๐ฆ๐บ
MAGIC
2026-05-15 05:27:06
(3 weeks ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ซ๐ท
masterguru
2026-05-01 00:57:41
(1 month ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 199.96.166.31 (US/United States/-): 1 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 199.96.166.31 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-29 09:39:50
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 199.96.166.31 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 199.96.166.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 05:39:42.178129 2026] [security2:error] [pid 24268:tid 24268] [client 199.96.166.31:16607] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.countrycottagetogo.buffaloweddingdeejay.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.countrycottagetogo.buffaloweddingdeejay.com"] [uri "/s3cmd.ini"] [unique_id "afHR3n03R1LwiQRT-HiB3QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-04-28 06:04:36
(1 month ago)
[TueApr2808:04:28.2087332026][security2:error][pid261550:tid261581][client199.96.166.31:0]ModSecurit ...
show more
[TueApr2808:04:28.2087332026][security2:error][pid261550:tid261581][client199.96.166.31:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"wp.aaaa6877.org\"][uri\"/\"][unique_id\"afBN7FredzYbbF2XAhiE7gAAAAk\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-27 14:48:13
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 199.96.166.31 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 199.96.166.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 27 10:48:05.691826 2026] [security2:error] [pid 7367:tid 7367] [client 199.96.166.31:10395] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||saudigreenrecycling.mapleleaf-marketing.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "saudigreenrecycling.mapleleaf-marketing.com"] [uri "/s3cmd.ini"] [unique_id "ae93JeVmEfIVscSaw5MYbwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-27 07:32:38
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 199.96.166.31 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 199.96.166.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 27 03:32:32.378518 2026] [security2:error] [pid 24966:tid 24966] [client 199.96.166.31:35595] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.gonzalez.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.gonzalez.com"] [uri "/s3cmd.ini"] [unique_id "ae8REPZvDrgqhYnQMlAegAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2025-12-23 11:01:21
(5 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 199.96.166.31 (US/United States/-): 1 in the l ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 199.96.166.31 (US/United States/-): 1 in the last 3600 secs (0-193)
show less
Hacking
๐ฑ๐ป
garmtech.com
2025-12-06 15:45:34
(6 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐ฑ๐ป
garmtech.com
2025-11-26 22:20:23
(6 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐บ๐ธ
fbarela
2025-11-12 03:00:41
(6 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
๐จ๐ญ
backslash
2025-05-03 05:45:05
(1 year ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot