๐บ๐ธ
TPI-Abuse
2026-08-03 17:08:44
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 13:08:34.018528 2026] [security2:error] [pid 1132117:tid 1132117] [client 37.236.70.8:34490] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||djbadger.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "djbadger.com"] [uri "/mortuarystudios.com"] [unique_id "anDLEmTne9l506bTSAIfXAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-07-26 18:01:16
(3 weeks ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 37.236.70.8 (IQ/Iraq ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 37.236.70.8 (IQ/Iraq/Baghdad/Baghdad/-)
show less
Bad Web Bot
๐บ๐ธ
pixelmemory.us
2026-07-14 12:09:10
(1 month ago)
2026-07-14T12:07:39 37.236.70.8 GET /Photos/Outdoors/2013-08-11%20Sierra%20Vista/IMG_5415.CR2 Mozill ...
show more
2026-07-14T12:07:39 37.236.70.8 GET /Photos/Outdoors/2013-08-11%20Sierra%20Vista/IMG_5415.CR2 Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/66.0.3359.47 Safari/537.36
...
show less
Bad Web Bot
๐ฆ๐บ
FireGuard Server
2026-07-13 00:35:07
(1 month ago)
Blocked by os-abuseipdb; 4 hits, proto=tcp, ports=443
Port Scan
Hacking
๐บ๐ธ
pixelmemory.us
2026-07-12 11:19:54
(1 month ago)
2026-07-12T11:13:32 37.236.70.8 GET /Photos/Outdoors/2012-05-19%20McNee%20Ranch%20State%20Park/raw/I ...
show more
2026-07-12T11:13:32 37.236.70.8 GET /Photos/Outdoors/2012-05-19%20McNee%20Ranch%20State%20Park/raw/IMG_7293.CR2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.130 Safari/537.36
...
show less
Bad Web Bot
๐บ๐ธ
pixelmemory.us
2026-07-07 00:30:02
(1 month ago)
2026-07-07T00:28:05 37.236.70.8 GET /Photos/Outdoors/2012-05-20%20Eclipse/raw/IMG_7396.CR2 Mozilla/5 ...
show more
2026-07-07T00:28:05 37.236.70.8 GET /Photos/Outdoors/2012-05-20%20Eclipse/raw/IMG_7396.CR2 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-05 17:40:17
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 05 13:40:04.721737 2026] [security2:error] [pid 20564:tid 20564] [client 37.236.70.8:14718] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.lertap5.com|F|2"] [data ".spss.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.lertap5.com"] [uri "/HTMLHelp/Lrtp59HTML/www.spss.com"] [unique_id "akqW9KNIGpZNa_eL0S5GHQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-22 11:31:18
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 07:31:08.546324 2026] [security2:error] [pid 20824:tid 20824] [client 37.236.70.8:38266] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.cchockeyhistory.org|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.cchockeyhistory.org"] [uri "/Bobcats/Thumbs.db"] [unique_id "ajkc_G4khgxFv8AVon9NrQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-19 06:26:25
(2 months ago)
Web App Attack
๐ซ๐ท
dynamix
2026-06-11 21:03:19
(2 months ago)
WordPress wp-login.php Brute Force Attack
Brute-Force
Web App Attack
Anonymous
2026-06-03 15:50:07
(2 months ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 11:49:07
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 07:48:59.883011 2026] [security2:error] [pid 28390:tid 28390] [client 37.236.70.8:23632] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.glamorgirl.net|F|2"] [data ".vouyermedia.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.glamorgirl.net"] [uri "/galleries/www.vouyermedia.com"] [unique_id "aeyqK4vElzWJkOGZq1qjgAAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Mรถlkky
2026-04-08 07:31:43
(4 months ago)
DDOS Attack (by infected device ?)
Web App Attack
๐บ๐ธ
quilla
2026-03-30 20:13:00
(4 months ago)
Botnet infected device observed in honeypot (Vector: TCP HANDSHAKE ATTACK)
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 02:17:07
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 37.236.70.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 22:15:04.016658 2026] [security2:error] [pid 14575:tid 14575] [client 37.236.70.8:60600] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||byles.net|F|2"] [data ".oka4wd.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "byles.net"] [uri "/www.oka4wd.com"] [unique_id "abytqARAgGSlWFHPk6cyfwAAAC0"], referer: http://byles.net/
show less
Brute-Force
Bad Web Bot
Web App Attack