๐บ๐ธ
TPI-Abuse
2026-03-03 01:38:42
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 02 20:38:34.835731 2026] [security2:error] [pid 17560:tid 17560] [client 2a03:2880:f806:34:::21201] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stickittomebuttons.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stickittomebuttons.com"] [uri "/stickittomebuttons.com"] [unique_id "aaY7mji8e8H4AGgxhP2bQwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-02 02:28:05
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 01 21:28:00.221657 2026] [security2:error] [pid 26294:tid 26294] [client 2a03:2880:f806:34:::41301] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||shinynew.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "shinynew.com"] [uri "/shinynew.com"] [unique_id "aaT1sHa_-g1AAycu8c6iPAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-25 00:26:49
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 24 19:26:44.588146 2026] [security2:error] [pid 8343:tid 8343] [client 2a03:2880:f806:34:::51183] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||book-arts.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "book-arts.com"] [uri "/book-arts.com"] [unique_id "aZ5BxJBMumT-mIloE5y5gAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-21 20:56:51
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 21 15:56:46.232620 2026] [security2:error] [pid 7862:tid 7862] [client 2a03:2880:f806:34:::33985] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||walkerweb.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "walkerweb.com"] [uri "/walkerweb.com"] [unique_id "aZocDj4N5cO3c-0SjjaLcQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-20 20:42:43
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 20 15:42:37.355983 2026] [security2:error] [pid 29898:tid 29898] [client 2a03:2880:f806:34:::53211] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kclawoffice.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kclawoffice.com"] [uri "/kclawoffice.com"] [unique_id "aZjHPSvAGqfPTIXhZ5_g8wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 06:36:07
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 19 01:36:03.206841 2026] [security2:error] [pid 31527:tid 31527] [client 2a03:2880:f806:34:::50493] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||z-industrial.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "z-industrial.com"] [uri "/z-industrial.com"] [unique_id "aZavU6IHABLAF0bCyWFzOwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 23:51:25
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 18:51:18.833556 2026] [security2:error] [pid 5927:tid 5927] [client 2a03:2880:f806:34:::41019] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nesetsv.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nesetsv.com"] [uri "/nesetsv.com"] [unique_id "aZZQdjnmlX4wUVCY_EpMrwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 19:03:20
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 14:03:13.390284 2026] [security2:error] [pid 3109:tid 3109] [client 2a03:2880:f806:34:::53853] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.sargous.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.sargous.com"] [uri "/sargous.com"] [unique_id "aZYM8eH06-2HVM9vN4qeWQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 00:19:57
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:34:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 17 19:19:49.765228 2026] [security2:error] [pid 13810:tid 13810] [client 2a03:2880:f806:34:::46733] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||caddydad.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "caddydad.com"] [uri "/caddydad.com"] [unique_id "aZUFpYkMIrrvvFozfGWiVgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Roderic
2025-12-05 02:03:20
(8 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐บ๐ธ
LotPhantom
2025-12-04 00:51:44
(8 months ago)
2a03:2880:f806:34:: - - [04/Dec/2025:00:50:43 +0000] "GET /SiteMap.aspx HTTP/2.0" 404 9 "-" "meta-ex ...
show more
2a03:2880:f806:34:: - - [04/Dec/2025:00:50:43 +0000] "GET /SiteMap.aspx HTTP/2.0" 404 9 "-" "meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)"
...
show less
Web App Attack
๐ซ๐ท
conseilgouz
2025-12-03 18:13:48
(8 months ago)
sae-88 : Bloc AI bots=>/index.html(meta-external)
Hacking
Anonymous
2025-12-03 12:53:46
(8 months ago)
[Wed Dec 03 13:42:08.329640 2025] [authz_core:error] [pid 2471489:tid 2471509] [remote 2a03:2880:f80 ...
show more
[Wed Dec 03 13:42:08.329640 2025] [authz_core:error] [pid 2471489:tid 2471509] [remote 2a03:2880:f806:34:::37368] AH01630: client denied by server configuration: /var/www/10137/exklusive-fincas-mallorca.de/suche.html [Wed Dec 03 13:50:28.444778 2025] [authz_core:error] [pid 2471345:tid 2748101] [remote 2a03:2880:f806:34:::55862] AH01630: client denied by server configuration: /var/www/10137/exklusive-fincas-mallorca.de/suche.html [Wed Dec 03 13:53:45.619661 2025] [authz_core:error] [pid 2471489:tid 2471490] [remote 2a03:2880:f806:34:::54330] AH01630: client denied by server configuration: /var/www/10137/exklusive-fincas-mallorca.de/suche.html
show less
Web Spam
Blog Spam
Brute-Force
Web App Attack
๐ณ๐ฑ
crypto i trust, hold i must
2025-12-03 10:27:39
(8 months ago)
Automated vulnerability scanner detected. User-Agent: meta-externalagent/1.1 (+https://developers.fa ...
show more
Automated vulnerability scanner detected. User-Agent: meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
show less
Bad Web Bot
Web App Attack
Anonymous
2025-12-02 23:59:50
(8 months ago)
[Wed Dec 03 00:56:56.898563 2025] [authz_core:error] [pid 2471489:tid 2471497] [remote 2a03:2880:f80 ...
show more
[Wed Dec 03 00:56:56.898563 2025] [authz_core:error] [pid 2471489:tid 2471497] [remote 2a03:2880:f806:34:::34992] AH01630: client denied by server configuration: /var/www/10136/competa-online.de/vdfa-mitglieder.htm [Wed Dec 03 00:59:28.108194 2025] [authz_core:error] [pid 2471489:tid 2471503] [remote 2a03:2880:f806:34:::59076] AH01630: client denied by server configuration: /var/www/10137/exklusive-fincas-mallorca.de/suche.html [Wed Dec 03 00:59:50.538425 2025] [authz_core:error] [pid 2471489:tid 2471495] [remote 2a03:2880:f806:34:::39372] AH01630: client denied by server configuration: /var/www/10136/competa-online.de/free/fincas/archez/moreno
show less
Web Spam
Blog Spam
Brute-Force
Web App Attack