TPI-Abuse
2025-07-03 20:23:32
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 03 16:23:26.397216 2025] [security2:error] [pid 26315:tid 26317] [client 2a0e:bfc0:0:14::24a8:40348] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||planillas.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "planillas.net"] [uri "/backup_default.sql"] [unique_id "aGbmvkJimokWVbV3GUo8sgAAAQA"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-06-30 17:41:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 30 13:41:07.698235 2025] [security2:error] [pid 22958:tid 22958] [client 2a0e:bfc0:0:14::24a8:11572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "truecontrarian.com"] [uri "/.git/config"] [unique_id "aGLMM7LbE36CD0AFatLI4gAAAA8"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-06-30 16:31:52
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 30 12:31:43.838936 2025] [security2:error] [pid 10143:tid 10143] [client 2a0e:bfc0:0:14::24a8:13774] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.businesspack-lb.com"] [uri "/.git/config"] [unique_id "aGK7764tBeTfHFpTB0pObAAAAA8"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-06-30 04:33:04
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 30 00:32:55.831211 2025] [security2:error] [pid 17379:tid 17379] [client 2a0e:bfc0:0:14::24a8:31834] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dayspapass.com"] [uri "/.git/config"] [unique_id "aGITd1F-pLYgsa0O5iJRMgAAAAU"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-06-30 01:59:07
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 29 21:59:00.268397 2025] [security2:error] [pid 842033:tid 842033] [client 2a0e:bfc0:0:14::24a8:13608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ibiocat.com"] [uri "/.git/config"] [unique_id "aGHvZLNDh6UiKL-bpVdAaAAAAAs"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-06-29 08:01:16
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 29 04:01:11.521481 2025] [security2:error] [pid 180504:tid 180504] [client 2a0e:bfc0:0:14::24a8:61848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ictsl.net"] [uri "/.git/config"] [unique_id "aGDyx-MklSGW8N8lslnBfgAAAAo"] show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-06-28 11:16:04
(2 weeks ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
TPI-Abuse
2025-06-23 18:29:07
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 23 14:29:01.292153 2025] [security2:error] [pid 3980911:tid 3980911] [client 2a0e:bfc0:0:14::24a8:47636] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jiveturkeyband.com"] [uri "/.git/config"] [unique_id "aFmc7ZgKS7jTHVuVunnMjwAAAAA"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-06-23 03:05:25
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 22 23:05:20.398513 2025] [security2:error] [pid 17685:tid 17685] [client 2a0e:bfc0:0:14::24a8:39566] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newdirectionsinmusic.com"] [uri "/wp-config.php.maj"] [unique_id "aFjEcGD9X1loXGll1ksuHwAAAAc"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-06-18 03:16:38
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 17 23:16:33.191933 2025] [security2:error] [pid 171772:tid 171772] [client 2a0e:bfc0:0:14::24a8:22256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.djbadger.com"] [uri "/.git/config"] [unique_id "aFIvkbEw9hDmO--SHcRqZQAAAA4"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-06-17 04:29:52
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210492) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 17 00:29:45.146544 2025] [security2:error] [pid 3137557:tid 3137557] [client 2a0e:bfc0:0:14::24a8:19970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.brianwhitty.com"] [uri "/.git/config"] [unique_id "aFDvOSt2U7nNpaxlDe3paQAAAA0"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-05-22 02:26:57
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 21 22:26:48.169659 2025] [security2:error] [pid 1293513:tid 1293513] [client 2a0e:bfc0:0:14::24a8:60992] [client 2a0e:bfc0:0:14::24a8] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||alejandrogorsse.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "alejandrogorsse.com"] [uri "/adminer.sql"] [unique_id "aC6LaJPH2WnV_aYP0rjunwAAACE"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-05-10 20:09:38
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 10 16:09:28.571788 2025] [security2:error] [pid 2720992:tid 2720992] [client 2a0e:bfc0:0:14::24a8:31052] [client 2a0e:bfc0:0:14::24a8] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mavikalem.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mavikalem.org"] [uri "/migration.sql"] [unique_id "aB-yeCxSZGwJU3dCSyxggwAAACM"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-05-06 04:34:39
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 06 00:34:30.197706 2025] [security2:error] [pid 3242603:tid 3242603] [client 2a0e:bfc0:0:14::24a8:52036] [client 2a0e:bfc0:0:14::24a8] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||drendels.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "drendels.com"] [uri "/administrator/backups/database-sql.sql"] [unique_id "aBmRVvMpk6MXp-ruWjClcAAAAAY"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2025-05-05 09:34:40
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 3 ... show more (mod_security) mod_security (id:210730) triggered by 2a0e:bfc0:0:14::24a8 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 05 05:34:34.292054 2025] [security2:error] [pid 986319:tid 986319] [client 2a0e:bfc0:0:14::24a8:51674] [client 2a0e:bfc0:0:14::24a8] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||writebetweenthelines.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "writebetweenthelines.com"] [uri "/bd.sql"] [unique_id "aBiGKlKbrZ2jOeB_GSoriQAAAAg"] show less
Brute-Force
Bad Web Bot
Web App Attack