๐ซ๐ท
abuseipdb.amaze321
2026-08-28 12:36:05
(29 minutes ago)
Automated reconnaissance: repeated requests for sensitive/non-existent paths.
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-27 22:57:13
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f800:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f800:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:57:05.034818 2026] [security2:error] [pid 31284:tid 31309] [client 2a03:2880:f800:10:::52360] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||businessbasicsinstitute.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "businessbasicsinstitute.com"] [uri "/businessbasicsinstitute.com"] [unique_id "apDAwTTix-dvQiU5oPqsDgAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 12:58:44
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f800:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f800:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:58:40.882242 2026] [security2:error] [pid 13685:tid 13685] [client 2a03:2880:f800:10:::23784] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||leirstein.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "leirstein.com"] [uri "/leirstein.com"] [unique_id "apA0gLB5wtNGgZSjibKObgAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
relianoid.com
2026-08-24 14:02:23
(3 days ago)
404 Errors Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web App Attack
๐ต๐ฑ
Budyn
2026-08-20 07:18:34
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: mail.budyn.top | URI: /wp-admin/ | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
jbcrn
2026-08-18 19:40:08
(1 week ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Facebook, ruleset: ai.robots.txt. Reque ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Facebook, ruleset: ai.robots.txt. Requested honeypot path: /. User-Agent: facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-18 17:26:21
(1 week ago)
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/cat_ ...
show more
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/cat_ids~142/tag_ids~725,437,331,559,403,264,792,833,439,493,501,435/request_format~json/ | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-webindexer/1.1 (+htt
show less
DDoS Attack
Web App Attack
๐ฉ๐ช
LRob
2026-08-18 17:05:26
(1 week ago)
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/page ...
show more
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/page_offset~-1/cat_ids~142/tag_ids~725,437,480,652,436,215,472,620,493,449,224/request_format~json/ | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-webindexer/1.1
show less
DDoS Attack
Web App Attack
๐ฉ๐ช
LRob
2026-08-18 16:47:08
(1 week ago)
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/page ...
show more
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/page_offset~-1/cat_ids~142/tag_ids~725,437,550,310,248,493,435,211,377/request_format~json/ | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-webindexer/1.1
show less
DDoS Attack
Web App Attack
๐ฉ๐ช
LRob
2026-08-18 16:27:36
(1 week ago)
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/cat_ ...
show more
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/cat_ids~142/tag_ids~725,437,331,559,403,264,343,493,332,588,791,678/request_format~json/ | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-webindexer/1.1 (+htt
show less
DDoS Attack
Web App Attack
๐ฉ๐ช
LRob
2026-08-17 13:55:18
(1 week ago)
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/page ...
show more
Distributed L7 HTTP flood on WordPress AJAX endpoints - DDoS | req: /calendrier-2/action~agenda/page_offset~-1/tag_ids~725,475,702,401,454,232,471,493,674/request_format~json/ | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-externalagent/
show less
DDoS Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 21:46:41
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f800:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f800:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 17:46:37.427555 2026] [security2:error] [pid 14170:tid 14170] [client 2a03:2880:f800:10:::21022] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||automationmp.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "automationmp.com"] [uri "/automationmp.com"] [unique_id "aoIvvRQbaojyaC_KVx1P4wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
relianoid.com
2026-08-16 13:57:27
(1 week ago)
404 Errors Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web App Attack
๐ง๐ท
alcacerlab
2026-08-16 06:49:03
(1 week ago)
2a03:2880:f800:10:: - - [16/Aug/2026:03:49:01 -0300] "GET / HTTP/2" 200 54000 "-" "facebookexternalh ...
show more
2a03:2880:f800:10:: - - [16/Aug/2026:03:49:01 -0300] "GET / HTTP/2" 200 54000 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
jbcrn
2026-08-15 07:44:34
(1 week ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Facebook, ruleset: ai.robots.txt. Reque ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Facebook, ruleset: ai.robots.txt. Requested honeypot path: /. User-Agent: facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)
show less
Bad Web Bot
Web App Attack