๐บ๐ธ
TPI-Abuse
2026-07-25 20:54:41
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 2001:41d0:303:aeb::1 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:41d0:303:aeb::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 16:54:37.045500 2026] [security2:error] [pid 2867042:tid 2867042] [client 2001:41d0:303:aeb::1:55822] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Briarwood II/Stetson Coffee/Thumbs.db"] [unique_id "amUijbbctzAdQ64xNmTfUQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
neron
2026-07-24 15:30:03
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ฉ๐ช
Hazzard
2026-07-22 16:07:34
(1 month ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted]): (CF_ENABLE)
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2026-07-20 01:39:54
(2 months ago)
2001:41d0:303:aeb::1 - - [20/Jul/2026:02:39:54 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozill ...
show more
2001:41d0:303:aeb::1 - - [20/Jul/2026:02:39:54 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-17 18:25:50
(2 months ago)
(mod_security) mod_security (id:217291) triggered by 2001:41d0:303:aeb::1 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:217291) triggered by 2001:41d0:303:aeb::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 14:25:42.022465 2026] [security2:error] [pid 1047890:tid 1047890] [client 2001:41d0:303:aeb::1:42570] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(\\\\n|\\\\r)" at ARGS_NAMES:\\r\\nfromwhere. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "145"] [id "217291"] [rev "2"] [msg "HTTP Header Injection Attack via payload (CR/LF detected)||desertedge.band|F|2"] [data "Matched Data: \\x0d found within ARGS_NAMES:\\x5cr\\x5cnfromwhere: \\x0d\\x0afromwhere"] [severity "CRITICAL"] [tag "CWAF"] [tag "Protocol"] [hostname "desertedge.band"] [uri "/g12privacy.php"] [unique_id "alpzprJJ_Tg52SABmqMZnAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Jarda_H
2026-07-16 21:04:52
(2 months ago)
http-bad-user-agent
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-07-14 13:34:49
(2 months ago)
2001:41d0:303:aeb::1 - - [14/Jul/2026:14:34:39 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozill ...
show more
2001:41d0:303:aeb::1 - - [14/Jul/2026:14:34:39 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
...
show less
Bad Web Bot
๐ซ๐ท
Tilellit.PRO
2026-07-13 12:52:56
(2 months ago)
Malicious web traffic detected by CrowdSec
Hacking
๐ณ๐ฑ
Site.eu
2026-07-10 16:37:08
(2 months ago)
Excessive 404/403 errors
Brute-Force
๐ฌ๐ง
Mendip_Defender
2026-07-08 16:06:34
(2 months ago)
2001:41d0:303:aeb::1 - - [08/Jul/2026:17:06:25 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozill ...
show more
2001:41d0:303:aeb::1 - - [08/Jul/2026:17:06:25 +0100] "GET /robots.txt HTTP/1.1" 403 146 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
...
show less
Bad Web Bot
๐ฉ๐ช
kkwemi
2026-07-05 13:29:43
(2 months ago)
Malicious bot detected: Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)
Bad Web Bot
๐ซ๐ท
bazter.pro
2026-07-04 02:19:03
(2 months ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-03 16:25:44
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:41d0:303:aeb::1 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:41d0:303:aeb::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 12:25:39.580693 2026] [security2:error] [pid 26110:tid 26110] [client 2001:41d0:303:aeb::1:57894] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Ashton II Recliner/Havana Brown/originals/Thumbs.db"] [unique_id "akfig9ltJfIvxxv5haAseQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-24 15:10:23
(2 months ago)
[ssd5.kdns.gr] httpd-noisy-crawler: sites=cancelletto.gr; logs=/var/log/httpd/domains/cancelletto.gr ...
show more
[ssd5.kdns.gr] httpd-noisy-crawler: sites=cancelletto.gr; logs=/var/log/httpd/domains/cancelletto.gr.log; samples=mj12bot:/tag/%CF%81%CE%BF%CE%BB%CE%AC-%CE%B1%CF%83%CF%86%CE%B1%CE%BB%CE%AD%CE%B9%CE%B1%CF%82/feed/ | mj12bot:/tag/%CF%83%CF%85%CE%BC%CE%B2%CE%BF%CF%85%CE%BB%CE%AD%CF%82-%CF%80%CF%85%CF%81%CE%B1%CF%83%CF%86%CE%AC%CE%BB%CE%B5%CE%B9%CE%B1%CF%82/feed/ | mj12bot:/tag/%CF%83%CF%85%CE%BD%CE%B1%CE%B3%CE%B5%CF%81%CE%BC%CE%BF%CE%AF-%CF%83%CF%80%CE%B9%CF%84%CE%B9%CF%8E%CE%BD/feed/
show less
Hacking
Web App Attack
๐ฉ๐ช
Jarda_H
2026-06-17 23:45:40
(3 months ago)
http-bad-user-agent
Web App Attack