๐ฉ๐ช
LRob
2026-09-16 23:50:41
(1 day ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: /normandie | 2026-09-16 23:50 UTC
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-13 04:23:17
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 00:23:09.578094 2026] [security2:error] [pid 21625:tid 21625] [client 206.232.2.126:28477] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.americanexportimport.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.americanexportimport.com"] [uri "/mailto:[email protected] "] [unique_id "aqYlLRFjb3MZW9dgBFxxTAAAAAQ"], referer: http://www.americanexportimport.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 02:33:19
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:33:11.433425 2026] [security2:error] [pid 14795:tid 14795] [client 206.232.2.126:36363] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||capitalswisscorp.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "capitalswisscorp.com"] [uri "/mailto:[email protected] "] [unique_id "apeK525XH135Vzyz0tdIZQAAADA"], referer: http://CapitalSwissCorp.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-05 20:35:00
(1 month ago)
Botnet
Brute-Force
Bad Web Bot
Web App Attack
Hacking
Anonymous
2026-08-04 11:09:32
(1 month ago)
FortiWeb WAF: 28 attacks detected. Threat Score: 10806880. Types: Client Management(14), Signature D ...
show more
FortiWeb WAF: 28 attacks detected. Threat Score: 10806880. Types: Client Management(14), Signature Detection(14). Origin: United States.
show less
Web App Attack
Anonymous
2026-07-22 03:57:48
(1 month ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-23 07:06:05
(2 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 10-06.206.232.2.126.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 10-06.206.232.2.126.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-20 02:33:31
(2 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 05-33.206.232.2.126.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 05-33.206.232.2.126.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 01:03:48
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 21:03:44.909478 2026] [security2:error] [pid 11474:tid 11474] [client 206.232.2.126:29867] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||holgerfeld.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "holgerfeld.com"] [uri "/mailto:[email protected] "] [unique_id "ai398Cl4JTeO4Zl-sQyeQAAAAAI"], referer: http://holgerfeld.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-29 01:29:19
(3 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 04-29.206.232.2.126.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 04-29.206.232.2.126.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-04-19 01:18:09
(4 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 04-18.206.232.2.126.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 04-18.206.232.2.126.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐จ๐ญ
backslash
2026-03-28 13:42:16
(5 months ago)
block ruleset Badbot using very old user-agents 5CF3CDB778C7D82564405B86B9242E612F378C68
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-02-24 08:07:31
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 24 03:07:23.826444 2026] [security2:error] [pid 17463:tid 17463] [client 206.232.2.126:25639] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||CapitalSwissCorp.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "capitalswisscorp.com"] [uri "/mailto:[email protected] "] [unique_id "aZ1cO5Ca5hR-zChPnowIeQAAABA"], referer: http://CapitalSwissCorp.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dtorrer
2026-01-21 14:11:39
(7 months ago)
Client attempted to submit spam on a website post.
Blog Spam
๐บ๐ธ
TPI-Abuse
2026-01-08 09:19:28
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 08 04:19:21.317305 2026] [security2:error] [pid 18358:tid 18358] [client 206.232.2.126:37603] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.capitalswisscorp.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.capitalswisscorp.com"] [uri "/mailto:[email protected] "] [unique_id "aV92mSwODzMzwAWzAjOkmgAAAA4"], referer: http://www.capitalswisscorp.com
show less
Brute-Force
Bad Web Bot
Web App Attack