๐ฉ๐ช
big-cloud.nl
2026-06-06 02:25:46
(9 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 16:18:29
(19 hours ago)
(mod_security) mod_security (id:240335) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in t ...
show more
(mod_security) mod_security (id:240335) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 12:18:23.408007 2026] [security2:error] [pid 11549:tid 11549] [client 192.121.44.26:42600] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 192.121.44.26 (+1 hits since last alert)|exhaustthelimits.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "exhaustthelimits.org"] [uri "/xmlrpc.php"] [unique_id "aiL2z9hNe_81lW6CqGe7NwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 03:32:29
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 23:32:24.510690 2026] [security2:error] [pid 21749:tid 21749] [client 192.121.44.26:36784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "credenda.com"] [uri "/.svn/entries"] [unique_id "aiDxyKZ76mGMVCqwR1kXpQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
oncord
2026-05-31 07:36:46
(6 days ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-05-31 01:48:41
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 21:48:36.022112 2026] [security2:error] [pid 23949:tid 23949] [client 192.121.44.26:50026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cbrcabrero.cl"] [uri "/.git/config"] [unique_id "ahuTdOR33eYYKY-5mWox0gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-05-31 01:05:15
(6 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-30 20:38:13
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in t ...
show more
(mod_security) mod_security (id:210730) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 16:38:08.695486 2026] [security2:error] [pid 3669:tid 3669] [client 192.121.44.26:47500] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||zacharypowers.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "zacharypowers.com"] [uri "/dump.sql"] [unique_id "ahtKsFbaK4_KOJNo7tmQOQAAABU"], referer: zacharypowers.com/dump.sql
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Martin Lundstrom
2026-05-30 19:33:24
(6 days ago)
https://www.eagleeye-intelligence.com โ IDS: network scan. Automatically detected and blocked.
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-30 08:12:04
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in t ...
show more
(mod_security) mod_security (id:210730) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 04:11:59.764636 2026] [security2:error] [pid 6363:tid 6363] [client 192.121.44.26:38900] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dougwong.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dougwong.net"] [uri "/dump.sql"] [unique_id "ahqbzxF66pNLmR8_pLS1HQAAABU"], referer: dougwong.net/dump.sql
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 16:57:40
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in t ...
show more
(mod_security) mod_security (id:210730) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 12:57:34.376392 2026] [security2:error] [pid 15250:tid 15250] [client 192.121.44.26:55116] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||pagewideprinting.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "pagewideprinting.com"] [uri "/dump.sql"] [unique_id "ahnFfv7MLIwJ5JDkEA7cwQAAAAk"], referer: pagewideprinting.com/dump.sql
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 10:52:48
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in t ...
show more
(mod_security) mod_security (id:210730) triggered by 192.121.44.26 (tor-relay01.playstar.se): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 06:52:44.082187 2026] [security2:error] [pid 14934:tid 14934] [client 192.121.44.26:49000] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||catholicshopper.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "catholicshopper.com"] [uri "/dump.sql"] [unique_id "ahlv_GP8BqNxLRbEaIRR5QAAAAs"], referer: catholicshopper.com/dump.sql
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
YF
2026-05-29 00:05:29
(1 week ago)
WordPress content enumeration
Web App Attack
๐ฆ๐บ
oncord
2026-05-28 03:50:08
(1 week ago)
Form spam
Web Spam
๐ฌ๐ง
relianoid.com
2026-05-25 23:57:09
(1 week ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
๐ฉ๐ช
LRob.fr
2026-05-24 20:00:17
(1 week ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack