๐บ๐ธ
TPI-Abuse
2025-08-30 21:05:30
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 30 17:05:22.676471 2025] [security2:error] [pid 13484:tid 13484] [client 2a0b:f4c2::5:60644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artspacecleveland.com"] [uri "/wp-config.php.save.1.zip"] [unique_id "aLNnknIgRjOttjEFOR2_XgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-30 07:30:40
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 30 03:30:35.841876 2025] [security2:error] [pid 8625:tid 8625] [client 2a0b:f4c2::5:47358] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||greensandbeans.us|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "greensandbeans.us"] [uri "/nsandbeans.sql"] [unique_id "aLKom_MdF-sw_-RX7_3IfgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
SpaceHost-Server
2025-08-29 22:36:08
(1 year ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-29 11:32:06
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 29 07:31:59.198448 2025] [security2:error] [pid 19772:tid 19772] [client 2a0b:f4c2::5:58072] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||alsetsystems.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "alsetsystems.com"] [uri "/systems_com.sql"] [unique_id "aLGPr6b1qOlP-unqY-20awAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
macrob
2025-08-28 23:33:22
(1 year ago)
2025/08/28 23:33:15 [error] 2086869#2086869: *8233879 access forbidden by rule, client: 2a0b:f4c2::5 ...
show more
2025/08/28 23:33:15 [error] 2086869#2086869: *8233879 access forbidden by rule, client: 2a0b:f4c2::5, server: binixo.pl, request: "GET /wordpress.zip HTTP/2.0", host: "binixo.pl"
2025/08/28 23:33:18 [error] 2086873#2086873: *8234010 access forbidden by rule, client: 2a0b:f4c2::5, server: binixo.pl, request: "GET /backup.zip HTTP/2.0", host: "binixo.pl"
2025/08/28 23:33:20 [error] 2086870#2086870: *8234088 access forbidden by rule, client: 2a0b:f4c2::5, server: binixo.pl, request: "GET /backups.zip HTTP/2.0", host: "binixo.pl"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-26 03:55:25
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 25 23:55:21.199365 2025] [security2:error] [pid 29060:tid 29060] [client 2a0b:f4c2::5:55318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jerryfeil.com"] [uri "/wp-config.php.zip"] [unique_id "aK0wKSmC-a6MR_PY0LzxIgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-21 19:04:42
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 21 15:04:39.049187 2025] [security2:error] [pid 12992:tid 12992] [client 2a0b:f4c2::5:9774] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ketsuri.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ketsuri.com"] [uri "/users.sql"] [unique_id "aKdtx5HZcFkHNXrxphFRXQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-17 10:36:32
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 17 06:36:28.998666 2025] [security2:error] [pid 19415:tid 19415] [client 2a0b:f4c2::5:42830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.advancedmotorsports.com"] [uri "/wp-config.php.zip"] [unique_id "aKGwrOD0NmOAMLwrRjnTLgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-17 10:17:58
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 17 06:17:47.737875 2025] [security2:error] [pid 13011:tid 13011] [client 2a0b:f4c2::5:42834] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cemesur-vision21.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cemesur-vision21.com"] [uri "/2022-vision21.sql"] [unique_id "aKGsSza90DqM5P4dhvB6NwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-15 17:10:59
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 15 13:10:50.828488 2025] [security2:error] [pid 11615:tid 11615] [client 2a0b:f4c2::5:9746] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.pngtravel.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.pngtravel.com"] [uri "/backups.sql"] [unique_id "aJ9qGv-DDsbaQ3LF3xb5LAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-20 18:47:59
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 20 14:47:52.537276 2025] [security2:error] [pid 2771790:tid 2771790] [client 2a0b:f4c2::5:17516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eaglecreeklandscape.halotoys.com"] [uri "/.git/config"] [unique_id "aFWs2Hd_zGnhqcMhrQLVkgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-20 15:35:18
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 20 11:35:13.333791 2025] [security2:error] [pid 1205522:tid 1205522] [client 2a0b:f4c2::5:24576] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.frenchla.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.frenchla.com"] [uri "/usr.sql"] [unique_id "aFV_sccTAkCVXe6vdYlGwQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-13 01:13:23
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 12 21:13:18.900411 2025] [security2:error] [pid 774784:tid 774784] [client 2a0b:f4c2::5:50510] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||stinsonbeachsurfandkayak.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stinsonbeachsurfandkayak.com"] [uri "/adminer.sql"] [unique_id "aEt7Lv25oxJcVZgeqlW-CgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-12 10:55:27
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 12 06:55:19.427959 2025] [security2:error] [pid 236572:tid 236572] [client 2a0b:f4c2::5:59780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "normteslaa.com"] [uri "/wp-config.php.save.5"] [unique_id "aEqyFwl7CXn-juEUF_XWPwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-11 17:23:04
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::5 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 11 13:22:57.639341 2025] [security2:error] [pid 1570230:tid 1570230] [client 2a0b:f4c2::5:48198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gruntdog.com"] [uri "/.git/config"] [unique_id "aEm7cZwkZALOjQPA8jdQ4gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack