|
๐ฒ๐ฝ
129.222.161.140
|
|
(mod_security) mod_security (id:210350) triggered by 129.222.161.140 (customer.gtmygtm1.isp.starlink ...
show more
(mod_security) mod_security (id:210350) triggered by 129.222.161.140 (customer.gtmygtm1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:37:39.913109 2026] [security2:error] [pid 5987:tid 5987] [client 129.222.161.140:62217] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||salernospizza.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "salernospizza.com"] [uri "/oak-park"] [unique_id "aq-bU-THUSjzga2KFEstdAAAAAI"], referer: https://veltwaypress.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ณ
34.47.241.157
|
|
(mod_security) mod_security (id:210492) triggered by 34.47.241.157 (157.241.47.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.241.157 (157.241.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:37:30.849501 2026] [security2:error] [pid 30381:tid 30381] [client 34.47.241.157:48164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "quantumacceleration.org"] [uri "/.git/config"] [unique_id "aq-bSvZkl0QoFUrAHm4YdwAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ถ๐ฆ
34.18.216.89
|
|
(mod_security) mod_security (id:210492) triggered by 34.18.216.89 (89.216.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.216.89 (89.216.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:37:17.047105 2026] [security2:error] [pid 18315:tid 18315] [client 34.18.216.89:42282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jacobunderwoodmusic.com"] [uri "/.git/config"] [unique_id "aq-bPTauyHolY_GUcnmHUgAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฆ๐ท
167.250.5.4
|
|
(mod_security) mod_security (id:225170) triggered by 167.250.5.4 (nb4.servidoraweb.net): 1 in the la ...
show more
(mod_security) mod_security (id:225170) triggered by 167.250.5.4 (nb4.servidoraweb.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:36:54.406863 2026] [security2:error] [pid 25884:tid 25884] [client 167.250.5.4:34894] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tomslawmd.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tomslawmd.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aq-bJnJDE1GajQqll-kcqQAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ณ
180.153.236.252
|
|
(mod_security) mod_security (id:210831) triggered by 180.153.236.252 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210831) triggered by 180.153.236.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:36:18.032950 2026] [security2:error] [pid 13707:tid 13795] [client 180.153.236.252:58755] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.latinofederation.org|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.latinofederation.org"] [uri "/"] [unique_id "aq-bAv01EXsyECUWAIZnCAAAAdM"], referer: https://www.latinofederation.org/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ญ
34.65.153.218
|
|
(mod_security) mod_security (id:210492) triggered by 34.65.153.218 (218.153.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.153.218 (218.153.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:35:48.031895 2026] [security2:error] [pid 13816:tid 13816] [client 34.65.153.218:34536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sedemo.xyz"] [uri "/.git/config"] [unique_id "aq-a5HSwUKil5Ad09XW_ugAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ณ
180.153.236.18
|
|
(mod_security) mod_security (id:210831) triggered by 180.153.236.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 180.153.236.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:35:43.703373 2026] [security2:error] [pid 6163:tid 6163] [client 180.153.236.18:33852] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.crystalvisionsart.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.crystalvisionsart.com"] [uri "/"] [unique_id "aq-a301UvrEaZN2XPRFnFgAAABA"], referer: http://www.crystalvisionsart.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
135.129.160.47
|
|
(mod_security) mod_security (id:218420) triggered by 135.129.160.47 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:218420) triggered by 135.129.160.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:35:24.893029 2026] [security2:error] [pid 9097:tid 9097] [client 135.129.160.47:39082] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i)php://(std(in|out|err)|(in|out)put|fd|memory|temp|filter)" at ARGS_NAMES:\\xadd allow_url_include=1 \\xadd auto_prepend_file=php://input. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/21_PHP_PHPGen.conf"] [line "22"] [id "218420"] [rev "2"] [msg "COMODO WAF: PHP Injection Attack: I/O Stream Found||192.64.150.16:443|F|2"] [data "Matched Data: php://input found within ARGS_NAMES:\\x5cxadd allow_url_include=1 \\x5cxadd auto_prepend_file=php://input: \\xadd allow_url_include=1 \\xadd auto_prepend_file=php://input"] [severity "CRITICAL"] [tag "CWAF"] [tag "PHPGen"] [hostname "192.64.150.16"] [uri "/hello.world"] [unique_id "aq-azEBK1b4sP4tDRI1-EwAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
152.241.68.96
|
|
(mod_security) mod_security (id:210350) triggered by 152.241.68.96 (152-241-68-96.user.vivozap.com.b ...
show more
(mod_security) mod_security (id:210350) triggered by 152.241.68.96 (152-241-68-96.user.vivozap.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:35:17.989774 2026] [security2:error] [pid 25990:tid 25990] [client 152.241.68.96:55213] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||natural-history-conservation.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "natural-history-conservation.com"] [uri "/plesiosaur.htm"] [unique_id "aq-axX4ywJkFd4CrfpUK-QAAAAI"], referer: https://en.wikipedia.org/wiki/Plesiosaur
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
34.61.135.56
|
|
(mod_security) mod_security (id:210730) triggered by 34.61.135.56 (56.135.61.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.61.135.56 (56.135.61.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:35:16.037379 2026] [security2:error] [pid 5400:tid 5400] [client 34.61.135.56:42180] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||13waggoners.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "13waggoners.com"] [uri "/z9x8c7v6b5-debug-trigger-13waggoners.com"] [unique_id "aq-axBOQ4JAnu1RD6W43sAAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ฑ
34.176.2.226
|
|
(mod_security) mod_security (id:210492) triggered by 34.176.2.226 (226.2.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.2.226 (226.2.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:35:14.852049 2026] [security2:error] [pid 19612:tid 19612] [client 34.176.2.226:57484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "k0cgy.net"] [uri "/.git/config"] [unique_id "aq-awh5enBrrAtN2WFZThAAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ช
34.62.130.62
|
|
(mod_security) mod_security (id:210492) triggered by 34.62.130.62 (62.130.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.130.62 (62.130.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:35:04.924651 2026] [security2:error] [pid 29174:tid 29174] [client 34.62.130.62:41126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dinkusdrums.com"] [uri "/.git/config"] [unique_id "aq-auMMcUE_4aN_sv_9pKgAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ณ
47.92.51.20
|
|
(mod_security) mod_security (id:210350) triggered by 47.92.51.20 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 47.92.51.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:34:26.962587 2026] [security2:error] [pid 19428:tid 19428] [client 47.92.51.20:56368] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.goldenvalley1.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.goldenvalley1.com"] [uri "/"] [unique_id "aq-akoxwwxWDsBjMeNMUggAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฑ๐น
84.32.244.111
|
|
(mod_security) mod_security (id:210492) triggered by 84.32.244.111 (ip-84-32-244-111.002.ptr.cherrys ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.111 (ip-84-32-244-111.002.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:33:54.300786 2026] [security2:error] [pid 29097:tid 29097] [client 84.32.244.111:52012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wasabioldies.com"] [uri "/.git/info/refs"] [unique_id "aq-achjgAV76l2qiHah1KgAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ช
34.62.46.44
|
|
(mod_security) mod_security (id:210730) triggered by 34.62.46.44 (44.46.62.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210730) triggered by 34.62.46.44 (44.46.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:33:41.116298 2026] [security2:error] [pid 26124:tid 26124] [client 34.62.46.44:47702] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||20dekopas.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "20dekopas.com"] [uri "/z9x8c7v6b5-debug-trigger-20dekopas.com"] [unique_id "aq-aZaVb5v9nFD5oIH-H2AAAAEI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ณ
180.153.236.169
|
|
(mod_security) mod_security (id:210831) triggered by 180.153.236.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210831) triggered by 180.153.236.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:33:28.798381 2026] [security2:error] [pid 944:tid 944] [client 180.153.236.169:6277] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.stevescottcoaching.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.stevescottcoaching.com"] [uri "/"] [unique_id "aq-aWBGdX3VOmYWHvTI-3AAAAAs"], referer: http://www.stevescottcoaching.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ป๐ณ
14.245.12.97
|
|
(mod_security) mod_security (id:210350) triggered by 14.245.12.97 (static.vnpt.vn): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210350) triggered by 14.245.12.97 (static.vnpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:33:17.999017 2026] [security2:error] [pid 21787:tid 21787] [client 14.245.12.97:38976] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||somuchtoread.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "somuchtoread.com"] [uri "/"] [unique_id "aq-aTWplSfHmcXywKQ0juAAAAAQ"], referer: https://vagabondscholar.blogspot.com/2012/03/2011-film-roundup-part-3-noteworthy.html
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ซ๐ฎ
34.88.113.12
|
|
(mod_security) mod_security (id:210492) triggered by 34.88.113.12 (12.113.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.113.12 (12.113.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:33:15.843196 2026] [security2:error] [pid 24631:tid 24631] [client 34.88.113.12:43764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thesiteworks.com"] [uri "/.git/config"] [unique_id "aq-aS31RdpqtREHfDPAEWAAAABE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ณ
180.153.236.87
|
|
(mod_security) mod_security (id:210831) triggered by 180.153.236.87 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210831) triggered by 180.153.236.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:33:12.969530 2026] [security2:error] [pid 5282:tid 5282] [client 180.153.236.87:52149] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.ruizpuche.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.ruizpuche.com"] [uri "/"] [unique_id "aq-aSEdTx-rvETK0p_0bnAAAABc"], referer: http://www.ruizpuche.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ช
34.14.84.253
|
|
(mod_security) mod_security (id:210492) triggered by 34.14.84.253 (253.84.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.84.253 (253.84.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:33:10.110048 2026] [security2:error] [pid 25711:tid 25711] [client 34.14.84.253:36274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "davehalverson.com"] [uri "/.git/config"] [unique_id "aq-aRpI6Fqr5DPMmMqIyjwAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ณ
118.31.112.143
|
|
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:33:03.418636 2026] [security2:error] [pid 24940:tid 24940] [client 118.31.112.143:47530] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||disneyweddinginvitations.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "disneyweddinginvitations.com"] [uri "/"] [unique_id "aq-aPxz7g2t4JxPwNJCfFwAAAB8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ฑ
190.114.43.96
|
|
(mod_security) mod_security (id:210350) triggered by 190.114.43.96 (host190.114.43.96.dynamic.pacifi ...
show more
(mod_security) mod_security (id:210350) triggered by 190.114.43.96 (host190.114.43.96.dynamic.pacificored.cl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:32:45.037623 2026] [security2:error] [pid 8558:tid 8570] [client 190.114.43.96:55790] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.visionforandfromchildren.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.visionforandfromchildren.org"] [uri "/"] [unique_id "aq-aLSUveiC8sRp3ewFNFwAAAQc"], referer: https://tumblr.com/gnjoneswriter/tagged/bamfs all
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ด
153.67.113.154
|
|
(mod_security) mod_security (id:210350) triggered by 153.67.113.154 (customer.bgtacol1.isp.starlink. ...
show more
(mod_security) mod_security (id:210350) triggered by 153.67.113.154 (customer.bgtacol1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:32:41.873424 2026] [security2:error] [pid 8560:tid 8620] [client 153.67.113.154:17451] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||visionforandfromchildren.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "visionforandfromchildren.org"] [uri "/"] [unique_id "aq-aKQ_Xfmu_YH5uNgNkiAAAAcM"], referer: https://tumblr.com/gnjoneswriter/tagged/bamfs all
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ฟ
94.158.58.231
|
|
(mod_security) mod_security (id:210350) triggered by 94.158.58.231 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 94.158.58.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:32:27.803130 2026] [security2:error] [pid 30661:tid 30720] [client 94.158.58.231:2440] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||wicca-love-spells.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "wicca-love-spells.com"] [uri "/"] [unique_id "aq-aG54BAY53048uloh4twAAAM0"], referer: https://mundomisterioso.net/webs-amigas
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
192.40.95.233
|
|
(mod_security) mod_security (id:210492) triggered by 192.40.95.233 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 192.40.95.233 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:32:07.118300 2026] [security2:error] [pid 12979:tid 12979] [client 192.40.95.233:48546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gh057.io"] [uri "/.git/HEAD"] [unique_id "aq-aBw-r40ghCK6hDd_4zwAAABA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|