๐บ๐ธ
TPI-Abuse
2026-06-10 04:50:19
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 00:50:12.980681 2026] [security2:error] [pid 27373:tid 27373] [client 2a03:2880:f806:36:::22930] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.civilwarzone.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.civilwarzone.com"] [uri "/~site/Scripts_ExternalRedirect/ExternalRedirect.dll"] [unique_id "aijtBB-V6EAeHbJyLaU60QAAACI"], referer: https://www.civilwarzone.com/GeorgeThomas.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 15:15:07
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 11:14:58.258863 2026] [security2:error] [pid 5129:tid 5129] [client 2a03:2880:f806:36:::36120] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||adonamusic.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "adonamusic.com"] [uri "/adonamusic.com"] [unique_id "aiQ5cpNOzQzd2EKPfIDBaQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
gui-ying233
2026-06-06 00:22:21
(2 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-05 08:33:46
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 04:33:38.596915 2026] [security2:error] [pid 14437:tid 14437] [client 2a03:2880:f806:36:::30770] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||star-discgolf.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "star-discgolf.com"] [uri "/star-discgolf.com"] [unique_id "aiKJ4t7MdrfJmJCrna49PgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
gui-ying233
2026-06-05 00:07:59
(2 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-06-04 00:05:58
(2 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-03 21:47:59
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 17:47:53.222932 2026] [security2:error] [pid 31935:tid 31935] [client 2a03:2880:f806:36:::32908] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||roselockecasting.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "roselockecasting.com"] [uri "/roselockecasting.com"] [unique_id "aiChCcxLCJBDf2l-_6SRFwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 16:40:28
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 12:40:20.777530 2026] [security2:error] [pid 8518:tid 8545] [client 2a03:2880:f806:36:::39792] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||giorgiogranozio.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "giorgiogranozio.com"] [uri "/giorgiogranozio.com"] [unique_id "aiBY9DG851-ijmor7gKoSgAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 04:38:22
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:36:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 00:38:16.376642 2026] [security2:error] [pid 12978:tid 12978] [client 2a03:2880:f806:36:::44942] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||rockwaychiropractic.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "rockwaychiropractic.com"] [uri "/rockwaychiropractic.com"] [unique_id "ah-vuFwELngZT5Dt5yjOnwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
gui-ying233
2026-06-03 00:03:01
(2 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-06-01 03:25:00
(2 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐ง๐ท
Peregrine
2026-06-01 03:18:53
(2 months ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:36:: 104.22.24.103 - - [15/May/2026:06: ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:36:: 104.22.24.103 - - [15/May/2026:06:32:19 -0300] "GET /meta.json HTTP/1.1" 404 414
show less
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-05-31 02:44:21
(2 months ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
Anonymous
2026-05-30 14:58:06
(2 months ago)
(resource-exhaustion) Server-wide Bot Block Heavy URL: filter_ 2a03:2880:f806:36:: (US/United States ...
show more
(resource-exhaustion) Server-wide Bot Block Heavy URL: filter_ 2a03:2880:f806:36:: (US/United States/-)
show less
Hacking
๐ง๐ท
Peregrine
2026-05-30 03:24:38
(2 months ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:36:: 104.22.24.103 - - [15/May/2026:06: ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: 2a03:2880:f806:36:: 104.22.24.103 - - [15/May/2026:06:32:19 -0300] "GET /meta.json HTTP/1.1" 404 414
show less
Bad Web Bot