|
๐จ๐ฑ
38.7.220.19
|
|
(mod_security) mod_security (id:210730) triggered by 38.7.220.19 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 38.7.220.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:12:22.668278 2026] [security2:error] [pid 1959286:tid 1959286] [client 38.7.220.19:56240] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.lertap5.com|F|2"] [data ".assess.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.lertap5.com"] [uri "/HTMLHelp/Lrtp59HTML/www.assess.com"] [unique_id "amH3FmJRl7ou1SuB7GkrYQAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2a09:bac1:7680:3d0::11:19d
|
|
(mod_security) mod_security (id:210492) triggered by 2a09:bac1:7680:3d0::11:19d (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 2a09:bac1:7680:3d0::11:19d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:12:03.370506 2026] [security2:error] [pid 232482:tid 232482] [client 2a09:bac1:7680:3d0::11:19d:12584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.kingfish.bet"] [uri "/.env"] [unique_id "amH3A3dbxoioepxDghCNzwAAABQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
34.150.228.201
|
|
(mod_security) mod_security (id:210492) triggered by 34.150.228.201 (201.228.150.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.228.201 (201.228.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:12:00.658671 2026] [security2:error] [pid 2160227:tid 2160227] [client 34.150.228.201:59622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.174"] [uri "/.env"] [unique_id "amH3AGLAMD4yoRIFGG5jkwAAABk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ต๐ฐ
180.178.130.174
|
|
(mod_security) mod_security (id:240335) triggered by 180.178.130.174 (180-178-130-174.lmpl.net): 1 i ...
show more
(mod_security) mod_security (id:240335) triggered by 180.178.130.174 (180-178-130-174.lmpl.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:11:58.091226 2026] [security2:error] [pid 2093642:tid 2093736] [client 180.178.130.174:53040] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 180.178.130.174 (+1 hits since last alert)|myrtlebeachdiet.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "myrtlebeachdiet.com"] [uri "/xmlrpc.php"] [unique_id "amH2_j4uGTHeXjSxd-mF7QAAAIM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ต๐ฐ
2407:d000:11:4f68:463:9014:4376:903c
|
|
(mod_security) mod_security (id:225170) triggered by 2407:d000:11:4f68:463:9014:4376:903c (Unknown): ...
show more
(mod_security) mod_security (id:225170) triggered by 2407:d000:11:4f68:463:9014:4376:903c (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:11:47.158072 2026] [security2:error] [pid 2415533:tid 2415533] [client 2407:d000:11:4f68:463:9014:4376:903c:57534] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||clayrivers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "clayrivers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amH280b_QfTc32BgFwwmngAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ณ
60.243.110.158
|
|
(mod_security) mod_security (id:240335) triggered by 60.243.110.158 (110.243.60.158.hathway.com): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 60.243.110.158 (110.243.60.158.hathway.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:11:51.287221 2026] [security2:error] [pid 2283514:tid 2283514] [client 60.243.110.158:50142] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 60.243.110.158 (+1 hits since last alert)|fredlandia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "fredlandia.com"] [uri "/xmlrpc.php"] [unique_id "amH2974dHkq70b-ZOFv2fAAAAA0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2a03:2880:f806:d::
|
|
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:d:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:d:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:11:43.297703 2026] [security2:error] [pid 2121416:tid 2121416] [client 2a03:2880:f806:d:::54004] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||mitchellamazing.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mitchellamazing.com"] [uri "/mitchellamazing.com"] [unique_id "amH278LyfZdRxj0cEZn3JgAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2a09:bac5:6d1f:aa::11:1ac
|
|
(mod_security) mod_security (id:210492) triggered by 2a09:bac5:6d1f:aa::11:1ac (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2a09:bac5:6d1f:aa::11:1ac (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:11:22.619053 2026] [security2:error] [pid 2236720:tid 2236720] [client 2a09:bac5:6d1f:aa::11:1ac:51578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.convoyforkids.com"] [uri "/.env"] [unique_id "amH22vPLJq1EnYC7fcVNQAAAAAM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ฉ
8.215.24.140
|
|
(mod_security) mod_security (id:210492) triggered by 8.215.24.140 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 8.215.24.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:11:12.161690 2026] [security2:error] [pid 23385:tid 23385] [client 8.215.24.140:50797] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.evolute.io"] [uri "/.env"] [unique_id "amH20O4aT3fVPvrbaBuH3QAAAA0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2a09:bac1:7680:480::11:1a1
|
|
(mod_security) mod_security (id:210492) triggered by 2a09:bac1:7680:480::11:1a1 (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 2a09:bac1:7680:480::11:1a1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:11:12.331088 2026] [security2:error] [pid 2905876:tid 2905876] [client 2a09:bac1:7680:480::11:1a1:43076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bigislandhawaiirealestate.com"] [uri "/.env"] [unique_id "amH20NLRWJMLlOArblQ49QAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2a09:bac1:76a0:acc8::5e:82
|
|
(mod_security) mod_security (id:210492) triggered by 2a09:bac1:76a0:acc8::5e:82 (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 2a09:bac1:76a0:acc8::5e:82 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:53.212473 2026] [security2:error] [pid 2619737:tid 2619737] [client 2a09:bac1:76a0:acc8::5e:82:57564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.traditionalvaluesbooks.banis-associates.com"] [uri "/.env"] [unique_id "amH2venAaaUQZaSPjT3tHQAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ฉ
114.130.180.254
|
|
(mod_security) mod_security (id:225170) triggered by 114.130.180.254 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 114.130.180.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:41.395028 2026] [security2:error] [pid 1959286:tid 1959286] [client 114.130.180.254:41603] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||caralis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "caralis.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amH2sWJRl7ou1SuB7GkrUgAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2a09:bac5:9442:3af::5e:82
|
|
(mod_security) mod_security (id:210492) triggered by 2a09:bac5:9442:3af::5e:82 (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2a09:bac5:9442:3af::5e:82 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:30.064221 2026] [security2:error] [pid 3217990:tid 3217994] [client 2a09:bac5:9442:3af::5e:82:38074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.certificationwiki.aafm.us"] [uri "/.env"] [unique_id "amH2pml1SbayEY5m7WOCKAAAAII"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ณ
43.241.123.28
|
|
(mod_security) mod_security (id:240335) triggered by 43.241.123.28 (28.123.241.43-in-addr.arpa-mithr ...
show more
(mod_security) mod_security (id:240335) triggered by 43.241.123.28 (28.123.241.43-in-addr.arpa-mithriltele.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:29.798181 2026] [security2:error] [pid 2697:tid 2714] [client 43.241.123.28:57717] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 43.241.123.28 (+1 hits since last alert)|metropaint.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "metropaint.net"] [uri "/xmlrpc.php"] [unique_id "amH2pfbnDXj09wPLE_JJgAAAAI8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ณ
117.198.242.121
|
|
(mod_security) mod_security (id:240335) triggered by 117.198.242.121 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240335) triggered by 117.198.242.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:20.897909 2026] [security2:error] [pid 1955607:tid 1955607] [client 117.198.242.121:60347] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 117.198.242.121 (+1 hits since last alert)|surviquo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "surviquo.com"] [uri "/xmlrpc.php"] [unique_id "amH2nObC-jtqstG1ZiaVvAAAABY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฉ๐ช
185.104.184.43
|
|
(mod_security) mod_security (id:240335) triggered by 185.104.184.43 (43.184.104.185.in-addr.arpa): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 185.104.184.43 (43.184.104.185.in-addr.arpa): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:15.444247 2026] [security2:error] [pid 2359125:tid 2359125] [client 185.104.184.43:53340] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 185.104.184.43 (+1 hits since last alert)|themadwriter.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "themadwriter.us"] [uri "/xmlrpc.php"] [unique_id "amH2l4MAJkLoKxWkKURR0wAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฒ๐ฆ
102.97.12.115
|
|
(mod_security) mod_security (id:210730) triggered by 102.97.12.115 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 102.97.12.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:18.806780 2026] [security2:error] [pid 2225074:tid 2225074] [client 102.97.12.115:33108] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.nrvoutdoors.com|F|2"] [data ".gunauction.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.nrvoutdoors.com"] [uri "/TAMBOUR SAFETY/www.gunauction.com"] [unique_id "amH2mk5MLBUi2pb7loPGYwAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ณ
157.49.142.237
|
|
(mod_security) mod_security (id:240335) triggered by 157.49.142.237 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 157.49.142.237 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:02.142960 2026] [security2:error] [pid 2641373:tid 2641373] [client 157.49.142.237:58112] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 157.49.142.237 (+1 hits since last alert)|frogdesignmexico.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "frogdesignmexico.com"] [uri "/xmlrpc.php"] [unique_id "amH2irVsr-tiRJmIrxGvMwAAABM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2a09:bac5:9447:3af::5e:5a
|
|
(mod_security) mod_security (id:210492) triggered by 2a09:bac5:9447:3af::5e:5a (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2a09:bac5:9447:3af::5e:5a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:03.491683 2026] [security2:error] [pid 2159142:tid 2159142] [client 2a09:bac5:9447:3af::5e:5a:48970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dbanetwork.net"] [uri "/.env"] [unique_id "amH2iw28AADpUgxUvSrBNAAAABI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ต๐ฐ
182.185.222.35
|
|
(mod_security) mod_security (id:240335) triggered by 182.185.222.35 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 182.185.222.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:10:04.133159 2026] [security2:error] [pid 13047:tid 13047] [client 182.185.222.35:49442] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 182.185.222.35 (+1 hits since last alert)|websitesforauthors.design|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "websitesforauthors.design"] [uri "/xmlrpc.php"] [unique_id "amH2jFz8wAzFiYufVzOD3gAAABQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ต๐ฐ
27.96.92.16
|
|
(mod_security) mod_security (id:240335) triggered by 27.96.92.16 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240335) triggered by 27.96.92.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:09:52.594320 2026] [security2:error] [pid 452491:tid 452491] [client 27.96.92.16:56253] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 27.96.92.16 (+1 hits since last alert)|karenbernsteinlaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "karenbernsteinlaw.com"] [uri "/xmlrpc.php"] [unique_id "amH2gFSCWtfrQS493ILgxgAAABM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2a09:bac5:9442:3af::5e:76
|
|
(mod_security) mod_security (id:210492) triggered by 2a09:bac5:9442:3af::5e:76 (Unknown): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 2a09:bac5:9442:3af::5e:76 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:09:44.961060 2026] [security2:error] [pid 228883:tid 228883] [client 2a09:bac5:9442:3af::5e:76:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sportsbookcommission.com"] [uri "/.env"] [unique_id "amH2eJbp3zFE35PrVmS_KgAAAA8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐น๐ท
2a00:1d35:e0cd:9600:d88:79c2:cb90:4dba
|
|
(mod_security) mod_security (id:225170) triggered by 2a00:1d35:e0cd:9600:d88:79c2:cb90:4dba (Unknown ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:1d35:e0cd:9600:d88:79c2:cb90:4dba (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:09:37.730828 2026] [security2:error] [pid 13704:tid 13704] [client 2a00:1d35:e0cd:9600:d88:79c2:cb90:4dba:60409] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bickleton.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bickleton.org"] [uri "/wp-json/wp/v2/users"] [unique_id "amH2cRF6199CFN93mUxNuAAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฐ๐ช
129.222.147.159
|
|
(mod_security) mod_security (id:240335) triggered by 129.222.147.159 (customer.nrbiken1.isp.starlink ...
show more
(mod_security) mod_security (id:240335) triggered by 129.222.147.159 (customer.nrbiken1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:09:31.250372 2026] [security2:error] [pid 2336190:tid 2336190] [client 129.222.147.159:55146] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 129.222.147.159 (+1 hits since last alert)|pulleasy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "pulleasy.com"] [uri "/xmlrpc.php"] [unique_id "amH2a-laTp6v7qKoTBDQawAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ณ
116.74.197.206
|
|
(mod_security) mod_security (id:240335) triggered by 116.74.197.206 (197.74.116.206.hathway.com): 1 ...
show more
(mod_security) mod_security (id:240335) triggered by 116.74.197.206 (197.74.116.206.hathway.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 07:09:31.241729 2026] [security2:error] [pid 465078:tid 465078] [client 116.74.197.206:52296] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 116.74.197.206 (+1 hits since last alert)|rodzillacharters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rodzillacharters.com"] [uri "/xmlrpc.php"] [unique_id "amH2axu9gME0MptjFygPWwAAABU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|