๐บ๐ธ
TPI-Abuse
2025-03-03 09:28:48
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 03 04:28:43.663252 2025] [security2:error] [pid 6143:tid 6143] [client 2a0b:f4c2::13:26722] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||serranoscoffee.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "serranoscoffee.com"] [uri "/installer-data.sql"] [unique_id "Z8V2SyVV_Xn9dCUrtE_OwQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-02 00:48:36
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 01 19:48:30.832207 2025] [security2:error] [pid 24275:tid 24275] [client 2a0b:f4c2::13:16514] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cccorponline.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cccorponline.com"] [uri "/mysql.sql"] [unique_id "Z8Oq3uGGnT5pGiNYasWhmAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-01 11:43:55
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 01 06:43:49.379793 2025] [security2:error] [pid 21760:tid 21760] [client 2a0b:f4c2::13:40800] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.maprada92.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.maprada92.com"] [uri "/wp-content/mysql.sql"] [unique_id "Z8Ly9VuhlX4xi-V19YnyAQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-01 10:32:02
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 01 05:31:55.998882 2025] [security2:error] [pid 3608:tid 3608] [client 2a0b:f4c2::13:13244] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||miroconsulting.es|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "miroconsulting.es"] [uri "/wp-content/mysql.sql"] [unique_id "Z8LiGxRDPFos_FUZY5wNNgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-01 05:23:05
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 01 00:22:58.791566 2025] [security2:error] [pid 14493:tid 14493] [client 2a0b:f4c2::13:56036] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sbiusa.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sbiusa.org"] [uri "/mysql.sql"] [unique_id "Z8KZsk_dvjz_NaADDtUmfQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-28 16:24:31
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 28 11:24:24.377058 2025] [security2:error] [pid 2003265:tid 2003265] [client 2a0b:f4c2::13:55532] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.idahostem.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.idahostem.org"] [uri "/wp-content/mysql.sql"] [unique_id "Z8HjOEyu7X_WHEWrT_ZIzQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-27 14:15:39
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 27 09:15:31.702538 2025] [security2:error] [pid 14273:tid 14273] [client 2a0b:f4c2::13:64388] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||threewild.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "threewild.com"] [uri "/installer-data.sql"] [unique_id "Z8Bzg823j-HkO6TuA9zlwwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-26 08:15:31
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 26 03:15:25.877374 2025] [security2:error] [pid 20161:tid 20161] [client 2a0b:f4c2::13:42478] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||beercanisland.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "beercanisland.com"] [uri "/installer-data.sql"] [unique_id "Z77NnUdNM98kPBqysOt8KwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-25 10:21:35
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 25 05:21:28.134218 2025] [security2:error] [pid 18047:tid 18179] [client 2a0b:f4c2::13:39484] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cjherbalremedies.com"] [uri "/wp-config.phpnew"] [unique_id "Z72ZqGkhNlr2Qg9VliyFvwAAAQ8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-25 01:09:21
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 24 20:09:14.890163 2025] [security2:error] [pid 9843:tid 9843] [client 2a0b:f4c2::13:40256] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||swcbsa.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "swcbsa.org"] [uri "/mysql.sql"] [unique_id "Z70YOi-FRyffR54B0te9hAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-22 17:01:28
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 22 12:01:21.548980 2025] [security2:error] [pid 22237:tid 22237] [client 2a0b:f4c2::13:52668] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "photosatthebeach.com"] [uri "/wp-config.php_new2017"] [unique_id "Z7oC4Q5945bmeMla-2BcKQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-21 12:55:14
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 21 07:55:11.078722 2025] [security2:error] [pid 1011447:tid 1011447] [client 2a0b:f4c2::13:15938] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kporterdesign.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kporterdesign.com"] [uri "/mysql.sql"] [unique_id "Z7h3r5PQvz6bvoRK3e9jtAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-21 09:47:22
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 21 04:47:17.914709 2025] [security2:error] [pid 10648:tid 10770] [client 2a0b:f4c2::13:3174] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||arizonasolutionsgroup.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "arizonasolutionsgroup.com"] [uri "/mysql.sql"] [unique_id "Z7hLpeOu3d8QIrMqCYCK0AAAARY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-21 05:16:15
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 21 00:16:09.393346 2025] [security2:error] [pid 2776319:tid 2776319] [client 2a0b:f4c2::13:50216] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||robertgregorybrowne.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "robertgregorybrowne.com"] [uri "/mysql.sql"] [unique_id "Z7gMGWA4_F1jRck6ke7_vQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-21 00:10:23
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::13 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 20 19:10:14.575654 2025] [security2:error] [pid 24373:tid 24373] [client 2a0b:f4c2::13:55230] [client 2a0b:f4c2::13] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||webersource.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "webersource.com"] [uri "/mysql.sql"] [unique_id "Z7fEZs2FCDCWvnCWPUyclAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack