๐บ๐ธ
TPI-Abuse
2026-09-16 06:51:37
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 47.128.46.238 (ec2-47-128-46-238.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.46.238 (ec2-47-128-46-238.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 02:51:31.823375 2026] [security2:error] [pid 30692:tid 30692] [client 47.128.46.238:48290] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elcalamo.com"] [uri "/pda/medina-azucarlimpio.PDB"] [unique_id "aqo8c0tvBPVAooDUsQQKwwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 19:04:41
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 47.128.46.238 (ec2-47-128-46-238.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.46.238 (ec2-47-128-46-238.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 15:04:35.473385 2026] [security2:error] [pid 24697:tid 24697] [client 47.128.46.238:41324] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elcalamo.com"] [uri "/pda/magana-calendas.PDB"] [unique_id "aodPw546J-F__VjaPCc5XwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2026-08-20 00:13:19
(1 month ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
๐ฆ๐บ
MAGIC
2026-06-28 02:07:58
(2 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
MarkGGN
2026-05-27 06:01:42
(3 months ago)
Web attack. 47.128.46.238 - - [27/May/2026:08:01:35 +0200] "GET /tag/blog/ HTTP/2.0" 200 44681 "-" " ...
show more
Web attack. 47.128.46.238 - - [27/May/2026:08:01:35 +0200] "GET /tag/blog/ HTTP/2.0" 200 44681 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; *)"
47.128.46.238 - - [27/May/2026:08:01:41 +0200] "GET /tag/blog/?essb_counter_cache=rebuild HTTP/2.0" 200 72 "https://www.*/tag/blog/" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; *)"
show less
Web App Attack
๐ฉ๐ช
MarkGGN
2026-05-22 03:25:05
(3 months ago)
Web attack. 47.128.46.238 - - [22/May/2026:05:25:03 +0200] "GET /tag/blog/ HTTP/2.0" 200 44683 "-" " ...
show more
Web attack. 47.128.46.238 - - [22/May/2026:05:25:03 +0200] "GET /tag/blog/ HTTP/2.0" 200 44683 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; *)"
47.128.46.238 - - [22/May/2026:05:25:05 +0200] "GET /tag/blog/?essb_counter_cache=rebuild HTTP/2.0" 200 72 "https://www.*/tag/blog/" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; *)"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-28 19:10:19
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 47.128.46.238 (ec2-47-128-46-238.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 47.128.46.238 (ec2-47-128-46-238.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 15:10:11.351623 2026] [security2:error] [pid 9261:tid 9261] [client 47.128.46.238:48732] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redondotile.com"] [uri "/.htpasswds/"] [unique_id "afEGE0ptWD5mJdzx-vZXRQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 19:24:49
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.46.238 (ec2-47-128-46-238.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.46.238 (ec2-47-128-46-238.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 19 15:24:41.891013 2026] [security2:error] [pid 28673:tid 28673] [client 47.128.46.238:14186] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elcalamo.com"] [uri "/pda/magana-calendas.PDB"] [unique_id "aeUr-TeckWjs3ABgBhN5qwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
bigorre.org
2026-02-21 13:16:43
(7 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
Anonymous
2026-02-17 19:05:16
(7 months ago)
47.128.46.238 - - [17/Feb/2026:20:05:15 +0100] "GET / HTTP/1.1" 403 5055 "-" "Mozilla/5.0 (Linux; An ...
show more
47.128.46.238 - - [17/Feb/2026:20:05:15 +0100] "GET / HTTP/1.1" 403 5055 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )"
...
show less
Web App Attack
๐ซ๐ท
bigorre.org
2026-01-05 10:30:32
(8 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-01-01 14:47:47
(8 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ฆ๐บ
MAGIC
2025-10-06 03:30:13
(11 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฎ๐น
VHosting
2025-09-27 18:41:19
(11 months ago)
Detected attack by Imunify360
Brute-Force
Web App Attack
Anonymous
2025-09-24 13:05:49
(11 months ago)
Ports: 80,443; Direction: 1; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH