๐บ๐ธ
TPI-Abuse
2026-09-26 06:46:26
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 02:46:19.531891 2026] [security2:error] [pid 11464:tid 11464] [client 2a01:4f8:201:7089::2:59366] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||asbechiro.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "asbechiro.com"] [uri "/yahoo.com"] [unique_id "ardqO6h34b67mOneD80iLgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-26 03:00:32
(9 hours ago)
20.429 requests in 1 hour (4d18h59m)
Brute-Force
Bad Web Bot
๐ฆ๐บ
2000cn.com.au
2026-09-07 15:02:53
(2 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack
Bad Web Bot
๐ฆ๐บ
2000cn.com.au
2026-09-05 18:14:31
(2 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-30 12:27:48
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 08:27:45.177571 2026] [security2:error] [pid 31685:tid 31685] [client 2a01:4f8:201:7089::2:46266] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.precisionk-9.com|F|2"] [data ".amcboise.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.precisionk-9.com"] [uri "/www.amcboise.com"] [unique_id "apQhwZB0SI2FQiXdN-FDmwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-18 12:29:32
(1 month ago)
Requests sent with a known malicious or scanner user-agent | req: /robots.txt | UA: serpstatbot/2.1 ...
show more
Requests sent with a known malicious or scanner user-agent | req: /robots.txt | UA: serpstatbot/2.1 (advanced backlink tracking bot; https://serpstatbot.com/; [email protected] )
show less
Bad Web Bot
๐น๐ท
neron
2026-08-15 21:06:48
(1 month ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-15 13:23:57
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 09:23:49.263705 2026] [security2:error] [pid 13315:tid 13315] [client 2a01:4f8:201:7089::2:47064] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.hayrun.com|F|2"] [data ".hayrun.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.hayrun.com"] [uri "/blog/uncategorized/test2/www.hayrun.com"] [unique_id "aoBoZYSAG0F-pZJSljId4AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-13 21:05:51
(1 month ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack
Bad Web Bot
๐ฉ๐ช
yvoictra
2026-08-08 13:33:47
(1 month ago)
Bloqueado automรกticamente por CrowdSec. Escenario: crowdsecurity/http-bad-user-agent
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-07-27 05:24:50
(1 month ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack
Bad Web Bot
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-07-17 13:19:06
(2 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-31 12:33:19
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 08:33:11.261636 2026] [security2:error] [pid 4023:tid 4023] [client 2a01:4f8:201:7089::2:38624] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.phantomkennels.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.phantomkennels.com"] [uri "/[email protected] "] [unique_id "ahwqh7UHFSzhlChCkqeNkQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 20:09:49
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a01:4f8:201:7089::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 16:09:45.495912 2026] [security2:error] [pid 16980:tid 16980] [client 2a01:4f8:201:7089::2:52022] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||caretakerspestcontrol.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "caretakerspestcontrol.com"] [uri "/JMRussell.com"] [unique_id "agI3ifQR9_KR1bbeiUaGawAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-04-29 09:35:02
(4 months ago)
Bad bot ignoring robot.txt
Bad Web Bot