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-11 18:31:39
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 11 13:31:35.808835 2025] [security2:error] [pid 15260:tid 15260] [client 188.143.244.154:31492] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cottrillcyclodyne.com|F|2"] [data ".old"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cottrillcyclodyne.com"] [uri "/Focused_Wave/Focused_Wave.old"] [unique_id "aTsOB8037BBXlxGn88_AhQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-09 20:46:59
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 15:46:53.433534 2025] [security2:error] [pid 31470:tid 31470] [client 188.143.244.154:14242] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||solcargomiami.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "solcargomiami.com"] [uri "/mailto@[email protected] "] [unique_id "aTiKvRkz0_vSsII3lo3BDgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-08 23:15:06
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 18:15:00.163934 2025] [security2:error] [pid 13052:tid 13052] [client 188.143.244.154:14388] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||glassclublake.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "glassclublake.com"] [uri "/login/[email protected] "] [unique_id "aTdb9ClX7CFQ4FWUUeNaQwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
Michael McCarthy
2025-12-08 07:50:24
(10 months ago)
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-06 16:13:51
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 11:13:47.930504 2025] [security2:error] [pid 25959:tid 25964] [client 188.143.244.154:23684] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kerrfamilyassociation.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kerrfamilyassociation.com"] [uri "/store/[email protected] "] [unique_id "aTRWOxH4Lzeb7-P2O4IyEgAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 19:57:53
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 188.143.244.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 14:57:34.762415 2025] [security2:error] [pid 29475:tid 29475] [client 188.143.244.154:46340] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||phantomquailkennel.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "phantomquailkennel.com"] [uri "/puppysale.com"] [unique_id "aTM5LqoAgpVYO1SgkS6mvwAAAG0"], referer: http://phantomquailkennel.com/puppysale.com
show less
Brute-Force
Bad Web Bot
Web App Attack