πΊπΈ
TPI-Abuse
2026-06-08 05:35:11
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 01:35:07.117307 2026] [security2:error] [pid 23177:tid 23177] [client 2a03:2880:f806:13:::54000] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||mitchellart.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mitchellart.com"] [uri "/mitchellart.com"] [unique_id "aiZUi_sTHv4_xXITmRylzQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-07 15:11:41
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 11:11:38.129052 2026] [security2:error] [pid 22270:tid 22270] [client 2a03:2880:f806:13:::47966] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kiinlog.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kiinlog.com"] [uri "/kiinlog.com"] [unique_id "aiWKKjxoM4rOtxBzfxyXdQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-06 04:40:42
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 00:40:39.065882 2026] [security2:error] [pid 6018:tid 6018] [client 2a03:2880:f806:13:::50166] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nesetsv.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nesetsv.com"] [uri "/nesetsv.com"] [unique_id "aiOkx1Ruc3W5XrZ3LRtI7AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§π·
Peregrine
2026-06-06 03:21:07
(3 months ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:13:: 172.71.22.186 - - [19/May/2026:15: ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:13:: 172.71.22.186 - - [19/May/2026:15:18:46 -0300] "GET /meta.json HTTP/1.1" 404 414
show less
Bad Web Bot
πΊπΈ
gui-ying233
2026-06-06 00:09:34
(3 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-06-05 21:39:13
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 17:39:08.999867 2026] [security2:error] [pid 7518:tid 7539] [client 2a03:2880:f806:13:::37590] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gelatoconsapevole.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gelatoconsapevole.com"] [uri "/gelatoconsapevole.com"] [unique_id "aiNB_AsNKObEvCnCkCDjAAAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§π·
Peregrine
2026-06-05 03:18:49
(3 months ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:13:: 172.71.22.186 - - [19/May/2026:15: ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:13:: 172.71.22.186 - - [19/May/2026:15:18:46 -0300] "GET /meta.json HTTP/1.1" 404 414
show less
Bad Web Bot
πΊπΈ
gui-ying233
2026-06-05 00:09:01
(3 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
πΊπΈ
gui-ying233
2026-06-04 00:07:16
(3 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-06-03 14:25:29
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 10:25:22.595536 2026] [security2:error] [pid 30698:tid 30698] [client 2a03:2880:f806:13:::35544] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||amazinghydraulics.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "amazinghydraulics.com"] [uri "/amazinghydraulics.com"] [unique_id "aiA5UnVxwxaqEB8XzCzHzQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§π·
Peregrine
2026-06-03 03:26:22
(3 months ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:13:: 172.71.22.186 - - [19/May/2026:15: ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:13:: 172.71.22.186 - - [19/May/2026:15:18:46 -0300] "GET /meta.json HTTP/1.1" 404 414
show less
Bad Web Bot
πΊπΈ
gui-ying233
2026-06-03 00:06:13
(3 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
Anonymous
2026-06-01 18:28:41
(3 months ago)
[ssd5.kdns.gr] httpd-storefront-action-swarm: sites=e-anastasiadis.gr; logs=/var/log/httpd/domains/e ...
show more
[ssd5.kdns.gr] httpd-storefront-action-swarm: sites=e-anastasiadis.gr; logs=/var/log/httpd/domains/e-anastasiadis.gr.log; samples=site_wide=true | distinct_ips=43 | action_types=2
show less
Hacking
Web App Attack
π¬π§
Mendip_Defender
2026-06-01 12:58:42
(3 months ago)
2a03:2880:f806:13:: - - [01/Jun/2026:13:58:38 +0100] "GET /ashwick-parish-council/councillors-handbo ...
show more
2a03:2880:f806:13:: - - [01/Jun/2026:13:58:38 +0100] "GET /ashwick-parish-council/councillors-handbook/ HTTP/1.1" 200 16968 "-" "meta-externalads/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)"
...
show less
Bad Web Bot
πΊπΈ
gui-ying233
2026-06-01 03:25:05
(3 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot