Anonymous
2026-09-16 21:23:34
(5 days ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-04 02:06:36
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 22:06:29.166366 2026] [security2:error] [pid 19218:tid 19218] [client 37.237.237.4:58380] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.spirits66.com|F|2"] [data ".poogansporch.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.spirits66.com"] [uri "/\\\\\\\\www.poogansporch.com"] [unique_id "aponpbh6VnLLUpsq8BZUxAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 06:45:23
(3 weeks ago)
Large-scale coordinated botnet (3M+ IPs). Ordered by Alexander Pen'kov (alexander-pen-kov-7b41aa6a/S ...
show more
Large-scale coordinated botnet (3M+ IPs). Ordered by Alexander Pen'kov (alexander-pen-kov-7b41aa6a/Shursky [yordim|LIS|MOW]); Attacker: Mikhail Smirnov (mikhail-smirnov-79830323/Aidan [MOW]) employed by Angara Technologies Group | Attack Signature Blocked: /catalog/product_compare/add/product/11709/uenc/aHR0cHM6Ly93d3cuZDJvZmZpY2UucnUvY2F0YWxvZ3NlYXJjaC9yZXN1bHQvP2NhdD0xOTcmYW1wO21vZGU9Z3JpZCZhbXA7cT1UZWxlcHJlc2VuY2UmYW1wO3JhdGluZz02/form_key/U9qNLwM1WYPnQZRk/ | UA: Opera/9.45.(X11; Linux i686; cs-CZ) Presto/2.9.186 Version/10.00 | (Magento Site)
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 09:04:46
(4 weeks ago)
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 05:04:39.940366 2026] [security2:error] [pid 1182250:tid 1182325] [client 37.237.237.4:49304] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.furball.co.uk|F|2"] [data ".assamtips.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.furball.co.uk"] [uri "/www.assamtips.com"] [unique_id "aoq3pyna44SNxjfAEUzIBQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
pixelmemory.us
2026-08-08 00:07:36
(1 month ago)
2026-08-08T00:06:25 37.237.237.4 GET /Photos/Outdoors/2012-01-29%20SF%20Zoo/raw/IMG_4036.CR2 Mozilla ...
show more
2026-08-08T00:06:25 37.237.237.4 GET /Photos/Outdoors/2012-01-29%20SF%20Zoo/raw/IMG_4036.CR2 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36
...
show less
Bad Web Bot
๐บ๐ธ
Zandro
2026-08-01 17:29:12
(1 month ago)
distributed harvester
Bad Web Bot
Exploited Host
๐ฉ๐ช
ghostwarriors
2026-07-28 09:20:19
(1 month ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 11:42:59
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 07:42:55.978544 2026] [security2:error] [pid 5302:tid 5302] [client 37.237.237.4:35816] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||celebritybikinigossip.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "celebritybikinigossip.com"] [uri "/category/celebrities/lucy-pinder/thehollywoodgossip.com"] [unique_id "amXyvy5uRwRJnyan2_wzcwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 04:20:53
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 00:20:47.986909 2026] [security2:error] [pid 3252:tid 3257] [client 37.237.237.4:34352] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.nwnative.us|F|2"] [data ".medievaltimes.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.nwnative.us"] [uri "/images/Dallas2010/pages/www.medievaltimes.com"] [unique_id "amWLH66Cx56tn6QOA9puEgAAAEE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
pixelmemory.us
2026-07-17 21:57:59
(2 months ago)
2026-07-17T21:53:01 37.237.237.4 GET /Photos/Outdoors/2011-10-09%20Fleet%20Week%20SF/raw/IMG_2164.CR ...
show more
2026-07-17T21:53:01 37.237.237.4 GET /Photos/Outdoors/2011-10-09%20Fleet%20Week%20SF/raw/IMG_2164.CR2 Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Brave Chrome/88.0.4324.152 Safari/537.36
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-13 20:21:03
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 37.237.237.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 13 16:20:59.631437 2026] [security2:error] [pid 28810:tid 28810] [client 37.237.237.4:61012] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||phantomkennels.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "phantomkennels.com"] [uri "/phantomkennels.com"] [unique_id "alVIq8lEoXqldesM7UliuAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Hmorrin
2026-07-11 08:15:56
(2 months ago)
Port Scan
๐บ๐ธ
Hmorrin
2026-07-10 04:15:43
(2 months ago)
Port Scan
๐บ๐ธ
Hmorrin
2026-07-07 01:15:40
(2 months ago)
Port Scan
๐ฉ๐ช
BlueWire Hosting
2026-07-06 16:14:00
(2 months ago)
Bad bot ignoring robot.txt
Bad Web Bot