๐บ๐ธ
TPI-Abuse
2025-02-17 18:28:50
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.pr ...
show more
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.prcdn.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 17 13:28:46.243109 2025] [security2:error] [pid 7583:tid 7583] [client 95.142.121.22:1341] [client 95.142.121.22] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.sargentandco.com|F|2"] [data ".bigcartel.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.sargentandco.com"] [uri "/https:/sargentandco.bigcartel.com"] [unique_id "Z7N_3qShgRc7eG3Afzl9QAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-16 12:28:07
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.pr ...
show more
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.prcdn.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 16 07:28:04.357585 2025] [security2:error] [pid 12031:tid 12031] [client 95.142.121.22:1369] [client 95.142.121.22] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.candlesandwoodcrafts.com|F|2"] [data ".candlesandwoodcrafts.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.candlesandwoodcrafts.com"] [uri "/https:/www.candlesandwoodcrafts.com"] [unique_id "Z7HZ1AIRpNnJT8lCUYLuHAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-16 06:25:01
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.pr ...
show more
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.prcdn.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 16 01:24:53.616351 2025] [security2:error] [pid 11108:tid 11108] [client 95.142.121.22:1365] [client 95.142.121.22] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.sailyourkayak.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.sailyourkayak.com"] [uri "/https:/directnic.com"] [unique_id "Z7GEtcGt5UgFPD4gBc4SRAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-16 03:26:59
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.pr ...
show more
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.prcdn.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 15 22:26:56.739874 2025] [security2:error] [pid 6754:tid 6754] [client 95.142.121.22:1342] [client 95.142.121.22] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.peterndudar.com|F|2"] [data ".wordpress.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.peterndudar.com"] [uri "/https:/peterndudar.wordpress.com"] [unique_id "Z7FbAKLXG9KFOPqxewmhXgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-15 05:43:26
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.pr ...
show more
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.prcdn.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 15 00:43:22.389174 2025] [security2:error] [pid 5691:tid 5691] [client 95.142.121.22:1351] [client 95.142.121.22] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.landtug.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.landtug.com"] [uri "/https:/bayviewyachtharbour.com"] [unique_id "Z7ApehG-jajo5rvXzeXMFQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-14 23:00:27
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.pr ...
show more
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.prcdn.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 14 18:00:20.381759 2025] [security2:error] [pid 7272:tid 7297] [client 95.142.121.22:1210] [client 95.142.121.22] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.ceol.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.ceol.com"] [uri "/ceol.com"] [unique_id "Z6_LBHPMT6AcEnKOeWt57QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-14 21:51:08
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.pr ...
show more
(mod_security) mod_security (id:210730) triggered by 95.142.121.22 (r-22-121-142-95.consumer-pool.prcdn.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 14 16:51:02.690741 2025] [security2:error] [pid 9892:tid 9892] [client 95.142.121.22:1363] [client 95.142.121.22] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||campnecon.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "campnecon.com"] [uri "/https:/siteorigin.com"] [unique_id "Z6-6xpfyPg3rO5otSH-xrAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
tjs
2025-02-06 21:45:00
(1 year ago)
web attack, SQL injection attempt
Hacking
SQL Injection
Web App Attack
๐ณ๐ฑ
exxos
2025-02-02 03:33:15
(1 year ago)
web exploit attacks
Web App Attack
๐ณ๐ฑ
exxos
2025-01-30 10:02:31
(1 year ago)
web exploit attacks
Web App Attack
Anonymous
2025-01-29 04:29:08
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ช๐ธ
el-brujo
2025-01-28 23:30:02
(1 year ago)
Cloudflare WAF: Request Path: //htdocs/ Request Query: Host: foro.elhacker.net userAgent: python-re ...
show more
Cloudflare WAF: Request Path: //htdocs/ Request Query: Host: foro.elhacker.net userAgent: python-requests/2.31.0 Action: block Source: ratelimit ASN Description: AVAST-AS-DC Gen Digital dba as Avast Country: DE Method: GET Timestamp: 2025-01-28T23:30:02Z ruleId: 11a71ad4659e48b29b5173e3bcc61b4a. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
Marc
2025-01-19 08:26:01
(1 year ago)
Brute-Force
๐ง๐ช
cmbplf
2025-01-19 03:36:23
(1 year ago)
2.515 requests to */xmlrpc.php
Brute-Force
Bad Web Bot
Anonymous
2025-01-18 22:24:47
(1 year ago)
AGERADE WEBEXPLOIT 95.142.121.22 (r-22-121-142-95.consumer-pool.prcdn.net)
Web App Attack