๐ณ๐ฑ
BlueWire Hosting
2025-08-29 14:10:23
(1 year ago)
Probing for application vulnerabilities
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-29 06:59:38
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 29 02:59:33.644532 2025] [security2:error] [pid 31822:tid 31822] [client 2a0b:f4c2::18:12514] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eileensharaga.com"] [uri "/wp-config.php.txt.zip"] [unique_id "aLFP1YxnpytnoyvOXlP0PQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-28 22:02:49
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 28 18:02:45.457047 2025] [security2:error] [pid 22343:tid 22343] [client 2a0b:f4c2::18:22776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "salernospizza.com"] [uri "/wp-config.php.zip"] [unique_id "aLDSBYI9bAs8u9ZjCcqOlgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-28 16:53:26
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 28 12:53:22.045362 2025] [security2:error] [pid 27061:tid 27061] [client 2a0b:f4c2::18:6672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marianozaro.com"] [uri "/wp-config.php.tar.gz"] [unique_id "aLCJgmhc4IPbe3tR7e323QAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-28 16:09:04
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 28 12:08:58.866916 2025] [security2:error] [pid 2919:tid 2919] [client 2a0b:f4c2::18:31840] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jessicabaer.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jessicabaer.com"] [uri "/backups.sql"] [unique_id "aLB_Gmzdj4FK7cHIX3oEXAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
on-com
2025-08-28 12:27:53
(1 year ago)
URL scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-28 10:23:48
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 28 06:23:43.311152 2025] [security2:error] [pid 9218:tid 9218] [client 2a0b:f4c2::18:28098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cycontechnology.com"] [uri "/wp-config.php.zip"] [unique_id "aLAuL5c4xnWUa9s1OxjEsQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-27 18:06:40
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 27 14:06:32.362907 2025] [security2:error] [pid 3647:tid 3647] [client 2a0b:f4c2::18:21242] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||viszin.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "viszin.com"] [uri "/wp.sql"] [unique_id "aK9JKO9dvOEFwH5qmJSiPwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-21 19:23:24
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 21 15:23:18.224599 2025] [security2:error] [pid 26953:tid 26953] [client 2a0b:f4c2::18:10368] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ketsuri.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ketsuri.com"] [uri "/etsuri_2023.sql"] [unique_id "aKdyJjVjxjfBCQRc5CXXaQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-21 11:02:49
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 21 07:02:43.183475 2025] [security2:error] [pid 2173:tid 2173] [client 2a0b:f4c2::18:31488] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||automatebi.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "automatebi.com"] [uri "/tebi.sql"] [unique_id "aKb806QnR5g5nl_0jYTB2gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-20 21:06:08
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 20 17:06:03.349226 2025] [security2:error] [pid 21332:tid 21332] [client 2a0b:f4c2::18:63054] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||67ronin.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "67ronin.com"] [uri "/n_com.sql"] [unique_id "aKY4u_tRbmoUyZGpooIOaQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-16 02:48:07
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 15 22:48:02.310825 2025] [security2:error] [pid 13302:tid 13302] [client 2a0b:f4c2::18:50232] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||bonnesfrequences.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bonnesfrequences.com"] [uri "/bonnesfre.sql"] [unique_id "aJ_xYkW9aFIHXIADWicYBwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-24 14:14:26
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 24 10:14:20.659604 2025] [security2:error] [pid 3190428:tid 3190428] [client 2a0b:f4c2::18:11562] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||coolerboxes.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "coolerboxes.com"] [uri "/wp.sql"] [unique_id "aFqyvEHlMtYvw6ojO3hnsQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2025-06-22 11:59:33
(1 year ago)
(mod_security) mod_security (id:949110) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:949110) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-22 10:21:55
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::18 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 22 06:21:48.980936 2025] [security2:error] [pid 412576:tid 412576] [client 2a0b:f4c2::18:61898] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||globalsolutions.technology|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "globalsolutions.technology"] [uri "/globalso.sql"] [unique_id "aFfZPJiBsSkeJwhoW9TuVAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack