๐ฉ๐ช
SCHAPPY
2026-04-22 01:57:12
(4 months ago)
Bad bot identified by user agent
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2026-04-17 22:11:15
(4 months ago)
2001:41d0:303:a4e6::1 - - [17/Apr/2026:23:11:10 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozil ...
show more
2001:41d0:303:a4e6::1 - - [17/Apr/2026:23:11:10 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
...
show less
Bad Web Bot
๐ซ๐ท
ingroscart.it
2026-04-15 07:37:09
(4 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 2001:41d0:303:a4e6:: ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 2001:41d0:303:a4e6::1 (Unknown)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-15 06:59:38
(4 months ago)
(mod_security) mod_security (id:217291) triggered by 2001:41d0:303:a4e6::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:217291) triggered by 2001:41d0:303:a4e6::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 15 02:59:32.282793 2026] [security2:error] [pid 4186020:tid 4186020] [client 2001:41d0:303:a4e6::1:34654] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(\\\\n|\\\\r)" at ARGS_NAMES:\\r\\nfromwhere. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "145"] [id "217291"] [rev "2"] [msg "HTTP Header Injection Attack via payload (CR/LF detected)||briancastle.com|F|2"] [data "Matched Data: \\x0d found within ARGS_NAMES:\\x5cr\\x5cnfromwhere: \\x0d\\x0afromwhere"] [severity "CRITICAL"] [tag "CWAF"] [tag "Protocol"] [hostname "briancastle.com"] [uri "/g12privacy.php"] [unique_id "ad83VFnce5r6v_RahKq-TgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Roderic
2026-04-14 14:41:39
(4 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-13 10:06:24
(4 months ago)
(mod_security) mod_security (id:240950) triggered by 2001:41d0:303:a4e6::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:240950) triggered by 2001:41d0:303:a4e6::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 06:06:17.030041 2026] [security2:error] [pid 2959175:tid 2959175] [client 2001:41d0:303:a4e6::1:51070] ModSecurity: Access denied with code 403 (phase 1). Pattern match "\\\\D" at TX:1. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "4530"] [id "240950"] [rev "2"] [msg "COMODO WAF: XSS & SQL injection vulnerability in Pragyan CMS 3.0 (CVE-2015-1471)||www.nancyscafeandcatering.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.nancyscafeandcatering.com"] [uri "/wp-content/themes/eatery/nav.php"] [unique_id "adzAGf_je7lOQOFDhnSbcgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-04-12 19:35:55
(4 months ago)
2001:41d0:303:a4e6::1 - - [12/Apr/2026:20:35:51 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozil ...
show more
2001:41d0:303:a4e6::1 - - [12/Apr/2026:20:35:51 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
...
show less
Bad Web Bot
๐ณ๐ฑ
Roderic
2026-04-11 21:29:20
(4 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐ซ๐ท
claude CALVET
2026-04-11 17:35:12
(4 months ago)
gew-Joomla User : try to access forms...
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-11 01:13:52
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:41d0:303:a4e6::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:41d0:303:a4e6::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 21:13:44.230255 2026] [security2:error] [pid 2185207:tid 2185207] [client 2001:41d0:303:a4e6::1:34960] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||brickyardinn.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brickyardinn.com"] [uri "/mail to: [email protected] "] [unique_id "admgSFfrsN9_llFKMupc2gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-04-10 17:36:40
(4 months ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Site.eu
2026-04-06 09:27:00
(4 months ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
webgobe
2026-04-04 09:03:53
(4 months ago)
wew-Joomla User : try to access forms...
Hacking
๐ฌ๐ง
Mendip_Defender
2026-04-02 06:56:01
(4 months ago)
2001:41d0:303:a4e6::1 - - [02/Apr/2026:07:55:58 +0100] "GET /stay-in-Wales.html HTTP/1.0" 404 4963 " ...
show more
2001:41d0:303:a4e6::1 - - [02/Apr/2026:07:55:58 +0100] "GET /stay-in-Wales.html HTTP/1.0" 404 4963 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
...
show less
Bad Web Bot
๐บ๐ธ
antlac1
2026-03-29 02:35:10
(5 months ago)
crowdsecurity/http-bad-user-agent
Brute-Force
Web App Attack