π³π±
Roderic
2025-11-11 00:57:37
(6 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
π¦πΊ
MAGIC
2025-11-08 03:13:10
(6 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-11-07 12:31:53
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 31.220.76.35 (vmi2738987.contaboserver.net): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 31.220.76.35 (vmi2738987.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 07 07:31:48.779414 2025] [security2:error] [pid 27595:tid 27615] [client 31.220.76.35:38396] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kd9uri.com|F|2"] [data ".cfg"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kd9uri.com"] [uri "/pics/DRfiles/INGODRBase XW-802AA8787075.cfg"] [unique_id "aQ3mtE60-1jc9JgQ07Z-xAAAARI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
Asimar
2025-11-03 13:06:17
(7 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 31.220.76.35 (FR/Fra ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 31.220.76.35 (FR/France/vmi2738987.contaboserver.net): (CF_ENABLE)
show less
Bad Web Bot
Anonymous
2025-10-25 12:49:42
(7 months ago)
Excessive crawling/scraping
Hacking
Brute-Force
π¨π
zynex
2025-10-25 09:58:14
(7 months ago)
URL Probing: /index.php
Web App Attack
π«π·
HerrWolf
2025-10-22 20:00:02
(7 months ago)
CrowdSec Detection: crowdsecurity/http-bad-user-agent
Bad Web Bot
π©πͺ
CommanderRoot
2025-10-22 03:25:09
(7 months ago)
Bot crawler
DDoS Attack
Web Spam
π©πͺ
rh24
2025-10-21 21:52:24
(7 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 31.220.76.35 (FR/Fra ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 31.220.76.35 (FR/France/vmi2738987.contaboserver.net)
show less
Bad Web Bot
π©πͺ
Skyrider
2025-10-14 14:43:45
(7 months ago)
31.220.76.35 - - [14/Oct/2025:16:43:04 +0200] "GET /tags/recommend/ HTTP/2.0" 403 5401 "-" "Mozilla/ ...
show more
31.220.76.35 - - [14/Oct/2025:16:43:04 +0200] "GET /tags/recommend/ HTTP/2.0" 403 5401 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
31.220.76.35 - - [14/Oct/2025:16:43:17 +0200] "GET /members/fugazi.2133/ HTTP/2.0" 403 5401 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
31.220.76.35 - - [14/Oct/2025:16:43:28 +0200] "GET /tags/chain/ HTTP/2.0" 403 5401 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
31.220.76.35 - - [14/Oct/2025:16:43:42 +0200] "GET /members/v-ssj3gotenks.1852/ HTTP/2.0" 403 5401 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
31.220.76.35 - - [14/Oct/2025:16:43:45 +0200] "GET /members/weedster.18053/ HTTP/2.0" 403 5401 "-" "Mozilla/5.0 (compatible; MJ12bot/v1.4.8; http://mj12bot.com/)"
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-10-12 10:58:48
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 31.220.76.35 (vmi2738987.contaboserver.net): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 31.220.76.35 (vmi2738987.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 12 06:58:44.616059 2025] [security2:error] [pid 14321:tid 14321] [client 31.220.76.35:34704] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.elcalamo.com"] [uri "/pda/armenta-Luz de los otros.PDB"] [unique_id "aOuJ5EcVDzPLEo6pHz3pTAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
MAGIC
2025-10-12 00:04:43
(7 months ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π©πͺ
rh24
2025-10-11 00:35:08
(7 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 31.220.76.35 (FR/Fra ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 31.220.76.35 (FR/France/vmi2738987.contaboserver.net)
show less
Bad Web Bot
Anonymous
2025-10-10 04:54:02
(7 months ago)
Detected by CrowdSec: crowdsecurity/http-bad-user-agent
Web App Attack
πΊπΈ
antlac1
2025-10-09 10:03:43
(7 months ago)
crowdsecurity/http-bad-user-agent
Brute-Force
Web App Attack