๐บ๐ธ
TPI-Abuse
2025-02-18 23:47:13
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 18 18:47:06.080127 2025] [security2:error] [pid 22501:tid 22501] [client 2a03:2880:f806:11:::42276] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.raintechgutters.com|F|2"] [data ".raintechgutters.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.raintechgutters.com"] [uri "/water-management-systems/www.raintechgutters.com"] [unique_id "Z7Ub-sIcI4z2OphjlX_CUgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-31 00:33:26
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 30 19:33:20.136311 2025] [security2:error] [pid 18475:tid 18475] [client 2a03:2880:f806:11:::35176] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.zydecajun.radio.fm|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.zydecajun.radio.fm"] [uri "/wp-json/wp/v2/users/3"] [unique_id "Z5waUJBU5WGQiC7I9K4EYAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-26 17:45:18
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 26 12:45:10.543763 2025] [security2:error] [pid 1771602:tid 1771602] [client 2a03:2880:f806:11:::46918] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||midwaysylphs.com|F|2"] [data ".rrevelations.com.conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "midwaysylphs.com"] [uri "/tmp/awstats/ssl/awstats.rrevelations.com.conf"] [unique_id "Z5Z0psHSyucjmRWqAu_s8QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-14 19:37:13
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 14 14:37:09.728594 2025] [security2:error] [pid 3808225:tid 3808225] [client 2a03:2880:f806:11:::44424] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.flavornet.org|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.flavornet.org"] [uri "/info/jmol/pdb/67-71-0.pdb"] [unique_id "Z4a85SSdhhEKBE2QCsqhoQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-01 22:25:32
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 01 17:25:27.824997 2025] [security2:error] [pid 1884905:tid 1884905] [client 2a03:2880:f806:11:::41822] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.williamfitzsimmons.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.williamfitzsimmons.com"] [uri "/zoomfrankfurt.com"] [unique_id "Z3XA1zfQgFEw6bwAHfNj9AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-31 22:08:42
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 31 17:08:36.155775 2024] [security2:error] [pid 13206:tid 13206] [client 2a03:2880:f806:11:::32840] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.piments.com|F|2"] [data ".config"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.piments.com"] [uri "/.config"] [unique_id "Z3RrZOxTVSSBb6SLCXsATQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2024-12-30 04:39:15
(1 year ago)
Aggressive SEO Bots
...
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-12-28 10:37:22
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 28 05:37:19.442014 2024] [security2:error] [pid 7157:tid 7157] [client 2a03:2880:f806:11:::34314] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.vangentholding.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.vangentholding.com"] [uri "/wp-json/wp/v2/users/202320"] [unique_id "Z2_U336zGXgIX1H8t4b7-wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-16 02:02:44
(1 year ago)
(mod_security) mod_security (id:225080) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225080) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 15 21:02:40.912799 2024] [security2:error] [pid 21874:tid 21899] [client 2a03:2880:f806:11:::57780] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Match of "rx ^[\\\\d\\\\.ab]+$" against "ARGS_GET:C" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "143"] [id "225080"] [rev "1"] [msg "COMODO WAF: XSS vulnerability in Plupload before 2.1.9 or MediaElement.js before 2.21.0, as used in WordPress before 4.5.2 (CVE-2016-4566 & CVE-2016-4567)||darkestmoonart.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "darkestmoonart.com"] [uri "/wp-includes/js/mediaelement/renderers/"] [unique_id "Z1-KQIvMhXVVFW6I13lIrAAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-14 15:48:55
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 14 10:48:49.572153 2024] [security2:error] [pid 19572:tid 19572] [client 2a03:2880:f806:11:::43168] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.phantomkennels.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.phantomkennels.com"] [uri "/[email protected] "] [unique_id "Z12o4RFEVZhrh6NNjxeZfAAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2024-12-05 22:21:22
(1 year ago)
Aggressive SEO Bots
...
Bad Web Bot
๐ฌ๐ง
Swiptly
2024-11-21 18:35:41
(1 year ago)
Aggressive SEO Bots
...
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-11-10 05:10:47
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:2880:f806:11:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 10 00:10:40.663141 2024] [security2:error] [pid 575899:tid 575899] [client 2a03:2880:f806:11:::39302] [client 2a03:2880:f806:11::] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gre-home.com"] [uri "/wp-config.php"] [unique_id "ZzBAUOVopg0kuMwX0wx8jgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Mendip_Defender
2024-10-22 10:20:28
(1 year ago)
2a03:2880:f806:11:: - - [22/Oct/2024:11:20:28 +0100] "GET /_data/i/galleries/2021/20210812_-_Ixion_a ...
show more
2a03:2880:f806:11:: - - [22/Oct/2024:11:20:28 +0100] "GET /_data/i/galleries/2021/20210812_-_Ixion_at_Cadwelll_25/20210812_Ixion_Cadwell_25_1824-sq.jpg HTTP/2.0" 200 6806 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2024-10-04 11:18:12
(2 years ago)
2a03:2880:f806:11:: - - [04/Oct/2024:12:18:25 +0100] "GET /picture.php/CS_08-04-2007_0177/categories ...
show more
2a03:2880:f806:11:: - - [04/Oct/2024:12:18:25 +0100] "GET /picture.php/CS_08-04-2007_0177/categories HTTP/1.0" 200 3037 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot