๐ฉ๐ช
rh24
2025-10-21 18:04:38
(10 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 46.8.107.139 (RU/Rus ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 46.8.107.139 (RU/Russia/-)
show less
Bad Web Bot
๐ณ๐ฑ
Roderic
2025-10-21 02:15:14
(10 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐ซ๐ฎ
oh.mg
2025-10-20 20:21:25
(10 months ago)
[Mon Oct 20 22:20:42.918678 2025] [security2:error] [pid 1262959:tid 1262994] [client 46.8.107.139:0 ...
show more
[Mon Oct 20 22:20:42.918678 2025] [security2:error] [pid 1262959:tid 1262994] [client 46.8.107.139:0] [client 46.8.107.139] ModSecurity: Access denied with code 403 (phase 4). Operator GE matched 4 at TX:blocking_outbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/RESPONSE-959-BLOCKING-EVALUATION.conf"] [line "243"] [id "959100"] [msg "Outbound Anomaly Score Exceeded (Total Score: 4)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.mmn.ca"] [uri "/public/www4/robots.txt"] [unique_id "aPaZmkxVWWZuH6WXQHTDNwAAAIY"]
[Mon Oct 20 22:21:25.492265 2025] [security2:error] [pid 1266607:tid 1266622] [client 46.8.107.139:0] [client 46.8.107.139] ModSecurity: Access denied with code 403 (phase 4). Operator GE matched 4 at TX:blocking_outbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/RESPONSE-959-BLOCKING-EVALUATION.conf"] [line "243"] [id "959100"] [msg "Outbound Anomaly Score Exceeded (Total Score: 4)"] [ver "OWASP_CRS/4.10.0-dev
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2025-10-20 18:32:16
(10 months ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 46.8.107.139 (RU/Russia/-): 2 in the ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 46.8.107.139 (RU/Russia/-): 2 in the last 3600 secs
show less
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2025-10-20 15:18:40
(10 months ago)
2025-10-20 @ 17:18:40 (CET) ~ Blocked based on risk assessment and prior abuse reports
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-20 06:02:12
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 46.8.107.139 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 46.8.107.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 20 02:02:06.947392 2025] [security2:error] [pid 928:tid 928] [client 46.8.107.139:39181] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||dhappraisalservices.com|F|2"] [data ".editmysite.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dhappraisalservices.com"] [uri "/ec.editmysite.com"] [unique_id "aPXQXhWN292PKl5R8dwJ8gAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
ca
2025-10-20 03:24:54
(10 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-10-20 02:00:50
(10 months ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-10-19 21:56:11
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 46.8.107.139 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 46.8.107.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 19 17:56:07.393065 2025] [security2:error] [pid 17185:tid 17289] [client 46.8.107.139:41787] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||pattinauction.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "pattinauction.com"] [uri "/pattinauction.com"] [unique_id "aPVed6WNWK81cpab43BKPQAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-10-19 03:06:21
(10 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-10-16 00:35:47
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 46.8.107.139 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 46.8.107.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 15 20:35:41.984378 2025] [security2:error] [pid 31483:tid 31483] [client 46.8.107.139:46661] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||amgtr.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "amgtr.com"] [uri "/amgtr.com"] [unique_id "aPA93b2G4XNFg8t6OssY3wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-15 08:22:48
(11 months ago)
46.8.107.139 - - [15/Oct/2025:10:22:48 +0200] "GET / HTTP/1.0" 403 400 "-" "Mozilla/5.0 (Windows NT ...
show more
46.8.107.139 - - [15/Oct/2025:10:22:48 +0200] "GET / HTTP/1.0" 403 400 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/139.0.0.0 Safari/537.36/Nutch-1.21-SNAPSHOT"
...
show less
Web App Attack
๐ฉ๐ช
rh24
2025-10-15 02:32:41
(11 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 46.8.107.139 (RU/Rus ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 46.8.107.139 (RU/Russia/-): (CF_ENABLE)
show less
Bad Web Bot
๐ช๐ธ
Michael McCarthy
2025-10-15 00:31:22
(11 months ago)
Web Spam
๐ฉ๐ช
rh24
2025-10-10 02:12:18
(11 months ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 46.8.107.139 (RU/Rus ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 46.8.107.139 (RU/Russia/-)
show less
Bad Web Bot