๐บ๐ธ
TPI-Abuse
2025-12-05 22:47:11
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 17:47:04.996732 2025] [security2:error] [pid 31610:tid 31698] [client 2a0d:bbc7::f816:3eff:feec:9f18:47368] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||georgementz.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "georgementz.org"] [uri "/georgementz_com.sql"] [unique_id "aTNg6IVASEKM5gEKTom7JwAAAEk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 15:27:06
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 10:27:00.635507 2025] [security2:error] [pid 6958:tid 6958] [client 2a0d:bbc7::f816:3eff:feec:9f18:52712] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||rodzillacharters.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "rodzillacharters.com"] [uri "/rodzillacharte.sql"] [unique_id "aTL5xLLpHhj-hEr964w-BwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 12:51:56
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 07:51:48.054361 2025] [security2:error] [pid 11675:tid 11675] [client 2a0d:bbc7::f816:3eff:feec:9f18:54516] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||assistfeed.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "assistfeed.com"] [uri "/backup_wp.sql"] [unique_id "aTGD5CKaNHDlL2Le5ATivQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 10:31:08
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 05:30:59.870223 2025] [security2:error] [pid 12994:tid 12994] [client 2a0d:bbc7::f816:3eff:feec:9f18:49580] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jeffmasonmusic.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jeffmasonmusic.com"] [uri "/j.sql"] [unique_id "aTFi4x3VokSM6Xa25gv1LgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 15:52:57
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 10:52:50.422563 2025] [security2:error] [pid 19919:tid 19932] [client 2a0d:bbc7::f816:3eff:feec:9f18:40910] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||managementlaw.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "managementlaw.com"] [uri "/manageme.sql"] [unique_id "aS8LUqrObzZVY1rRU6QxNwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:29:05
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:28:56.054099 2025] [security2:error] [pid 8996:tid 8996] [client 2a0d:bbc7::f816:3eff:feec:9f18:52148] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||shhcenter.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "shhcenter.com"] [uri "/shhcent.sql"] [unique_id "aS55GAjn22wtOv4o1CywEgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 08:50:30
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:50:23.862032 2025] [security2:error] [pid 17339:tid 17339] [client 2a0d:bbc7::f816:3eff:feec:9f18:33508] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||misogynyis.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "misogynyis.com"] [uri "/ogynyis.sql"] [unique_id "aSa_T6BxiNxiyV_oGLpN5QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
R.G.
2025-11-19 18:28:25
(8 months ago)
(directadmin) Failed DirectAdmin phpMyAdmin login from 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 5 i ...
show more
(directadmin) Failed DirectAdmin phpMyAdmin login from 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 5 in the last 900 secs; Ports: *; Direction: inout; Trigger: LF_DIRECTADMIN; Logs: Nov 19 19:28:12 user denied: wordpress (mysql-denied) from 2a0d:bbc7::f816:3eff:feec:9f18
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-19 02:08:40
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 18 21:08:30.965528 2025] [security2:error] [pid 26580:tid 26580] [client 2a0d:bbc7::f816:3eff:feec:9f18:59946] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||wave94.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "wave94.com"] [uri "/daily.sql"] [unique_id "aR0mnqLMN7GXD9uUA3lgygAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-17 23:16:25
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 17 18:16:18.012628 2025] [security2:error] [pid 2111:tid 2111] [client 2a0d:bbc7::f816:3eff:feec:9f18:43314] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||earthtwoworkshop.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "earthtwoworkshop.com"] [uri "/orkshop.sql"] [unique_id "aRuswh9qUtgHBbIys4kaTQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-11-16 10:51:38
(8 months ago)
Blocked by UFW (TCP on 9999)
Source port: 48468
Packet length: 80
This report (for 2a0d:bbc7:0000:0 ...
show more
Blocked by UFW (TCP on 9999)
Source port: 48468
Packet length: 80
This report (for 2a0d:bbc7:0000:0000:f816:3eff:feec:9f18) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Ping of Death
Port Scan
๐บ๐ธ
TPI-Abuse
2025-11-15 13:28:24
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 15 08:28:19.475407 2025] [security2:error] [pid 5345:tid 5345] [client 2a0d:bbc7::f816:3eff:feec:9f18:34688] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sbeii.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sbeii.com"] [uri "/.sql"] [unique_id "aRh_88Pg_S4kb9jPPvywbgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-14 05:30:25
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 14 00:30:15.320886 2025] [security2:error] [pid 9599:tid 9599] [client 2a0d:bbc7::f816:3eff:feec:9f18:48946] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||directcch.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "directcch.com"] [uri "/backup.sql"] [unique_id "aRa-Z-2tshEdDlsCc3nvrQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-13 05:02:04
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 00:01:58.418426 2025] [security2:error] [pid 16163:tid 16163] [client 2a0d:bbc7::f816:3eff:feec:9f18:32826] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lawrencehale.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lawrencehale.com"] [uri "/lawrenceha.sql"] [unique_id "aRVmRjBXewx2B2UAzwnfPgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-12 07:11:28
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0d:bbc7::f816:3eff:feec:9f18 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 12 02:11:20.804231 2025] [security2:error] [pid 28352:tid 28352] [client 2a0d:bbc7::f816:3eff:feec:9f18:58144] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gacstoday.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gacstoday.com"] [uri "/y.sql"] [unique_id "aRQzGCDuSmluBThsP0974AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack