|
๐ณ๐ฟ
45.133.7.22
|
|
(mod_security) mod_security (id:240000) triggered by 45.133.7.22 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240000) triggered by 45.133.7.22 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:49:35.249984 2026] [security2:error] [pid 1245283:tid 1245283] [client 45.133.7.22:46393] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||www.manmadegulliblewarming.banis-associates.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "www.manmadegulliblewarming.banis-associates.com"] [uri "/images/stories/themes.php"] [unique_id "anyH_57i4gZfuWqDXAW-SgAAABU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
34.139.125.213
|
|
(mod_security) mod_security (id:225170) triggered by 34.139.125.213 (213.125.139.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:225170) triggered by 34.139.125.213 (213.125.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:49:21.688540 2026] [security2:error] [pid 8128:tid 8128] [client 34.139.125.213:50877] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||papelandia.com.ve|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "papelandia.com.ve"] [uri "/wp-json/wp/v2/users/"] [unique_id "anyH8eF2SG60vtOb8lKyCQAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ต๐ฑ
77.91.8.251
|
|
(mod_security) mod_security (id:225170) triggered by 77.91.8.251 (user8-251.satfilm.com.pl): 1 in th ...
show more
(mod_security) mod_security (id:225170) triggered by 77.91.8.251 (user8-251.satfilm.com.pl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:49:17.909577 2026] [security2:error] [pid 8601:tid 8601] [client 77.91.8.251:51741] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rohanbyles.com.au|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rohanbyles.com.au"] [uri "/wp-json/wp/v2/users"] [unique_id "anyH7dAoLto-D-qQnxVaLAAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
189.81.5.99
|
|
(mod_security) mod_security (id:210730) triggered by 189.81.5.99 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 189.81.5.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:49:10.632089 2026] [security2:error] [pid 4563:tid 4563] [client 189.81.5.99:16118] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.borzois.com|F|2"] [data ".borzois.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.borzois.com"] [uri "/www.borzois.com"] [unique_id "anyH5ib5LmwNffL6dCnwEQAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ต๐ญ
154.56.114.187
|
|
(mod_security) mod_security (id:240335) triggered by 154.56.114.187 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 154.56.114.187 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:49:01.381830 2026] [security2:error] [pid 1664139:tid 1664139] [client 154.56.114.187:65398] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 154.56.114.187 (+1 hits since last alert)|tcomputerguy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "tcomputerguy.com"] [uri "/xmlrpc.php"] [unique_id "anyH3cBHO--Z-yH22Vow4gAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
35.233.226.242
|
|
(mod_security) mod_security (id:225170) triggered by 35.233.226.242 (242.226.233.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:225170) triggered by 35.233.226.242 (242.226.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:48:55.423342 2026] [security2:error] [pid 571:tid 571] [client 35.233.226.242:58107] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||magazine.angelabcomics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "magazine.angelabcomics.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "anyH1_xV_9vEJp3qWPxTuQAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
136.67.7.253
|
|
(mod_security) mod_security (id:225170) triggered by 136.67.7.253 (253.7.67.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 136.67.7.253 (253.7.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:48:48.715803 2026] [security2:error] [pid 1186123:tid 1186123] [client 136.67.7.253:51438] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.zost.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.zost.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "anyH0HOglQkUgo-PuHCh0QAAABU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
35.252.133.58
|
|
(mod_security) mod_security (id:225170) triggered by 35.252.133.58 (58.133.252.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 35.252.133.58 (58.133.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:48:35.792895 2026] [security2:error] [pid 1349264:tid 1349264] [client 35.252.133.58:52479] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.darkalleyproductions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.darkalleyproductions.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "anyHw6larQ2JhM0Rr99DogAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
192.141.114.19
|
|
(mod_security) mod_security (id:225170) triggered by 192.141.114.19 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 192.141.114.19 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:48:33.451270 2026] [security2:error] [pid 2105693:tid 2105693] [client 192.141.114.19:52920] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||reyadecostarica.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "reyadecostarica.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anyHwXFk-gcbFSWBwqStoAAAAAg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฟ๐ฆ
139.84.243.201
|
|
(mod_security) mod_security (id:240335) triggered by 139.84.243.201 (139.84.243.201.youbroadband.co. ...
show more
(mod_security) mod_security (id:240335) triggered by 139.84.243.201 (139.84.243.201.youbroadband.co.ke): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:48:26.330002 2026] [security2:error] [pid 1186357:tid 1186357] [client 139.84.243.201:51036] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 139.84.243.201 (+1 hits since last alert)|cier.xyz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "cier.xyz"] [uri "/wpsite/xmlrpc.php"] [unique_id "anyHutu9cq8hRV1x3fuuAQAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
2600:1f18:1da2:2600:b777:bd9b:8a9d:76f1
|
|
(mod_security) mod_security (id:225170) triggered by 2600:1f18:1da2:2600:b777:bd9b:8a9d:76f1 (Unknow ...
show more
(mod_security) mod_security (id:225170) triggered by 2600:1f18:1da2:2600:b777:bd9b:8a9d:76f1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:48:19.838999 2026] [security2:error] [pid 27158:tid 27263] [client 2600:1f18:1da2:2600:b777:bd9b:8a9d:76f1:33148] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||arizonasolutionsgroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "arizonasolutionsgroup.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "anyHszeaC3eRC7zY_1OLdQAAAM8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
34.23.55.126
|
|
(mod_security) mod_security (id:225170) triggered by 34.23.55.126 (126.55.23.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:225170) triggered by 34.23.55.126 (126.55.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:48:19.117139 2026] [security2:error] [pid 1002564:tid 1002564] [client 34.23.55.126:61674] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.esysapps.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.esysapps.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "anyHs_gN4TTo50uJpjMWXQAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ณ
119.91.58.74
|
|
(mod_security) mod_security (id:210831) triggered by 119.91.58.74 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 119.91.58.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:58.988797 2026] [security2:error] [pid 27155:tid 27165] [client 119.91.58.74:53193] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.sweeneyzone.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.sweeneyzone.com"] [uri "/"] [unique_id "anyHngsnCSctJizb1T45IgAAAAI"], referer: https://m.baidu.com/s?word=www.vzth.cn
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
205.134.255.185
|
|
(mod_security) mod_security (id:225170) triggered by 205.134.255.185 (secure.patientdrive.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 205.134.255.185 (secure.patientdrive.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:53.754235 2026] [security2:error] [pid 9819:tid 9819] [client 205.134.255.185:41362] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||livingminimal.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "livingminimal.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "anyHmXJXE-uiU9SGGVUKvAAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
177.69.18.9
|
|
(mod_security) mod_security (id:240335) triggered by 177.69.18.9 (177-069-018-009.static.ctbctelecom ...
show more
(mod_security) mod_security (id:240335) triggered by 177.69.18.9 (177-069-018-009.static.ctbctelecom.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:42.466560 2026] [security2:error] [pid 949184:tid 949184] [client 177.69.18.9:57098] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 177.69.18.9 (+1 hits since last alert)|renjunews.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "renjunews.com"] [uri "/xmlrpc.php"] [unique_id "anyHjjtlr_lFt39BYMKWLAAAABE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ช
34.53.129.63
|
|
(mod_security) mod_security (id:210730) triggered by 34.53.129.63 (63.129.53.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.53.129.63 (63.129.53.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:37.486320 2026] [security2:error] [pid 3448662:tid 3448662] [client 34.53.129.63:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.aslanhan.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.aslanhan.com"] [uri "/rclone.conf"] [unique_id "anyHiYL9CuhbSvPR5kzWugAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
136.70.105.24
|
|
(mod_security) mod_security (id:225170) triggered by 136.70.105.24 (24.105.70.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 136.70.105.24 (24.105.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:29.850678 2026] [security2:error] [pid 2718109:tid 2718109] [client 136.70.105.24:60028] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||capitalcitysoul.com.calvaryshreveport.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "capitalcitysoul.com.calvaryshreveport.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "anyHgYewhw23JvYQcoIXugAAAB4"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
69.30.231.90
|
|
(mod_security) mod_security (id:225170) triggered by 69.30.231.90 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 69.30.231.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:28.480258 2026] [security2:error] [pid 1821465:tid 1821465] [client 69.30.231.90:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.southernbroadcast.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.southernbroadcast.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "anyHgCyuhYmsjKo2A0xX4wAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ณ
111.225.214.194
|
|
(mod_security) mod_security (id:210730) triggered by 111.225.214.194 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 111.225.214.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:12.707366 2026] [security2:error] [pid 1250000:tid 1250000] [client 111.225.214.194:9825] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||phantomkennels.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "phantomkennels.com"] [uri "/phantomkennels.com"] [unique_id "anyHcOboLvVTtxg2by4E5gAAABs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ป๐ณ
42.114.24.45
|
|
(mod_security) mod_security (id:240335) triggered by 42.114.24.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 42.114.24.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:46:59.806219 2026] [security2:error] [pid 3577462:tid 3577462] [client 42.114.24.45:53145] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 42.114.24.45 (+1 hits since last alert)|convtek.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "convtek.com"] [uri "/xmlrpc.php"] [unique_id "anyHY71BAuUrAiBPeXu5gQAAABA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ณ
103.203.208.83
|
|
(mod_security) mod_security (id:240335) triggered by 103.203.208.83 (node10320320883.kkdbroadband.co ...
show more
(mod_security) mod_security (id:240335) triggered by 103.203.208.83 (node10320320883.kkdbroadband.co.in): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:06.278379 2026] [security2:error] [pid 1116056:tid 1116056] [client 103.203.208.83:41690] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 103.203.208.83 (+1 hits since last alert)|naturalhomebuilders.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "naturalhomebuilders.com"] [uri "/xmlrpc.php"] [unique_id "anyHatqv6B7o2b3PpQZ6vgAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ช
155.2.195.52
|
|
(mod_security) mod_security (id:225170) triggered by 155.2.195.52 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 155.2.195.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:03.760620 2026] [security2:error] [pid 3104065:tid 3104072] [client 155.2.195.52:44853] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||emehache.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "emehache.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "anyHZ73HqJaCYwy8jUlXNQAAAMI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ธ
202.181.177.215
|
|
(mod_security) mod_security (id:211220) triggered by 202.181.177.215 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:211220) triggered by 202.181.177.215 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:47:01.140412 2026] [security2:error] [pid 73030:tid 73030] [client 202.181.177.215:36374] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<\\\\?(?!xml\\\\s)" at ARGS:vars[0]. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "70"] [id "211220"] [rev "4"] [msg "COMODO WAF: PHP Injection Attack||www.copiershickory.computersraleigh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.copiershickory.computersraleigh.com"] [uri "/index.php"] [unique_id "anyHZQhNMjap40SGq5nnHgAAABM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ซ๐ท
91.108.115.115
|
|
(mod_security) mod_security (id:210492) triggered by 91.108.115.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.108.115.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:46:58.203823 2026] [security2:error] [pid 286127:tid 286127] [client 91.108.115.115:27618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karenjoyce.com"] [uri "/core/.env"] [unique_id "anyHYr-8IW7U0fnf5bW1kgAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐จ๐ด
45.167.124.173
|
|
(mod_security) mod_security (id:217210) triggered by 45.167.124.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:217210) triggered by 45.167.124.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 10:46:51.488042 2026] [security2:error] [pid 1180437:tid 1180437] [client 45.167.124.173:51710] ModSecurity: Access denied with code 403 (phase 2). Match of "rx ^(?i:(?:[a-z]{3,10}\\\\s+(?:\\\\w{3,7}?://[\\\\w\\\\-\\\\./]*(?::\\\\d+)?)?/[^?#]*(?:\\\\?[^#\\\\s]*)?(?:#[\\\\S]*)?|connect (?:\\\\d{1,3}\\\\.){3}\\\\d{1,3}\\\\.?(?::\\\\d+)?|options \\\\*)\\\\s+[\\\\w\\\\./]+|get /[^?#]*(?:\\\\?[^#\\\\s]*)?(?:#[\\\\S]*)?)$" against "REQUEST_LINE" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "114"] [id "217210"] [rev "1"] [msg "COMODO WAF: Invalid HTTP Request Line||www.cain2012.org|F|4"] [data "GET http://www.cain2012.org HTTP/1.1"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.cain2012.org"] [uri "/"] [unique_id "anyHW5oTCKJUgDhMF8tN4AAAABI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|