๐บ๐ธ
Lezetho
2026-07-22 01:00:32
(2 days ago)
DDoS, WebSpam, Web Attack, and Brute-force blocked by Cloudflare
DDoS Attack
Email Spam
Hacking
Brute-Force
๐ฆ๐บ
Anytech
2026-07-21 22:03:44
(2 days ago)
Blocked by Conn-Monitor: cve-exploit-paths
Hacking
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-21 19:07:24
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 15:07:18.636357 2026] [security2:error] [pid 596003:tid 596003] [client 20.244.39.125:50236] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||davidocchino.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "davidocchino.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al_DZnEYx5Q0p38C-7FLNgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-07-21 17:48:30
(2 days ago)
20.244.39.125 (IN/India/Maharashtra/Pune/-), more than 30 Apache 403 hits
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-21 15:00:01
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 10:59:57.176048 2026] [security2:error] [pid 12594:tid 12594] [client 20.244.39.125:55041] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.greatchristianadventure.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.greatchristianadventure.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al-Jbc03Ektv5i0RP0mxaAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 13:36:53
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 09:36:46.085508 2026] [security2:error] [pid 460815:tid 460815] [client 20.244.39.125:49239] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.thebeeplace.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.thebeeplace.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al917ilI_G2haynjfrdZfAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
internetworld
2026-07-21 12:32:56
(3 days ago)
internetworld-prod-01 Fail2Ban ban. Jail=nginx-web-probe-iw. Sanitized automatic report from interne ...
show more
internetworld-prod-01 Fail2Ban ban. Jail=nginx-web-probe-iw. Sanitized automatic report from internetworld.ca server security monitoring.
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 10:29:40
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 06:29:35.385151 2026] [security2:error] [pid 2432371:tid 2432371] [client 20.244.39.125:49945] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.intra.es|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.intra.es"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al9KD0tggq7TbhStImmZzAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 09:39:31
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 05:39:26.405394 2026] [security2:error] [pid 26070:tid 26070] [client 20.244.39.125:58945] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.accordionfactory.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.accordionfactory.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al8-TsSQ0m6edziN06u1BAAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 09:02:53
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 05:02:47.366741 2026] [security2:error] [pid 19242:tid 19242] [client 20.244.39.125:55252] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.vincetronics.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.vincetronics.com"] [uri "/google0e1ebbf943a1894d.html/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al81tzYVLrVUlCLR1myyVQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 08:45:28
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 04:45:19.373952 2026] [security2:error] [pid 4136467:tid 4136467] [client 20.244.39.125:63207] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||scc1.us|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "scc1.us"] [uri "/parked/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al8xn9h-gC6KRR7QJZR_VwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Jimbo67
2026-07-21 08:22:48
(3 days ago)
Cloudflare WAF: 1 hits in 30s | action=block | abuse=suspicious_probe | categories=19 | rule_id=0189 ...
show more
Cloudflare WAF: 1 hits in 30s | action=block | abuse=suspicious_probe | categories=19 | rule_id=0189a8c2c2ab4a60bc709bad14577d18 | URIs=//vendor/phpunit/phpunit/phpunit.xsd | confidence=0.82
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-21 07:52:31
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 03:52:25.125449 2026] [security2:error] [pid 2602771:tid 2602771] [client 20.244.39.125:52661] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||schonmusic.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "schonmusic.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al8lOeSOhcY4rXTzSHOcNwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 06:16:55
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 02:16:49.795054 2026] [security2:error] [pid 6339:tid 6339] [client 20.244.39.125:54776] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||backstore.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "backstore.com"] [uri "/backstore/Index_Products.htm/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al8O0Y782M1f1WFONKHuWAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 05:57:05
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 20.244.39.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 01:56:59.142251 2026] [security2:error] [pid 12856:tid 12866] [client 20.244.39.125:62453] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.biblewriter.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.biblewriter.com"] [uri "/vendor/phpunit/phpunit/phpunit.xsd"] [unique_id "al8KKzHramGkeCegRvDz5gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack