πΊπΈ
nyt
2026-06-18 14:16:29
(31 minutes ago)
Sensitive File Probe, WP Config Probe
Web App Attack
π«π·
dynamix
2026-06-18 13:30:11
(1 hour ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-18 08:35:17
(6 hours ago)
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in th ...
show more
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 04:35:12.318924 2026] [security2:error] [pid 21585:tid 21585] [client 94.158.244.200:34310] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||riedmannfamily.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "riedmannfamily.com"] [uri "/backup.sql"] [unique_id "ajOtwLnLPxE17OYZhe_OkwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Apache
2026-06-18 04:46:24
(10 hours ago)
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (US/United States/no-rdns.mivocl ...
show more
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (US/United States/no-rdns.mivocloud.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-06-18 01:06:17
(13 hours ago)
Abuse Detected (5)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-17 21:03:29
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in th ...
show more
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 17:03:21.107059 2026] [security2:error] [pid 26869:tid 26869] [client 94.158.244.200:53758] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||oliverhardy.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "oliverhardy.com"] [uri "/backup.sql"] [unique_id "ajMLmamqVptLrFVuz2DT6gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
omc
2026-06-17 20:12:13
(18 hours ago)
GET /wp-content/debug.log [Q4].
Bad Web Bot
πΊπΈ
omc
2026-06-17 20:12:13
(18 hours ago)
AH01797: Unauthorized file
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-06-17 19:58:18
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in th ...
show more
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 15:58:11.464327 2026] [security2:error] [pid 23531:tid 23531] [client 94.158.244.200:51588] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nwtree.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nwtree.com"] [uri "/wp-content/debug.log"] [unique_id "ajL8U2xVd8DJ2TG8HdJ7qwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-17 17:16:16
(21 hours ago)
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in th ...
show more
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 13:16:10.352380 2026] [security2:error] [pid 20812:tid 20812] [client 94.158.244.200:51586] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nebraskaadaptivesports.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nebraskaadaptivesports.org"] [uri "/backup.sql"] [unique_id "ajLWWtojIas3VEEN3wtLgAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
nationaleventpros.com
2026-06-17 16:46:56
(22 hours ago)
vulnerability scan
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-17 16:44:57
(22 hours ago)
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in th ...
show more
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 12:44:51.581247 2026] [security2:error] [pid 24116:tid 24116] [client 94.158.244.200:40600] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||natickvillagerentals.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "natickvillagerentals.com"] [uri "/backup.sql"] [unique_id "ajLPA4xxQLx2nZdJz_TPUAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-17 12:20:13
(1 day ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-17 07:27:35
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in th ...
show more
(mod_security) mod_security (id:210730) triggered by 94.158.244.200 (no-rdns.mivocloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 03:27:28.841833 2026] [security2:error] [pid 27022:tid 27022] [client 94.158.244.200:52568] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||serranoscoffee.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "serranoscoffee.com"] [uri "/backup.sql"] [unique_id "ajJMYOFCpSj8tw9jldoGEQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-06-17 07:11:57
(1 day ago)
Multiple WAF Violations
Web App Attack