πΊπΈ
TPI-Abuse
2026-09-29 13:56:56
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 09:56:49.495858 2026] [security2:error] [pid 14272:tid 14272] [client 2a02:4780:5e:e9ec::1:60780] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||ridgecrestrealtors.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ridgecrestrealtors.com"] [uri "/okok.cer"] [unique_id "arvDoc59JOGEzTXNi1LfVwAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 12:53:52
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 08:53:46.992844 2026] [security2:error] [pid 14600:tid 14600] [client 2a02:4780:5e:e9ec::1:60272] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||register-yacht-bahamas.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "register-yacht-bahamas.com"] [uri "/okok.cer"] [unique_id "aru02iV0LbVWGrMFouTFWwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 05:27:32
(9 hours ago)
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 01:27:29.343861 2026] [security2:error] [pid 25533:tid 25533] [client 2a02:4780:5e:e9ec::1:41758] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ozarkmountainwinetrail.org|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ozarkmountainwinetrail.org"] [uri "/okok.cer"] [unique_id "artMQWkgA3UFx80uFUfegQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 22:14:27
(16 hours ago)
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 18:14:22.094763 2026] [security2:error] [pid 8158:tid 8158] [client 2a02:4780:5e:e9ec::1:37534] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mrgutierrezshow.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mrgutierrezshow.com"] [uri "/okok.cer"] [unique_id "arrmvq_BdUDWUJ6_1bn05QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
LRob
2026-09-28 05:52:46
(1 day ago)
Wordlist path sweep | method: GET | path: /template/pc/default/member/footer.html, /includes/cls_sms ...
show more
Wordlist path sweep | method: GET | path: /template/pc/default/member/footer.html, /includes/cls_sms.php, /static/warn/close.php (+3 more) | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36 | 2026-09-28 05:52 UTC
show less
Port Scan
Web App Attack
Anonymous
2026-09-27 14:35:30
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-27 09:40:51
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 05:40:44.936996 2026] [security2:error] [pid 10603:tid 10603] [client 2a02:4780:5e:e9ec::1:47004] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gmroyalties.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gmroyalties.com"] [uri "/okok.cer"] [unique_id "arjknL5ZwwdOxbBgyIL3QgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-27 02:06:18
(2 days ago)
Excessive 404/403 errors
Brute-Force
πΊπΈ
TPI-Abuse
2026-09-26 17:14:48
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:4780:5e:e9ec::1 (srv1813101.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 13:14:41.105672 2026] [security2:error] [pid 8031:tid 8031] [client 2a02:4780:5e:e9ec::1:47668] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||entertainer-review.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "entertainer-review.com"] [uri "/okok.cer"] [unique_id "arf9gf3yA5R5PNi_D__52wAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack