๐บ๐ธ
xmission.com
2025-12-28 03:13:17
(6 months ago)
Blocked by UFW (TCP on 33408)
Source port: 35893
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 33408)
Source port: 35893
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0043) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
xmission.com
2025-12-23 19:33:51
(7 months ago)
Blocked by UFW (TCP on 39689)
Source port: 2439
Packet length: 80
This report (for 2a0b:f4c2:0002:0 ...
show more
Blocked by UFW (TCP on 39689)
Source port: 2439
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0043) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-12-21 09:02:57
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 21 04:02:51.938336 2025] [security2:error] [pid 23976:tid 23976] [client 2a0b:f4c2:2::43:49213] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||calogerolawfirm.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "calogerolawfirm.com"] [uri "/caloger.sql"] [unique_id "aUe3u19UJ5sg1cIeFhMHxAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-12-20 08:11:14
(7 months ago)
Blocked by UFW (TCP on 1)
Source port: 23607
Packet length: 80
This report (for 2a0b:f4c2:0002:0000 ...
show more
Blocked by UFW (TCP on 1)
Source port: 23607
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0043) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
xmission.com
2025-12-19 17:03:50
(7 months ago)
Blocked by UFW (TCP on 39689)
Source port: 11521
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 39689)
Source port: 11521
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0043) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-12-15 22:15:23
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 15 17:15:12.900104 2025] [security2:error] [pid 10667:tid 10667] [client 2a0b:f4c2:2::43:64679] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||firebelly.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "firebelly.org"] [uri "/back.sql"] [unique_id "aUCIcMByvRECQfeGCyvsWAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-11 09:54:01
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 11 04:53:52.745095 2025] [security2:error] [pid 4843:tid 4843] [client 2a0b:f4c2:2::43:9363] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||janyoors.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "janyoors.com"] [uri "/dump.sql"] [unique_id "aTqUsM3SyTsFJCNnB1HH-AAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-11 02:21:34
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 10 21:21:27.397762 2025] [security2:error] [pid 11779:tid 11779] [client 2a0b:f4c2:2::43:42167] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stationrestaurant.ca|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stationrestaurant.ca"] [uri "/ationrestaurant_com.sql"] [unique_id "aToqp8v5gl68z1PN2ctFsgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-12-08 21:41:16
(7 months ago)
Blocked by UFW (TCP on 33408)
Source port: 22521
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 33408)
Source port: 22521
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0043) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-12-07 10:15:14
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 05:15:06.969795 2025] [security2:error] [pid 7655:tid 7655] [client 2a0b:f4c2:2::43:63723] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||localpetsitters.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "localpetsitters.com"] [uri "/backupdb.sql"] [unique_id "aTVTqpEczN3KZUSIN_XFxwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-06 15:38:53
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 10:38:46.712434 2025] [security2:error] [pid 6942:tid 6942] [client 2a0b:f4c2:2::43:22709] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sbeii.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sbeii.com"] [uri "/backup_wp.sql"] [unique_id "aTROBvvRBoqslCWSv_mv1QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-06 04:21:41
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 23:21:33.946330 2025] [security2:error] [pid 13115:tid 13115] [client 2a0b:f4c2:2::43:57423] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||versallis.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "versallis.com"] [uri "/vers.sql"] [unique_id "aTOvTe2TpGy_1zMrOU1_cAAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 14:16:50
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 09:16:46.499145 2025] [security2:error] [pid 26259:tid 26281] [client 2a0b:f4c2:2::43:8481] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||wedgwoodclub.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "wedgwoodclub.com"] [uri "/backupwp.sql"] [unique_id "aTLpTuSQMKTtgKhbniG9TwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 00:14:24
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 19:14:16.959079 2025] [security2:error] [pid 15150:tid 15163] [client 2a0b:f4c2:2::43:19311] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||brucejoell.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brucejoell.com"] [uri "/backup_wp.sql"] [unique_id "aTIj2EYyIIZCNeLEf7cSvgAAAIQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 21:22:34
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::43 (tor-exit-43.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 16:22:21.285684 2025] [security2:error] [pid 25883:tid 25883] [client 2a0b:f4c2:2::43:39575] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||onlinebargainsuperstore.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "onlinebargainsuperstore.com"] [uri "/onlinebarga.sql"] [unique_id "aTH7jf6IgvLobynL9uFNAQAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack