|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 10 11:34:37.804945 2025] [security2:error] [pid 20024:tid 20024] [client 204.76.203.66:31426] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bonegym.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bonegym.com"] [uri "/dump.sql"] [unique_id "aOknjR45KvsDr07niAOWKQAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 10 06:37:48.414790 2025] [security2:error] [pid 8868:tid 8868] [client 204.76.203.66:46353] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||davidocchino.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "davidocchino.com"] [uri "/dump.sql"] [unique_id "aOjh_K_BH92G4l7UAlumNQAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 10 04:00:38.930978 2025] [security2:error] [pid 9792:tid 9792] [client 204.76.203.66:25137] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||general.graphics|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "general.graphics"] [uri "/dump.sql"] [unique_id "aOi9JlmgiOQMLGd_5oAuQgAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π©πͺ
conseilgouz
|
|
coe-7 : Trying access unauthorized files/dir=>/dump.sql
|
Hacking
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 10 01:05:46.364388 2025] [security2:error] [pid 19266:tid 19266] [client 204.76.203.66:27461] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||panama-boat-registration.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "panama-boat-registration.com"] [uri "/dump.sql"] [unique_id "aOiUKoJS45HrrM4Sqpg-TAAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 21:26:13.056669 2025] [security2:error] [pid 17395:tid 17416] [client 204.76.203.66:21480] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vtweaversguild.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vtweaversguild.org"] [uri "/dump.sql"] [unique_id "aOhgtUnvaLsLZ5lwTDyeHQAAAEM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πͺπͺ
Unwasted
|
|
File scanning
|
Hacking
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 17:57:26.584097 2025] [security2:error] [pid 9522:tid 9522] [client 204.76.203.66:54222] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||perthdps.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "perthdps.com"] [uri "/dump.sql"] [unique_id "aOgvxv1WNJ76bwvW_lcfAwAAAAM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 16:20:30.152378 2025] [security2:error] [pid 4133:tid 4133] [client 204.76.203.66:36712] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stationrestaurant.ca|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stationrestaurant.ca"] [uri "/dump.sql"] [unique_id "aOgZDtMSwB1r9zfbAPUIHwAAABM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
|
Exploited Host
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 12:17:19.490136 2025] [security2:error] [pid 28376:tid 28376] [client 204.76.203.66:24075] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||piments.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "piments.com"] [uri "/dump.sql"] [unique_id "aOfgDzRWBvwGruwRsHj67gAAAA0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 07:53:36.173695 2025] [security2:error] [pid 22328:tid 22328] [client 204.76.203.66:44564] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lifestylemedica.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lifestylemedica.com"] [uri "/dump.sql"] [unique_id "aOeiQNxY7LHEIkrXWFk_fwAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 06:44:24.550483 2025] [security2:error] [pid 18974:tid 18974] [client 204.76.203.66:47303] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||n3fjp.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "n3fjp.com"] [uri "/dump.sql"] [unique_id "aOeSCC1BAAxY0gDvs49hNgAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 04:32:14.588354 2025] [security2:error] [pid 23692:tid 23692] [client 204.76.203.66:35757] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||soacademy.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "soacademy.org"] [uri "/dump.sql"] [unique_id "aOdzDrpbULFKM5kI3WM6kgAAAAg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 204.76.203.66 (hosted-by.pfcloud.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 09 03:18:16.932176 2025] [security2:error] [pid 25445:tid 25445] [client 204.76.203.66:33891] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||nhgrange.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nhgrange.org"] [uri "/dump.sql"] [unique_id "aOdhuANMomvT1HwR00rmKQAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|