Anonymous
2025-08-24 04:30:51
(1 year ago)
Failed login attempt detected by Fail2Ban in recidive jail
Brute-Force
πΊπΈ
agenciahypelab.com.br
2025-08-24 01:48:54
(1 year ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
πΊπΈ
TPI-Abuse
2025-06-24 00:58:50
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 23 20:58:44.235901 2025] [security2:error] [pid 3477314:tid 3477314] [client 2a0b:f4c2::17:52512] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||doctorspainmanagement.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "doctorspainmanagement.com"] [uri "/db_mysql.sql"] [unique_id "aFn4RHTKZGNVRnrXw_BJ9QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-06-21 20:13:10
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 21 16:13:02.693547 2025] [security2:error] [pid 319932:tid 319932] [client 2a0b:f4c2::17:60216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "obamaslegacy.review"] [uri "/wp-config.php.swp"] [unique_id "aFcSTqNdnmNhjdOODABAUwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-06-18 21:46:27
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 18 17:46:20.631500 2025] [security2:error] [pid 2389050:tid 2389071] [client 2a0b:f4c2::17:56366] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||howlerrock.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "howlerrock.com"] [uri "/adminer.sql"] [unique_id "aFMzrOhIE5om3uCAzGZmqAAAAEs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-06-18 19:09:48
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 18 15:09:41.797671 2025] [security2:error] [pid 709882:tid 709882] [client 2a0b:f4c2::17:26606] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jazziientertainment.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jazziientertainment.com"] [uri "/bd.sql"] [unique_id "aFMO9WlRSg393PPPUbVXeQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-06-13 22:42:47
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 13 18:42:41.398172 2025] [security2:error] [pid 2915691:tid 2915691] [client 2a0b:f4c2::17:53316] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||savingspools.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "savingspools.com"] [uri "/adminer.sql"] [unique_id "aEypYVgorq6vf8O_njQRRAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
LRob
2025-06-10 04:45:06
(1 year ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-06-05 23:00:23
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 05 19:00:15.239672 2025] [security2:error] [pid 2222637:tid 2222637] [client 2a0b:f4c2::17:4578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.bak" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "computerpartsrecovery.com"] [uri "/wp-config.bak"] [unique_id "aEIhf2CdxLr_iY7BkO6RpgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-05-15 01:23:02
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 14 21:22:57.234618 2025] [security2:error] [pid 1366863:tid 1366863] [client 2a0b:f4c2::17:45452] [client 2a0b:f4c2::17] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||madisonventures.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "madisonventures.com"] [uri "/adminer.sql"] [unique_id "aCVB8cNYQYW7RJfzAIJ9hQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-05-14 17:02:53
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 14 13:02:49.430167 2025] [security2:error] [pid 3527688:tid 3527688] [client 2a0b:f4c2::17:43730] [client 2a0b:f4c2::17] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mariedjones.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mariedjones.com"] [uri "/adminer.sql"] [unique_id "aCTMuY4u0ouuHMRfTGd42AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-05-06 22:55:36
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 06 18:55:30.735874 2025] [security2:error] [pid 3959082:tid 3959082] [client 2a0b:f4c2::17:52716] [client 2a0b:f4c2::17] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||automatebi.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "automatebi.com"] [uri "/migration.sql"] [unique_id "aBqTYmdYIhwfazyfsy2VOQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-05-05 23:48:28
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 05 19:48:22.211934 2025] [security2:error] [pid 3770542:tid 3770542] [client 2a0b:f4c2::17:17446] [client 2a0b:f4c2::17] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||crr-construction.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "crr-construction.com"] [uri "/adminer.sql"] [unique_id "aBlORgqGv3EQMoU8fS_qfAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-05-05 06:58:44
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 05 02:58:38.475084 2025] [security2:error] [pid 529379:tid 529379] [client 2a0b:f4c2::17:23374] [client 2a0b:f4c2::17] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||evolute.io|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "evolute.io"] [uri "/adminer.sql"] [unique_id "aBhhnqxxStWnYfGf2gBVkAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-24 22:18:13
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::17 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 24 18:18:06.692268 2025] [security2:error] [pid 1297804:tid 1297804] [client 2a0b:f4c2::17:4306] [client 2a0b:f4c2::17] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||ismaelcavazos.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ismaelcavazos.com"] [uri "/adminer.sql"] [unique_id "aAq4njDqRRsFFH4Ix-cgeQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack