๐บ๐ธ
TPI-Abuse
2025-12-08 10:41:13
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 08 05:41:09.959362 2025] [security2:error] [pid 5099:tid 5099] [client 2a0b:f4c2:2::59:25349] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||salernospizza.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "salernospizza.com"] [uri "/salern.sql"] [unique_id "aTarRYWOhg7WSlLN-4KMqwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-08 02:37:54
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 21:37:48.499907 2025] [security2:error] [pid 25510:tid 25510] [client 2a0b:f4c2:2::59:59673] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||systemcapacityoptimization.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "systemcapacityoptimization.com"] [uri "/systemcapacity.sql"] [unique_id "aTY5_OS51RsvhaQw2vyWxgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-07 04:40:27
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 23:40:20.465048 2025] [security2:error] [pid 11679:tid 11679] [client 2a0b:f4c2:2::59:39073] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gasoilliquidsdaily.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gasoilliquidsdaily.com"] [uri "/g.sql"] [unique_id "aTUFNPEqmgyd7hhBN4s1PQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-06 04:25:47
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 23:25:39.986109 2025] [security2:error] [pid 4761:tid 4767] [client 2a0b:f4c2:2::59:45209] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||marilynoakes.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "marilynoakes.com"] [uri "/bck.sql"] [unique_id "aTOwQ5Tya4enqqGlcUwRegAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 22:53:47
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 17:53:40.920921 2025] [security2:error] [pid 9593:tid 9593] [client 2a0b:f4c2:2::59:56675] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cuul.co|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cuul.co"] [uri "/cuul_com.sql"] [unique_id "aTNidOttoGbkVxr57Q4e8gAAAGI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 08:28:33
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 03:28:23.383679 2025] [security2:error] [pid 17264:tid 17264] [client 2a0b:f4c2:2::59:61453] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||flutepraise.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "flutepraise.com"] [uri "/backupwp.sql"] [unique_id "aTKXp7FDZceACrXr6ffzegAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 04:04:37
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 23:04:30.309499 2025] [security2:error] [pid 17862:tid 17862] [client 2a0b:f4c2:2::59:3573] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||frelsburg.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "frelsburg.com"] [uri "/g_com.sql"] [unique_id "aTJZznKRaaFWM0vksr9fyAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 23:29:10
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 18:28:56.781623 2025] [security2:error] [pid 11039:tid 11039] [client 2a0b:f4c2:2::59:51553] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||integrabroadcast.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "integrabroadcast.com"] [uri "/abroadcast.sql"] [unique_id "aTIZOEex9NoypWxiBUZcDQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 10:59:06
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 05:59:01.755273 2025] [security2:error] [pid 10731:tid 10746] [client 2a0b:f4c2:2::59:57707] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dontbeajerklikeyourwork.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dontbeajerklikeyourwork.com"] [uri "/likeyourwork.sql"] [unique_id "aTFpdefCVjY1lUbFLFs1xQAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-12-02 02:09:43
(7 months ago)
Blocked by UFW (TCP on 60141)
Source port: 47911
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 60141)
Source port: 47911
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0059) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
xmission.com
2025-11-25 10:30:26
(8 months ago)
Blocked by UFW (TCP on 43788)
Source port: 27541
Packet length: 80
This report (for 2a0b:f4c2:0002: ...
show more
Blocked by UFW (TCP on 43788)
Source port: 27541
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0059) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-11-23 07:02:34
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 02:02:29.161189 2025] [security2:error] [pid 6758:tid 6758] [client 2a0b:f4c2:2::59:10697] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||marianozaro.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "marianozaro.com"] [uri "/arianozaro_com.sql"] [unique_id "aSKxhQeUmH67730WtCTkiwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-11-23 00:32:19
(8 months ago)
Blocked by UFW (TCP on 11110)
Source port: 3983
Packet length: 80
This report (for 2a0b:f4c2:0002:0 ...
show more
Blocked by UFW (TCP on 11110)
Source port: 3983
Packet length: 80
This report (for 2a0b:f4c2:0002:0000:0000:0000:0000:0059) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-11-21 04:38:37
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 20 23:38:32.030142 2025] [security2:error] [pid 16665:tid 16665] [client 2a0b:f4c2:2::59:51389] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mccompu.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mccompu.com"] [uri "/mc.sql"] [unique_id "aR_syKYKwvjE1_8ULW1W2AAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-15 11:10:11
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::59 (tor-exit-59.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 15 06:10:05.341753 2025] [security2:error] [pid 11994:tid 11994] [client 2a0b:f4c2:2::59:45059] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.transcapitalsolutions.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.transcapitalsolutions.com"] [uri "/trans.sql"] [unique_id "aRhfjf7KEWsc7AwObhloqAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack