๐บ๐ธ
kosada.com
2026-06-13 13:17:41
(40 minutes ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-13 10:12:21
(3 hours ago)
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 06:12:14.730459 2026] [security2:error] [pid 22620:tid 22620] [client 47.79.205.242:5244] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||med-engineering.com|F|2"] [data ".tenvir.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "med-engineering.com"] [uri "/www.tenvir.com"] [unique_id "ai0s_uB94o2Udl9aYppqYAAAAAQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-13 09:21:40
(4 hours ago)
FortiWeb WAF: 48 attacks detected. Threat Score: 19400. Types: Client Management(24), GEO IP(24). Or ...
show more
FortiWeb WAF: 48 attacks detected. Threat Score: 19400. Types: Client Management(24), GEO IP(24). Origin: Singapore.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 05:26:31
(8 hours ago)
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 01:26:25.273525 2026] [security2:error] [pid 817:tid 817] [client 47.79.205.242:57224] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.williamfitzsimmons.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.williamfitzsimmons.com"] [uri "/thegramophonelive.com"] [unique_id "aizqAWcgIJQUU8HXqsmoRwAAAAc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-06-13 02:13:22
(11 hours ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 20:08:25
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 16:08:20.721111 2026] [security2:error] [pid 10613:tid 10613] [client 47.79.205.242:11676] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.naturalacu.com|F|2"] [data ".naturalacu.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.naturalacu.com"] [uri "/testimonials-html/www.naturalacu.com"] [unique_id "aixnNCNADPvw1U499gnx_AAAAA4"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-12 16:30:02
(21 hours ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 14:31:12
(23 hours ago)
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 10:31:06.289793 2026] [security2:error] [pid 21355:tid 21355] [client 47.79.205.242:62942] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.kithouse.org|F|2"] [data ".wardwayhomes.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.kithouse.org"] [uri "/www.wardwayhomes.com"] [unique_id "aiwYKuzjGLGMmNoLnccuuQAAABo"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-06-11 16:34:21
(1 day ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 16:01:58
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 12:01:53.974847 2026] [security2:error] [pid 9099:tid 9099] [client 47.79.205.242:1610] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cafink.name|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cafink.name"] [uri "/insectpolitics.com"] [unique_id "airb8XLG22RUUx8cWNMW3QAAAA8"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
Mga Admin
2026-06-11 15:20:54
(1 day ago)
47.79.205.242 - - [11/Jun/2026:22:20:53 +0700] "GET /about/index.html HTTP/1.1" 404 69 "https://www. ...
show more
47.79.205.242 - - [11/Jun/2026:22:20:53 +0700] "GET /about/index.html HTTP/1.1" 404 69 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-06-11 09:27:54
(2 days ago)
FortiWeb WAF: 77 attacks detected. Threat Score: 7800. Types: GEO IP(39), Client Management(38). Ori ...
show more
FortiWeb WAF: 77 attacks detected. Threat Score: 7800. Types: GEO IP(39), Client Management(38). Origin: Singapore.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 09:22:38
(2 days ago)
(mod_security) mod_security (id:210381) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210381) triggered by 47.79.205.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 05:22:32.796069 2026] [security2:error] [pid 26546:tid 26570] [client 47.79.205.242:53366] ModSecurity: Access denied with code 403 (phase 2). Invalid URL Encoding: Non-hexadecimal digits used at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "82"] [id "210381"] [rev "6"] [msg "COMODO WAF: URL Encoding Abuse Attack Attempt||www.mentzlaw.com|F|4"] [data "REQUEST_URI=/louisianadefectiveproductlawyer/%url%"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.mentzlaw.com"] [uri "/louisianadefectiveproductlawyer/%url%"] [unique_id "aip-WGMWuVm3tuHSv7c2ygAAANY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-11 08:13:39
(2 days ago)
[ThuJun1110:13:33.2715802026][security2:error][pid1712063:tid1712107][client47.79.205.242:0]ModSecur ...
show more
[ThuJun1110:13:33.2715802026][security2:error][pid1712063:tid1712107][client47.79.205.242:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Stringmatchwithin\".asa/.asax/.ascx/.backup/.bak/.bat/.cdx/.cer/.cfg/.cmd/.com/.config/.conf/.cs/.csproj/.csr/.dat/.db/.dbf/.dll/.dos/.htr/.htw/.ida/.idc/.idq/.inc/.ini/.key/.licx/.lnk/.log/.mdb/.old/.pass/.pdb/.pol/.printer/.pwd/.rdb/.resources/.resx/.sql/.swp/.sys/.vb/.vbs/.vbproj/.vsdisco/.webinfo/.xsx/\"atTX:extension.[file\"/etc/apache2/conf.d/modsec_rules/00_asl_zz_strict.conf\"][line\"91\"][id\"390716\"][rev\"2\"][msg\"Atomicorp.comWAFRules:URLfileextensionisrestrictedbypolicy\"][data\".dll\"][severity\"ERROR\"][hostname\"modularss.com\"][uri\"/recordati/reagentario/client/AppHelpers.dll\"][unique_id\"aipuLS8ruUL4stmgIYFrNgAAAIc\"]\,referer:https://www.google.com/
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-06-11 04:33:17
(2 days ago)
Malicious activity detected
Hacking
Web App Attack