π¨π
4server
2026-09-17 13:48:37
(18 hours ago)
[ThuSep1715:48:32.1958632026][security2:error][pid278286:tid278393][client2001:bc8:1200:3:208:a2ff:f ...
show more
[ThuSep1715:48:32.1958632026][security2:error][pid278286:tid278393][client2001:bc8:1200:3:208:a2ff:fe0c:5eb8:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"4hosts.net\"][uri\"/favicon.ico\"][unique_id\"aqvvsLtixifqisRMg_PzqAAAAEY\"]
show less
Hacking
Web App Attack
πΊπΈ
VanKoh
2026-05-24 05:20:00
(3 months ago)
2001:bc8:1200:3:208:a2ff:fe0c:5eb8 - - [23/May/2026:23:19:58 -0600] "GET https://am4digital.xyz/ HTT ...
show more
2001:bc8:1200:3:208:a2ff:fe0c:5eb8 - - [23/May/2026:23:19:58 -0600] "GET https://am4digital.xyz/ HTTP/1.1" 301 162 "-" "Mozilla/9.0 AppleWebKit/202110.05 (KHTML, like Gecko) Chrome/20.21.1005.122 Safari/211.05"
2001:bc8:1200:3:208:a2ff:fe0c:5eb8 - - [23/May/2026:23:19:59 -0600] "GET https://am4digital.xyz/BBScan-404-existence-check HTTP/1.1" 301 162 "-" "Mozilla/9.0 AppleWebKit/202110.05 (KHTML, like Gecko) Chrome/20.21.1005.122 Safari/211.05"
2001:bc8:1200:3:208:a2ff:fe0c:5eb8 - - [23/May/2026:23:19:59 -0600] "GET https://am4digital.xyz/ HTTP/1.1" 301 162 "-" "Mozilla/9.0 AppleWebKit/202110.05 (KHTML, like Gecko) Chrome/20.21.1005.122 Safari/211.05"
...
show less
DDoS Attack
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-20 04:01:19
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 00:01:10.952597 2026] [security2:error] [pid 19643:tid 19664] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:39148] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kcscomputer.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kcscomputer.com"] [uri "/config.php.bak"] [unique_id "ag0yBnWmXIyEbTasjUjTYAAAAJM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-06 20:00:46
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 16:00:38.455008 2026] [security2:error] [pid 20465:tid 20465] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:32930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kavahawaii.com"] [uri "/wp-config.php.inc"] [unique_id "afud5mLNyp07GuqOLjqCaQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-22 06:50:03
(4 months ago)
| [Trusted/France] Aggressive IP 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (~3000 hits). Type: DoS Defender ...
show more
| [Trusted/France] Aggressive IP 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (~3000 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
πΊπΈ
TPI-Abuse
2026-04-15 12:48:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 15 08:48:13.269351 2026] [security2:error] [pid 1312240:tid 1312240] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:56848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karendraughon.com"] [uri "/.svn/entries"] [unique_id "ad-JDebASTNVbPnamVvsfQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-15 09:58:22
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 15 05:58:15.866208 2026] [security2:error] [pid 1543122:tid 1543122] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:55976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karenbernsteinlaw.net"] [uri "/wp-config.php.inc"] [unique_id "ad9hN8JsbzftabsjdwVxugAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 23:26:10
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 19:26:04.074529 2026] [security2:error] [pid 23029:tid 23029] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:57100] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||k-and-l-contractors.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "k-and-l-contractors.com"] [uri "/config.php.bak"] [unique_id "adLvjC5XAXIFMWWvLo1RfgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-02 14:56:00
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 10:55:53.006126 2026] [security2:error] [pid 32612:tid 32612] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:33928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kameleonquilt.com"] [uri "/kameleon%20eng/.svn/entries"] [unique_id "ac6DeaL6NVkHwfvlgGrYmQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2026-03-14 04:31:47
(6 months ago)
161 requests with url.path *.php.bak
Brute-Force
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-03-09 08:16:35
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 09 04:16:28.139062 2026] [security2:error] [pid 31139:tid 31139] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:44366] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||justjunglejuice.org|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "justjunglejuice.org"] [uri "/fr/config.php.bak"] [unique_id "aa6B3KupKuRghhB_I5llhQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-06 08:49:47
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 06 03:49:41.002964 2026] [security2:error] [pid 7874:tid 7874] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:58880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jspd.com"] [uri "/.svn/entries"] [unique_id "aYWrJQnC67skaZfm1CjPWQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-06 05:49:39
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 06 00:49:32.326954 2026] [security2:error] [pid 12209:tid 12209] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:38436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jsolanogranite.com"] [uri "/.svn/entries"] [unique_id "aYWA7Ngq8ubmUP5z1pDCJwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-01 20:01:09
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 01 15:01:02.619354 2026] [security2:error] [pid 22486:tid 22486] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:59804] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jrqdesign.com"] [uri "/.svn/entries"] [unique_id "aX-w_uiUSAU04LscJcuuCwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-01-12 07:12:58
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:bc8:1200:3:208:a2ff:fe0c:5eb8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 12 02:12:54.753537 2026] [security2:error] [pid 25186:tid 25198] [client 2001:bc8:1200:3:208:a2ff:fe0c:5eb8:36864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "josephablumphotography.com"] [uri "/.svn/entries"] [unique_id "aWSe9kelGkfiwMPndx64CQAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack