πΊπΈ
TPI-Abuse
2025-11-21 15:06:15
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 21 10:06:10.899663 2025] [security2:error] [pid 3634388:tid 3634463] [client 2a03:2880:f806:2f:::35560] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||businessbasicsinstitute.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "businessbasicsinstitute.com"] [uri "/businessbasicsinstitute.com"] [unique_id "aSB_4uw5aWP47CkvtOu5gAAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
mrcrassi
2025-11-20 04:58:38
(9 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /produto/mola-hidraulica-aerea/
UA: meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-11-20 02:08:18
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 19 21:08:14.422020 2025] [security2:error] [pid 13726:tid 13726] [client 2a03:2880:f806:2f:::54396] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||star-discgolf.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "star-discgolf.com"] [uri "/star-discgolf.com"] [unique_id "aR54DoHvvuCjPhKDU16yYAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Roderic
2025-11-19 06:38:52
(9 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-11-14 01:16:50
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 20:16:46.984634 2025] [security2:error] [pid 29565:tid 29565] [client 2a03:2880:f806:2f:::58598] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||baselinesc.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "baselinesc.com"] [uri "/baselinesc.com"] [unique_id "aRaC_l03p8qXyRogvijUTQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-13 22:25:43
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 17:25:36.875460 2025] [security2:error] [pid 28604:tid 28604] [client 2a03:2880:f806:2f:::41932] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||robertgregorybrowne.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "robertgregorybrowne.com"] [uri "/robertgregorybrowne.com"] [unique_id "aRZa4BY3g3y2GN4KidZJlgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Roderic
2025-11-12 17:47:11
(9 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
π©πͺ
Didier Lagaert
2025-11-11 18:29:08
(9 months ago)
lie-88 : Bloc AI bots=>/sitemap.html(meta-external)
Hacking
π©πͺ
conseilgouz
2025-11-11 18:16:29
(9 months ago)
doe-88 : Bloc AI bots=>/sitemap.html(meta-external)
Hacking
πΊπΈ
TPI-Abuse
2025-11-04 18:01:57
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 04 13:01:49.734468 2025] [security2:error] [pid 30848:tid 30848] [client 2a03:2880:f806:2f:::36460] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||adonamusic.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "adonamusic.com"] [uri "/adonamusic.com"] [unique_id "aQo_jWcJKasqSBG6g-hkVAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-10-25 15:58:37
(9 months ago)
(mod_security) mod_security (id:213060) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:213060) triggered by 2a03:2880:f806:2f:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 25 11:58:33.882799 2025] [security2:error] [pid 14749:tid 14749] [client 2a03:2880:f806:2f:::52880] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i)((?:\\\\bx(?:link:href|html|mlns)|!ENTITY\\\\b.{0,399}?\\\\b(?:SYSTEM|PUBLIC)|\\\\bdata:text\\\\/html))" at ARGS:_bd_prev_page. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "170"] [id "213060"] [rev "7"] [msg "COMODO WAF: XSS Filter - Category 3: Attribute Vector||essentialee.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "essentialee.com"] [uri "/"] [unique_id "aPzzqXxqU--ihpXR4WJTCQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Roderic
2025-10-17 19:15:10
(10 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
π³π±
Roderic
2025-09-26 04:28:01
(10 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
π³π±
Roderic
2025-09-22 02:05:31
(11 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
π³π±
Roderic
2025-09-19 10:31:17
(11 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot