Anonymous
2026-07-14 12:15:02
(1 month ago)
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-26 23:04:45
(2 months ago)
IM360 WAF: Old style account creation and modification in Joomla! MV:registration
Web App Attack
๐ฌ๐ง
relianoid.com
2026-06-23 22:45:52
(2 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
๐บ๐ธ
ipblock.com
2026-03-31 04:22:00
(5 months ago)
IPBlock protected site ID [4055-d][s=02].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
๐ฌ๐ง
relianoid.com
2026-03-21 05:25:24
(5 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
๐บ๐ธ
TPI-Abuse
2026-03-15 21:59:54
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 15 17:59:48.359010 2026] [security2:error] [pid 29551:tid 29551] [client 45.130.81.8:29399] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||wendeenicole.com|F|2"] [data ".dat"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "wendeenicole.com"] [uri "/restore/wallet.dat"] [unique_id "abcr1K0LhmR7-ff1cYzYrgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐พ
armandosaucedo.me
2026-03-12 06:01:47
(5 months ago)
45.130.81.8 - - [12/Mar/2026:06:01:16 +0000] "GET /bak/directory.tar.gz HTTP/1.1" 404 196 "-" "-"
Web App Attack
๐บ๐ธ
Penny Packer
2026-03-09 18:35:52
(6 months ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 03:14:43
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:14:38.223525 2026] [security2:error] [pid 1027:tid 1027] [client 45.130.81.8:48899] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||loriatrading.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "loriatrading.com"] [uri "/restore/sql.sql"] [unique_id "aZaAHgn0wt_823XEwGCh3AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Valhalla
2026-02-13 12:24:33
(6 months ago)
/directory.rar
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-02-06 05:41:19
(7 months ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
filstal.org
2026-01-27 02:41:41
(7 months ago)
Vulnerability scan activity detected by Fail2Ban
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-26 16:19:57
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 26 11:19:54.742675 2026] [security2:error] [pid 16043:tid 16043] [client 45.130.81.8:60051] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||doubloonswap.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "doubloonswap.com"] [uri "/dump.sql"] [unique_id "aXeUKsqg9KKqJiD276IgpQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-20 16:45:16
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 11:45:12.102232 2026] [security2:error] [pid 9005:tid 9005] [client 45.130.81.8:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||eddysgroup.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "eddysgroup.com"] [uri "/bak/www.sql"] [unique_id "aW-xGIuKF6m5TSgjVe8LHwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-14 16:52:06
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.8 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 14 11:51:56.856432 2025] [security2:error] [pid 5210:tid 5210] [client 45.130.81.8:45147] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||russiacoin.info|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "russiacoin.info"] [uri "/backup/backup.sql"] [unique_id "aT7rLADpk_fcCLqchPBGFwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack