🇺🇸
TPI-Abuse
2026-09-12 08:38:21
(5 hours ago)
(mod_security) mod_security (id:210730) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 04:38:14.812563 2026] [security2:error] [pid 1762351:tid 1762351] [client 207.175.20.210:44752] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.backlogica.com|F|2"] [data ".backlogica.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.backlogica.com"] [uri "/z9x8c7v6b5-debug-trigger-mail.backlogica.com"] [unique_id "aqUPdpqQvs08fvqxQdFFbAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-11 20:44:40
(17 hours ago)
Excessive 404/403 errors
Brute-Force
🇺🇸
TPI-Abuse
2026-09-11 18:22:17
(20 hours ago)
(mod_security) mod_security (id:210730) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 14:22:14.187155 2026] [security2:error] [pid 18137:tid 18137] [client 207.175.20.210:34594] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bahamas-boat-registration.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bahamas-boat-registration.com"] [uri "/z9x8c7v6b5-debug-trigger-bahamas-boat-registration.com"] [unique_id "aqRG1kPrutoSeXzhPYCWjAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-11 18:18:45
(20 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 17:44:45
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 13:44:37.878688 2026] [security2:error] [pid 4598:tid 4598] [client 207.175.20.210:49316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "backsport.com"] [uri "/.env.local"] [unique_id "aqQ-BUz3e3kXPlSfw15GOgAAAD8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Victor López
2026-09-11 17:24:17
(21 hours ago)
babystudio4d.com 207.175.20.210 - - [11/Sep/2026:12:24:14 -0500] "GET /__vite_rsc_findSourceMapURL?f ...
show more
babystudio4d.com 207.175.20.210 - - [11/Sep/2026:12:24:14 -0500] "GET /__vite_rsc_findSourceMapURL?filename=file:///app/.env&environmentName=rsc HTTP/2.0" 404 14765 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://openai.com/gptbot)" -
babystudio4d.com 207.175.20.210 - - [11/Sep/2026:12:24:16 -0500] "GET /userfiles?path=../../.env HTTP/2.0" 404 14765 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)" -
babystudio4d.com 207.175.20.210 - - [11/Sep/2026:12:24:16 -0500] "GET /userfiles?path=../../../.env HTTP/2.0" 404 14765 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)" -
...
show less
Hacking
Web App Attack
🇫🇷
masterguru
2026-09-11 17:21:29
(21 hours ago)
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encod ...
show more
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encoding/ /proxy/ /lock-token/ /content-range/ /if/ /x-http-method-override/ /x-http-method/ /x-method-override/ /x-middleware-subrequest/ /expect/" at TX:header_name_920450_x-middleware-subrequest. (920450-197)
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-11 17:16:43
(21 hours ago)
(mod_security) mod_security (id:210730) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 13:16:37.097031 2026] [security2:error] [pid 3930:tid 3930] [client 207.175.20.210:40088] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||babycatkhalil.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "babycatkhalil.com"] [uri "/host.key"] [unique_id "aqQ3dSBLzrXzzTm-vqyrqQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Baking333
2026-09-11 17:12:05
(21 hours ago)
[redacted] 207.175.20.210 - - [11/Sep/2026:18:12:03 +0100] "GET /.svn/entries HTTP/1.1" 302 1528 0/1 ...
show more
[redacted] 207.175.20.210 - - [11/Sep/2026:18:12:03 +0100] "GET /.svn/entries HTTP/1.1" 302 1528 0/186155 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1)" [redacted] 207.175.20.210 - - [11/Sep/2026:18:12:03 +0100] "GET / HTTP/1.1" 200 7999 0/99538 "https://[redacted]/.svn/entries" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1)"
show less
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-11 17:10:26
(21 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 16:39:31
(21 hours ago)
(mod_security) mod_security (id:210730) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 207.175.20.210 (210.20.175.207.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 12:39:25.790465 2026] [security2:error] [pid 10680:tid 10680] [client 207.175.20.210:50194] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||b2c-llc.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "b2c-llc.com"] [uri "/rclone.conf"] [unique_id "aqQuvQII_To1ttYG6eNbfQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-11 16:26:56
(22 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇮🇹
VHosting
2026-09-11 16:05:03
(22 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack