๐ง๐ช
cmbplf
2025-09-15 22:58:35
(1 year ago)
14.163 requests in 1 hour (5d4h59mfromnow)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-09-15 01:38:01
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 14 21:37:54.952316 2025] [security2:error] [pid 25306:tid 25306] [client 2a0b:f4c2::9:60222] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||donnysimonton.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "donnysimonton.com"] [uri "/donnysi.sql"] [unique_id "aMdt8rn_zRqNoGPgPYJ4ZgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-13 14:14:37
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 13 10:14:32.759931 2025] [security2:error] [pid 25851:tid 25851] [client 2a0b:f4c2::9:7970] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||bringkittyhome.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bringkittyhome.com"] [uri "/ittyhome.sql"] [unique_id "aMV8SPIeHY-kdcvCFbDJQAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-09 03:56:03
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 08 23:55:56.063780 2025] [security2:error] [pid 9884:tid 9884] [client 2a0b:f4c2::9:27836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flanagan.works"] [uri "/wp-config.php.zip"] [unique_id "aL-lTEa_X5iUGolrKonGjgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-07 13:26:22
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 07 09:26:16.825487 2025] [security2:error] [pid 31595:tid 31595] [client 2a0b:f4c2::9:65300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "southsideaccountingservices.com"] [uri "/wp-config.php.zip"] [unique_id "aL2H-JguS26wOazWksS74QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-03 04:54:36
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 03 00:54:32.034353 2025] [security2:error] [pid 3048:tid 3048] [client 2a0b:f4c2::9:54574] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||imbrasacademic.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "imbrasacademic.com"] [uri "/brasacademic.sql"] [unique_id "aLfKCFc5_hW5O775XkPXkQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
on-com
2025-09-03 03:29:59
(1 year ago)
URL scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-02 11:38:20
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 02 07:38:13.855765 2025] [security2:error] [pid 32008:tid 32008] [client 2a0b:f4c2::9:23560] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "golfmastercanada.com"] [uri "/wp-config.php.zip"] [unique_id "aLbXJcnH5kC8yyjv9xUREQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-30 17:47:50
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 30 13:47:44.257521 2025] [security2:error] [pid 1104:tid 1104] [client 2a0b:f4c2::9:29554] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||pawsandwhiskerssociety.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "pawsandwhiskerssociety.org"] [uri "/awsandwhiskerssociety.sql"] [unique_id "aLM5QMI6wRwunlVQBw_iqAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-30 14:42:13
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 30 10:42:07.806704 2025] [security2:error] [pid 2734556:tid 2734680] [client 2a0b:f4c2::9:34076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vancekelly.com"] [uri "/wp-config.php.save.zip"] [unique_id "aLMNvxTJbJ1Xcu1rDRtNXwAAAQw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-28 18:23:45
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 28 14:23:39.822074 2025] [security2:error] [pid 18394:tid 18394] [client 2a0b:f4c2::9:17436] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dwightbrown.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dwightbrown.com"] [uri "/wp.sql"] [unique_id "aLCeq-AOlLxgvHaYCdqUSwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2025-08-28 14:09:50
(1 year ago)
(mod_security) mod_security (id:949110) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:949110) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-28 03:06:45
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 27 23:06:39.176594 2025] [security2:error] [pid 24497:tid 24497] [client 2a0b:f4c2::9:38940] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kawkacevents.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kawkacevents.com"] [uri "/kawk.sql"] [unique_id "aK_Hv-FsuQSSNecaPyutkAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-26 18:13:15
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::9 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 26 14:13:11.071752 2025] [security2:error] [pid 18269:tid 18269] [client 2a0b:f4c2::9:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||avaliantlife.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "avaliantlife.com"] [uri "/.sql"] [unique_id "aK35N234SFdWjr6xsbrlwQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2025-08-22 01:00:31
(1 year ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot