๐ณ๐ฟ
nixnut
2026-06-01 15:31:00
(2 months ago)
Web Spam
Email Spam
๐บ๐ธ
TPI-Abuse
2026-06-01 09:26:19
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserve ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 05:26:15.514929 2026] [security2:error] [pid 20175:tid 20175] [client 2a02:c202:2191:7292::1:49620] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||aavondalervstorage.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "aavondalervstorage.com"] [uri "/[email protected] "] [unique_id "ah1QN8sxuwd_op3xyUq3VQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
LotPhantom
2026-06-01 08:30:15
(2 months ago)
2026/06/01 08:30:14 [error] 4144361#4144361: *123517 connect() failed (111: Connection refused) whil ...
show more
2026/06/01 08:30:14 [error] 4144361#4144361: *123517 connect() failed (111: Connection refused) while connecting to upstream, client: 2a02:c202:2191:7292::1, server: wynnesmiles.com, request: "GET / HTTP/2.0", upstream: "http://127.0.0.1:4001/", host: "wynnesmiles.com"
...
show less
Web App Attack
๐ต๐พ
armandosaucedo.me
2026-05-31 18:10:48
(3 months ago)
Threat Intelligence via ARMTI, Web Attack: GET /sitemap.xml
Web App Attack
๐ฆ๐บ
Anytech
2026-05-30 06:29:22
(3 months ago)
Blocked by Conn-Monitor: Automated bot activity
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 19:50:39
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserve ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 15:50:30.856842 2026] [security2:error] [pid 17735:tid 17737] [client 2a02:c202:2191:7292::1:56172] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||barstowstationtoo.com|F|2"] [data ".barstow-station.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "barstowstationtoo.com"] [uri "/www.barstow-station.com"] [unique_id "ahichmHqeQfDvS8p_IqSYAAAAUA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 05:50:53
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserve ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 01:50:47.128459 2026] [security2:error] [pid 22435:tid 22435] [client 2a02:c202:2191:7292::1:36712] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||irises.batw.net|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "irises.batw.net"] [uri "/mailto/E-Mail:[email protected] "] [unique_id "ahaGN8GQsICN5n5S5O23CAAAAEs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
technojoe99
2026-05-27 00:21:58
(3 months ago)
Exploit scan from 2a02:c202:2191:7292::1. GET /sitemap.xml HTTP/2.0.
Web App Attack
Anonymous
2026-05-25 02:13:42
(3 months ago)
nginx-444 from fail2ban
...
Web App Attack
๐ณ๐ฟ
nixnut
2026-05-24 01:19:00
(3 months ago)
Web Spam
Email Spam
๐บ๐ธ
TPI-Abuse
2026-05-23 00:07:00
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserve ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 20:06:53.967690 2026] [security2:error] [pid 18911:tid 18911] [client 2a02:c202:2191:7292::1:41862] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||phantomkennels.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "phantomkennels.com"] [uri "/[email protected] "] [unique_id "ahDvnTaTlp_TzNwQ0AhfdAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 23:05:45
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserve ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 19:05:38.900673 2026] [security2:error] [pid 1964:tid 1964] [client 2a02:c202:2191:7292::1:39846] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||flashbackmusicmemories.com|F|2"] [data ".40svocaltrio.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "flashbackmusicmemories.com"] [uri "/www.40svocaltrio.com"] [unique_id "ahDhQtHiZBMkjPLxz52_EQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 15:35:02
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserve ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 11:34:55.382509 2026] [security2:error] [pid 4384:tid 4384] [client 2a02:c202:2191:7292::1:43424] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||timezonespro.com|F|2"] [data ".lnk"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "timezonespro.com"] [uri "/!!!!imbnsjh5 - Acceso directo.lnk"] [unique_id "ahB3n6ME7X8rjzSc8mxXdQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 14:00:36
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserve ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 10:00:29.299563 2026] [security2:error] [pid 26117:tid 26117] [client 2a02:c202:2191:7292::1:54272] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stepiz62.com|F|2"] [data ".xsd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stepiz62.com"] [uri "/joty/resources/JotyRequest.xsd"] [unique_id "ahBhfdT0N6iq14Utf0GU4wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 06:10:57
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserve ...
show more
(mod_security) mod_security (id:210730) triggered by 2a02:c202:2191:7292::1 (vmi1917292.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 02:10:52.338038 2026] [security2:error] [pid 13876:tid 13876] [client 2a02:c202:2191:7292::1:34068] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||solcargomiami.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "solcargomiami.com"] [uri "/mailto@[email protected] "] [unique_id "ag_zbBJQ0bbNqw3q1nbp8wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack