๐บ๐ธ
TPI-Abuse
2025-11-09 17:30:24
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 09 12:30:21.036126 2025] [security2:error] [pid 17884:tid 17884] [client 2a03:2880:f806:45:::35528] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.shorelineshowerdoor.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.shorelineshowerdoor.com"] [uri "/shorelineshowerdoor.com"] [unique_id "aRDPrRKkJWTjPxNCdbl4nAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
conseilgouz
2025-11-08 05:29:35
(10 months ago)
ece-88 : Bloc AI bots=>/news_sitemap.xml(meta-external)
Hacking
๐บ๐ธ
LotPhantom
2025-11-06 07:30:08
(10 months ago)
2a03:2880:f806:45:: - - [06/Nov/2025:07:29:07 +0000] "GET /SiteMap.aspx HTTP/2.0" 404 9 "-" "meta-ex ...
show more
2a03:2880:f806:45:: - - [06/Nov/2025:07:29:07 +0000] "GET /SiteMap.aspx HTTP/2.0" 404 9 "-" "meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)"
...
show less
Web App Attack
๐ซ๐ท
Voodoon229
2025-11-05 09:33:00
(10 months ago)
Vulnerable PHP code search blocked.
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-04 03:25:01
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 22:24:56.464956 2025] [security2:error] [pid 29049:tid 29049] [client 2a03:2880:f806:45:::34580] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||amazinghydraulics.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "amazinghydraulics.com"] [uri "/amazinghydraulics.com"] [unique_id "aQlyCLX488Dcrl_n4bvbYAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-29 23:02:31
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 29 19:02:28.181541 2025] [security2:error] [pid 19044:tid 19044] [client 2a03:2880:f806:45:::45298] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.fractalsky.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fractalsky.com"] [uri "/blackhorrormovie.com"] [unique_id "aQKdBHHPlGaL-QheWhVssgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-29 18:54:38
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 29 14:54:33.736808 2025] [security2:error] [pid 21127:tid 21127] [client 2a03:2880:f806:45:::42780] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||blockadegc.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "blockadegc.com"] [uri "/blockadegc.com"] [unique_id "aQJi6eq8aVdEDP1FNbq06QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Roderic
2025-10-21 08:56:02
(10 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐ณ๐ฑ
Roderic
2025-10-17 07:56:36
(11 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-10-10 06:43:24
(11 months ago)
(mod_security) mod_security (id:210492) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 10 02:43:19.155549 2025] [security2:error] [pid 3676:tid 3676] [client 2a03:2880:f806:45:::58210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "genesis-castle.com"] [uri "/wp-config.php"] [unique_id "aOirB0EMmeWP60DuPPfbaAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
conseilgouz
2025-09-30 07:23:00
(11 months ago)
sae-88 : Bloc AI bots=>/index.html(meta-external)
Hacking
๐ณ๐ฑ
Roderic
2025-09-16 03:56:51
(1 year ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐ณ๐ฑ
Roderic
2025-09-14 00:29:24
(1 year ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-09-11 07:24:56
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:45:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 11 03:24:52.583118 2025] [security2:error] [pid 27551:tid 27551] [client 2a03:2880:f806:45:::35718] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.vangentholding.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.vangentholding.com"] [uri "/wp-json/wp/v2/users/302548"] [unique_id "aMJ5RPlqehpFhg9yCj_tVQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack