🇺🇸
TPI-Abuse
2025-10-11 00:23:54
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 10 20:23:48.654363 2025] [security2:error] [pid 9866:tid 9866] [client 2a0b:f4c2::3:43630] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.sizefinder.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.sizefinder.com"] [uri "/wp.sql"] [unique_id "aOmjlM5ZjL3ag1XUaZSbvwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-10-08 02:24:05
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 07 22:23:59.695035 2025] [security2:error] [pid 31748:tid 31748] [client 2a0b:f4c2::3:2846] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||williamfitzsimmons.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "williamfitzsimmons.com"] [uri "/w.sql"] [unique_id "aOXLP64eoIKQtYKwCnoyYwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-10-04 22:08:16
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 04 18:08:12.188706 2025] [security2:error] [pid 26225:tid 26258] [client 2a0b:f4c2::3:37252] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.campingcosmetics.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.campingcosmetics.com"] [uri "/ics.sql"] [unique_id "aOGazKXkN_5BoMHQSbgUagAAAVY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-10-03 19:41:03
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 03 15:40:59.645603 2025] [security2:error] [pid 10251:tid 10251] [client 2a0b:f4c2::3:29220] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||deborahbein.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "deborahbein.com"] [uri "/deborahb.sql"] [unique_id "aOAmy-EkLs4hNsy8L8bqhwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-10-03 02:14:34
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 02 22:14:27.969227 2025] [security2:error] [pid 28570:tid 28570] [client 2a0b:f4c2::3:11388] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.alafiariverrendezvous.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.alafiariverrendezvous.org"] [uri "/us.sql"] [unique_id "aN8xgzymcVQc9_6ZLFanVgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-09-26 13:59:04
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 26 09:58:58.455027 2025] [security2:error] [pid 1127610:tid 1127653] [client 2a0b:f4c2::3:56680] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||duplexgoldmine.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "duplexgoldmine.com"] [uri "/exgoldmine.sql"] [unique_id "aNacImLHYR9r0dfHPjtxxQAAAQw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-09-25 13:14:53
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 25 09:14:47.793631 2025] [security2:error] [pid 22230:tid 22230] [client 2a0b:f4c2::3:4830] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||psscififilmfest.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "psscififilmfest.org"] [uri "/psscififilmfes.sql"] [unique_id "aNVARxSUyNpwpo_YF6rk0QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-09-24 19:20:37
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 24 15:20:32.429670 2025] [security2:error] [pid 3948:tid 3948] [client 2a0b:f4c2::3:17648] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lemoulinavent.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lemoulinavent.org"] [uri "/backupdb.sql"] [unique_id "aNREgMunsstpLDm08rL_4QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Mangelot Hosting
2025-09-22 12:05:45
(11 months ago)
(modsecurity) srv104 ModSecurity 2a0b:f4c2::3 (Unknown): 5 in the last 3600 secs; Ports: *; Directio ...
show more
(modsecurity) srv104 ModSecurity 2a0b:f4c2::3 (Unknown): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
🇺🇸
TPI-Abuse
2025-09-22 04:18:11
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 22 00:18:07.337903 2025] [security2:error] [pid 28271:tid 28271] [client 2a0b:f4c2::3:46942] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ashtangayogamelbourne.com.au|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ashtangayogamelbourne.com.au"] [uri "/ashtangayogamelb.sql"] [unique_id "aNDN_7k1KOLK5ZS7_LlsDAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-09-18 12:32:03
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 18 08:31:57.546717 2025] [security2:error] [pid 26745:tid 26745] [client 2a0b:f4c2::3:35354] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stalbansparish.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stalbansparish.org"] [uri "/backups.sql"] [unique_id "aMv7vQJeBIbaKOCoftEFHgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2025-09-16 20:09:42
(1 year ago)
(mod_security) mod_security (id:949110) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:949110) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): N in the last X secs
show less
Web App Attack
🇺🇸
TPI-Abuse
2025-09-15 16:25:19
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 15 12:25:15.854932 2025] [security2:error] [pid 14952:tid 14952] [client 2a0b:f4c2::3:27832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thn.bz"] [uri "/.env.example"] [unique_id "aMg962i5-ay9vWBWbwHkfgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
dtorrer
2025-09-08 21:15:38
(1 year ago)
General vulnerability scan.
Port Scan
🇺🇸
TPI-Abuse
2025-09-05 07:08:39
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::3 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 05 03:08:33.933261 2025] [security2:error] [pid 17474:tid 17474] [client 2a0b:f4c2::3:60580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thefrontporchoffering.com"] [uri "/wp-config.php.zip"] [unique_id "aLqMcWD5vruBiAGw2d03CwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack