๐บ๐ธ
xmission.com
2025-07-23 00:05:30
(1 year ago)
Blocked by UFW (TCP on 48171)
Source port: 31625
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 48171)
Source port: 31625
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0045) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
xmission.com
2025-07-22 00:55:02
(1 year ago)
Blocked by UFW (TCP on 59660)
Source port: 33463
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 59660)
Source port: 33463
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0045) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
xmission.com
2025-07-21 05:25:49
(1 year ago)
Blocked by UFW (TCP on 54527)
Source port: 63319
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 54527)
Source port: 63319
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0045) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-07-18 20:40:55
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 18 16:40:48.727608 2025] [security2:error] [pid 20869:tid 20869] [client 2a0b:f4c2:2::45:23783] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||d365geek.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "d365geek.com"] [uri "/adminer.sql"] [unique_id "aHqxUH6fFTKg2kqcqR5-zAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-16 16:16:21
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 16 12:16:16.382492 2025] [security2:error] [pid 25613:tid 25613] [client 2a0b:f4c2:2::45:28725] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||investorsgeorgia.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "investorsgeorgia.com"] [uri "/uploads/dump.sql"] [unique_id "aHfQUGzlYpvvFhMbTbekHAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-07-13 10:54:46
(1 year ago)
Blocked by UFW (TCP on 57680)
Source port: 34111
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 57680)
Source port: 34111
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0045) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
xmission.com
2025-07-12 01:42:38
(1 year ago)
Blocked by UFW (TCP on 61496)
Source port: 6435
Packet length: 80
This report (for 2a0b:f4c2:0002:0 ...
show more
Blocked by UFW (TCP on 61496)
Source port: 6435
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0045) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐จ๐ณ
ThreatBook.io
2025-05-16 23:01:41
(1 year ago)
2025-05-16 06:30:23 http://d3ivqzdymldr3c.cloudfront.net/
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-14 05:25:23
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 14 01:25:20.151234 2025] [security2:error] [pid 775986:tid 775986] [client 2a0b:f4c2:2::45:14085] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||technesa.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "technesa.com"] [uri "/bd.sql"] [unique_id "aCQpQN2cNm_KYum0VayHBQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-11 21:07:08
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 11 17:07:01.142584 2025] [security2:error] [pid 2241944:tid 2242045] [client 2a0b:f4c2:2::45:9861] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.ahsdistance.org"] [uri "/.git/config"] [unique_id "aCERdWbwsjetIjFrOD5tWgAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-07 15:35:02
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 07 11:34:56.872505 2025] [security2:error] [pid 3401210:tid 3401232] [client 2a0b:f4c2:2::45:22575] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||tomithai.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "tomithai.com"] [uri "/bd.sql"] [unique_id "aBt9oFUpeNyo8aUMKXJiXwAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-07 15:09:06
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 07 11:08:59.231752 2025] [security2:error] [pid 3550711:tid 3550711] [client 2a0b:f4c2:2::45:65095] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||daisydoesoap.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "daisydoesoap.com"] [uri "/migration.sql"] [unique_id "aBt3i5WhDjf1zMSn0JrFwgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-06 01:58:35
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 05 21:58:29.172596 2025] [security2:error] [pid 3126776:tid 3126776] [client 2a0b:f4c2:2::45:61757] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||hydrometal-js.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hydrometal-js.com"] [uri "/adminer.sql"] [unique_id "aBlsxc0-_34xBNCItrdgCwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-05 08:42:46
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 05 04:42:43.410868 2025] [security2:error] [pid 1152585:tid 1152585] [client 2a0b:f4c2:2::45:53017] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||fractalsky.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "fractalsky.com"] [uri "/adminer.sql"] [unique_id "aBh6A16-SW7hcp5c0QFOxgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-05 04:05:11
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 05 00:05:06.233169 2025] [security2:error] [pid 675699:tid 675774] [client 2a0b:f4c2:2::45:35111] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||alancphotography.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "alancphotography.com"] [uri "/bd.sql"] [unique_id "aBg48i-LfOnbumDLyEiDvAAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack