๐บ๐ธ
TPI-Abuse
2025-09-06 19:43:25
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 193.233.138.101 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 193.233.138.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 15:43:15.484358 2025] [security2:error] [pid 30918:tid 30918] [client 193.233.138.101:11183] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Steelcase/pics/Leap Work Lounge/Thumbs.db"] [unique_id "aLyO09tx7EosSPxFM-GtnQAAAAY"], referer: https://vitalitywebb.com/backstore/Steelcase/pics/Leap%20Work%20Lounge/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
tinect
2025-08-17 07:23:57
(10 months ago)
tries to find malicious content
Hacking
Web App Attack
๐จ๐ญ
backslash
2025-05-23 22:30:05
(1 year ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐บ๐ธ
snappic
2025-04-05 18:24:44
(1 year ago)
Malicious URI path [GET /global-protect/login.esp] [Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) ...
show more
Malicious URI path [GET /global-protect/login.esp] [Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.6 Safari/605.1.15]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2025-03-27 15:16:10
(1 year ago)
Wordpress hacking attempt
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-01 08:20:37
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 193.233.138.101 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 193.233.138.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 01 03:20:30.950500 2024] [security2:error] [pid 3706767:tid 3706767] [client 193.233.138.101:11181] [client 193.233.138.101] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Churchill II Recliner/Double Fudge/Thumbs.db"] [unique_id "Z0wcTlOdOBD0sKzpHbvvWAAAAAk"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Churchill%20II%20Recliner/Double%20Fudge/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-07 18:21:36
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 193.233.138.101 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 193.233.138.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 07 14:21:29.633962 2024] [security2:error] [pid 8057:tid 8057] [client 193.233.138.101:48487] [client 193.233.138.101] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Lectern II/Lectern II/Savannah Whiskey/originals/Thumbs.db"] [unique_id "ZrO7KawfqTau8DW24ZiGvQAAAAM"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Lectern%20II/Lectern%20II/Savannah%20Whiskey/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TheMadBeaker
2024-06-05 03:43:32
(2 years ago)
Fail2Ban Ban Triggered
HTTP SQL Injection Attempt
Hacking
SQL Injection
๐จ๐ญ
backslash
2024-05-15 16:00:10
(2 years ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐ฆ๐บ
MAGIC
2024-05-02 03:02:41
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-04-19 05:46:06
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 193.233.138.101 (193-233-138-101.zen-cloud.com) ...
show more
(mod_security) mod_security (id:210730) triggered by 193.233.138.101 (193-233-138-101.zen-cloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 19 01:45:56.738607 2024] [security2:error] [pid 25837] [client 193.233.138.101:20355] [client 193.233.138.101] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||portalvasco.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "portalvasco.com"] [uri "/blog/2010/02/webcar-alarmas-y-sistemas-avanzados-de-localizacion-de-vehiculos/[email protected] "] [unique_id "ZiIFFBsoAZdi5CQvws24hgAAABI"], referer: https://portalvasco.com/blog/2010/02/webcar-alarmas-y-sistemas-avanzados-de-localizacion-de-vehiculos/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2024-04-10 19:15:04
(2 years ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐บ๐ธ
hostseries
2024-04-04 02:32:04
(2 years ago)
Trigger: LF_DISTATTACK
Brute-Force
๐ฉ๐ช
Ba-Yu
2023-02-20 12:08:05
(3 years ago)
WP-xmlrpc exploit
Web Spam
Blog Spam
Hacking
Exploited Host
Web App Attack