๐บ๐ธ
TPI-Abuse
2025-10-31 16:38:09
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 31 12:38:05.860968 2025] [security2:error] [pid 3056508:tid 3056508] [client 2001:67c:89c:702:1ce:1ce:babe:8:65320] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||waterjetsolutions.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "waterjetsolutions.com"] [uri "/waterj.sql"] [unique_id "aQTl7f5zcDAagUZk2EcKAwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-11 11:37:11
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 11 07:37:05.047551 2025] [security2:error] [pid 3201:tid 3201] [client 2001:67c:89c:702:1ce:1ce:babe:8:64564] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||arapi.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "arapi.org"] [uri "/wordpress.sql"] [unique_id "aOpBYRWIufk65g149oioxgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-10-09 07:49:06
(9 months ago)
Blocked by UFW (TCP on 8333)
Source port: 64950
Packet length: 80
This report (for 2001:067c:089c:0 ...
show more
Blocked by UFW (TCP on 8333)
Source port: 64950
Packet length: 80
This report (for 2001:067c:089c:0702:01ce:01ce:babe:0008) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-10-05 05:38:48
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 05 01:38:44.230780 2025] [security2:error] [pid 10547:tid 10547] [client 2001:67c:89c:702:1ce:1ce:babe:8:65498] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||primacomm.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "primacomm.com"] [uri "/primacom.sql"] [unique_id "aOIEZB51mKEXmyC8X1HJEQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-23 17:19:41
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 23 13:19:35.233586 2025] [security2:error] [pid 21973:tid 21973] [client 2001:67c:89c:702:1ce:1ce:babe:8:64444] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||brentsagnotti.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brentsagnotti.com"] [uri "/entsagnotti_com.sql"] [unique_id "aNLWp2hG-amUlsDuALmniQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-20 04:47:48
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 20 00:47:41.214943 2025] [security2:error] [pid 15454:tid 15454] [client 2001:67c:89c:702:1ce:1ce:babe:8:64084] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||texaslawman.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "texaslawman.net"] [uri "/lawman.sql"] [unique_id "aM4x7fKfFSxAA1zYNMihQwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-08-23 23:33:09
(11 months ago)
Blocked by UFW (TCP on 8333)
Source port: 65482
Packet length: 80
This report (for 2001:067c:089c:0 ...
show more
Blocked by UFW (TCP on 8333)
Source port: 65482
Packet length: 80
This report (for 2001:067c:089c:0702:01ce:01ce:babe:0008) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-08-23 06:23:13
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 23 02:23:03.572689 2025] [security2:error] [pid 593:tid 593] [client 2001:67c:89c:702:1ce:1ce:babe:8:65346] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||heavenly-creatures.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "heavenly-creatures.com"] [uri "/heavenly-c.sql"] [unique_id "aKleR35kQnF4B35uKJF43AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2025-08-17 14:10:31
(11 months ago)
Probing for application vulnerabilities
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-19 09:05:59
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 19 05:05:55.783958 2025] [security2:error] [pid 10251:tid 10384] [client 2001:67c:89c:702:1ce:1ce:babe:8:64682] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||atlasrecordssearch.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "atlasrecordssearch.com"] [uri "/bd.sql"] [unique_id "aHtf8_GT2ASa4LX7jFPR3QAAARM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-13 02:33:44
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 12 22:33:36.348125 2025] [security2:error] [pid 4024875:tid 4024875] [client 2001:67c:89c:702:1ce:1ce:babe:8:64262] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||odinathletes.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "odinathletes.com"] [uri "/backup_bak.sql"] [unique_id "aEuOAFPl1MpgpmwtYR2khgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-17 23:57:20
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 17 19:57:15.464196 2025] [security2:error] [pid 3604168:tid 3604168] [client 2001:67c:89c:702:1ce:1ce:babe:8:65284] [client 2001:67c:89c:702:1ce:1ce:babe:8] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nuewines.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nuewines.com"] [uri "/migration.sql"] [unique_id "aCkiW1b8Gh1Cge-UtlQVPgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-17 23:15:19
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 17 19:15:11.044377 2025] [security2:error] [pid 3733668:tid 3733668] [client 2001:67c:89c:702:1ce:1ce:babe:8:64128] [client 2001:67c:89c:702:1ce:1ce:babe:8] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.telecompros.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.telecompros.net"] [uri "/adminer.sql"] [unique_id "aCkYfzl1Yue2bGRiTXUn7QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-19 02:29:22
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 18 22:29:17.073465 2025] [security2:error] [pid 3910113:tid 3910113] [client 2001:67c:89c:702:1ce:1ce:babe:8:64102] [client 2001:67c:89c:702:1ce:1ce:babe:8] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||hvacmechanalysis.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hvacmechanalysis.com"] [uri "/administrator/backups/database-sql.sql"] [unique_id "aAMKfXVn3XI5oNFN6B5PEAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-16 13:11:50
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-ex ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:67c:89c:702:1ce:1ce:babe:8 (tor-project-exit8.dotsrc.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 16 09:11:45.356326 2025] [security2:error] [pid 405:tid 464] [client 2001:67c:89c:702:1ce:1ce:babe:8:64550] [client 2001:67c:89c:702:1ce:1ce:babe:8] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||almerirock.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "almerirock.com"] [uri "/administrator/backups/database-sql.sql"] [unique_id "Z_-skUbiM9_8PHR9vqq22AAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack