๐บ๐ธ
xmission.com
2026-08-21 06:11:35
(6 hours ago)
Blocked by UFW (TCP on 38722)
Source port: 9100
Packet length: 2291
This report (for 2a03:4000:0006 ...
show more
Blocked by UFW (TCP on 38722)
Source port: 9100
Packet length: 2291
This report (for 2a03:4000:0006:102b:c457:f3ff:feb0:a6d0) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐น๐ท
neron
2026-07-26 15:50:51
(3 weeks ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
๐บ๐ธ
xmission.com
2026-07-21 12:37:34
(1 month ago)
Blocked by UFW (TCP on 56508)
Source port: 9100
Packet length: 2293
This report (for 2a03:4000:0006 ...
show more
Blocked by UFW (TCP on 56508)
Source port: 9100
Packet length: 2293
This report (for 2a03:4000:0006:102b:c457:f3ff:feb0:a6d0) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
xmission.com
2026-07-05 10:28:19
(1 month ago)
Blocked by UFW (TCP on 49250)
Source port: 9000
Packet length: 2297
This report (for 2a03:4000:0006 ...
show more
Blocked by UFW (TCP on 49250)
Source port: 9000
Packet length: 2297
This report (for 2a03:4000:0006:102b:c457:f3ff:feb0:a6d0) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฉ๐ช
Savvii
2026-06-10 09:02:21
(2 months ago)
20 attempts against mh-misbehave-ban on web-new
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 11:36:22
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 07:36:15.039266 2026] [security2:error] [pid 326:tid 326] [client 2a03:4000:6:102b:c457:f3ff:feb0:a6d0:56512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.freemanfoundationcle.org"] [uri "/.git/config"] [unique_id "ah7AL5z81eIiYzLqdsLARQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 05:18:54
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 01:18:48.383120 2026] [security2:error] [pid 28127:tid 28127] [client 2a03:4000:6:102b:c457:f3ff:feb0:a6d0:54908] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||christianconsulting.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "christianconsulting.net"] [uri "/backup_wp.sql"] [unique_id "agAVOJJ4ysWZpS6B4xc_UQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 01:09:47
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 21:09:39.132651 2026] [security2:error] [pid 21428:tid 21428] [client 2a03:4000:6:102b:c457:f3ff:feb0:a6d0:27890] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||areafinancieratf.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "areafinancieratf.com"] [uri "/cieratf_com.sql"] [unique_id "af6JU-eeOUzzFS6CyXcnrwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-26 21:03:35
(3 months ago)
2026-04-26 08:00:44,453 fail2ban.actions [7718]: NOTICE [tor] Ban 2a03:4000:6:102b:c457:f3ff ...
show more
2026-04-26 08:00:44,453 fail2ban.actions [7718]: NOTICE [tor] Ban 2a03:4000:6:102b:c457:f3ff:feb0:a6d0
2026-04-26 12:01:36,047 fail2ban.actions [7718]: NOTICE [tor] Ban 2a03:4000:6:102b:c457:f3ff:feb0:a6d0
2026-04-26 18:01:33,733 fail2ban.actions [7718]: NOTICE [tor] Ban 2a03:4000:6:102b:c457:f3ff:feb0:a6d0
2026-04-26 21:01:31,194 fail2ban.actions [7718]: NOTICE [tor] Ban 2a03:4000:6:102b:c457:f3ff:feb0:a6d0
2026-04-27 00:03:28,674 fail2ban.actions [7718]: NOTICE [tor] Ban 2a03:4000:6:102b:c457:f3ff:feb0:a6d0
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-04-26 09:54:46
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 26 05:54:38.344562 2026] [security2:error] [pid 31700:tid 31700] [client 2a03:4000:6:102b:c457:f3ff:feb0:a6d0:33128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.scrood.fm"] [uri "/.git/config"] [unique_id "ae3g3m8cxGr8GgqtFkTRsQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-03-26 20:34:00
(4 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-02 13:18:30
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 02 08:18:25.235197 2026] [security2:error] [pid 22403:tid 22403] [client 2a03:4000:6:102b:c457:f3ff:feb0:a6d0:60920] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.lemoulinavent.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.lemoulinavent.org"] [uri "/www_wp1.sql"] [unique_id "aaWOIQvGvrRmhRtgeDDxvAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-24 06:23:26
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 24 01:23:19.133485 2026] [security2:error] [pid 23262:tid 23262] [client 2a03:4000:6:102b:c457:f3ff:feb0:a6d0:38078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.nysasports.com"] [uri "/.git/config"] [unique_id "aZ1D18Zy-mpEEzjS34mTNgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-23 03:42:17
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 22 22:42:11.997278 2026] [security2:error] [pid 27726:tid 27726] [client 2a03:4000:6:102b:c457:f3ff:feb0:a6d0:59314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.cicone.net"] [uri "/.git/config"] [unique_id "aZvMk3Vzgbph6XA9hAalPAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-22 10:06:37
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a03:4000:6:102b:c457:f3ff:feb0:a6d0 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 22 05:06:30.865679 2026] [security2:error] [pid 889:tid 999] [client 2a03:4000:6:102b:c457:f3ff:feb0:a6d0:50042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.blastfuture.com"] [uri "/.git/config"] [unique_id "aZrVJuj23NJ8xoy4zk3vBQAAAQg"]
show less
Brute-Force
Bad Web Bot
Web App Attack