Anonymous
2026-06-18 10:17:04
(4 days ago)
[ns3.backorder.gr] httpd-noisy-crawler-swarm: sites=gosolar.gr; logs=/var/log/httpd/domains/gosolar. ...
show more
[ns3.backorder.gr] httpd-noisy-crawler-swarm: sites=gosolar.gr; logs=/var/log/httpd/domains/gosolar.gr.log; samples=crawler=meta-webindexer | window=5m | distinct_ips=61
show less
Hacking
Web App Attack
๐ฉ๐ช
conseilgouz
2026-06-13 13:09:37
(1 week ago)
sle-88 : Bloc AI bots=>/robots.txt(facebookexternalhit)
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-12 07:17:39
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 03:17:31.231367 2026] [security2:error] [pid 31092:tid 31092] [client 2a03:2880:f806:52:::60156] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||swindon-itf.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "swindon-itf.com"] [uri "/swindon-itf.com"] [unique_id "aiuyi5Jws8L8mmXYxzwlUQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 00:52:00
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 20:51:54.073928 2026] [security2:error] [pid 760:tid 760] [client 2a03:2880:f806:52:::65094] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||darkalleyproductions.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "darkalleyproductions.com"] [uri "/darkalleyproductions.com"] [unique_id "aitYKvHGN5rFKo0U2JAXpgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 01:11:05
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 21:10:59.145790 2026] [security2:error] [pid 10893:tid 10893] [client 2a03:2880:f806:52:::48232] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.davesievers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.davesievers.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "aioLI7TrqnFg9AI_MiUZowAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
gui-ying233
2026-06-06 00:22:00
(2 weeks ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-05 21:21:25
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 17:21:21.579271 2026] [security2:error] [pid 30900:tid 30900] [client 2a03:2880:f806:52:::64290] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cpking.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cpking.com"] [uri "/cpking.com"] [unique_id "aiM90YxbF8NI3f02gAxbJwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
gui-ying233
2026-06-05 00:08:51
(2 weeks ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-06-04 00:06:38
(2 weeks ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-03 02:57:02
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:52:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 22:56:56.216156 2026] [security2:error] [pid 27230:tid 27230] [client 2a03:2880:f806:52:::49722] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||automationmp.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "automationmp.com"] [uri "/automationmp.com"] [unique_id "ah-X-J-DBc4S7f7KC4YpJgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
gui-ying233
2026-06-03 00:05:55
(2 weeks ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
Anonymous
2026-06-01 18:28:22
(2 weeks ago)
[ssd5.kdns.gr] httpd-storefront-action-swarm: sites=e-anastasiadis.gr; logs=/var/log/httpd/domains/e ...
show more
[ssd5.kdns.gr] httpd-storefront-action-swarm: sites=e-anastasiadis.gr; logs=/var/log/httpd/domains/e-anastasiadis.gr.log; samples=site_wide=true | distinct_ips=43 | action_types=2
show less
Hacking
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-06-01 09:17:30
(3 weeks ago)
2a03:2880:f806:52:: - - [01/Jun/2026:10:17:27 +0100] "GET / HTTP/1.1" 200 16658 "-" "meta-externalad ...
show more
2a03:2880:f806:52:: - - [01/Jun/2026:10:17:27 +0100] "GET / HTTP/1.1" 200 16658 "-" "meta-externalads/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)"
...
show less
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-06-01 03:24:58
(3 weeks ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-05-31 02:43:12
(3 weeks ago)
meta-webindexer/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)
Bad Web Bot