๐ณ๐ฑ
WeCloudit-Anti-Abuse
2024-07-30 14:48:43
(1 year ago)
SPAM - Bruteforce Attack - DDOS 3
Email Spam
Brute-Force
๐จ๐ญ
zynex
2024-07-05 06:51:28
(1 year ago)
URL Probing: /wp-pano.php
Web App Attack
Anonymous
2024-07-05 05:01:56
(1 year ago)
Fail2Ban apache-noscript
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-07-04 12:13:30
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 04 08:13:24.604292 2024] [security2:error] [pid 19280] [client 104.248.152.130:54281] [client 104.248.152.130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jhollingshead.com"] [uri "/wp-config.php"] [unique_id "ZoaR5EWhaDRXxuQPCiXn3gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2024-07-03 22:24:01
(1 year ago)
104.248.152.130 - - [04/Jul/2024:01:24:00 +0300] "GET /wp-content/plugins/Cache/dropdown.php HTTP/1. ...
show more
104.248.152.130 - - [04/Jul/2024:01:24:00 +0300] "GET /wp-content/plugins/Cache/dropdown.php HTTP/1.1" 404 438 "-" "fasthttp"
104.248.152.130 - - [04/Jul/2024:01:24:01 +0300] "GET /cgi-bin/cgi-bin/about.php HTTP/1.1" 404 438 "-" "fasthttp"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-03 21:51:35
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 03 17:51:30.604521 2024] [security2:error] [pid 31497] [client 104.248.152.130:62077] [client 104.248.152.130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dev.ianmagarzo.com"] [uri "/wp-config.php"] [unique_id "ZoXH4vEe8Vp4zxphI8mY-gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-03 21:19:27
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 03 17:19:21.479362 2024] [security2:error] [pid 23094] [client 104.248.152.130:50846] [client 104.248.152.130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "muddybuddypals.com.halotoys.com"] [uri "/wp-config.php"] [unique_id "ZoXAWQ238t2Lv2kKphKbzQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐บ
HoneyPotEU02
2024-07-03 14:37:21
(1 year ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-03 05:27:29
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 03 01:27:25.333119 2024] [security2:error] [pid 30084] [client 104.248.152.130:62204] [client 104.248.152.130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "photoboothtogo.com"] [uri "/wp-config.php"] [unique_id "ZoThPUYWF5VpggtSV8rtmAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-02 18:36:24
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 02 14:36:17.597417 2024] [security2:error] [pid 27763] [client 104.248.152.130:54085] [client 104.248.152.130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "valerieohayon.com"] [uri "/wp-config.php"] [unique_id "ZoRIodnsYxyREmLxHPJ9rQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐บ
HoneyPotEU02
2024-07-02 15:02:39
(1 year ago)
wordpress-trap
Web App Attack
Anonymous
2024-06-27 22:40:53
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2024-06-23 01:14:29
(1 year ago)
Ports: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096, ...
show more
Ports: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096,3306,2195; Direction: 0; Trigger: LF_CUSTOMTRIGGER
show less
Brute-Force
SSH
๐ฆ๐บ
advena
2024-06-20 13:01:00
(1 year ago)
104.248.152.130 (AS14061 DIGITALOCEAN-ASN) was intercepted at 2024-06-20T12:52:17Z after violating W ...
show more
104.248.152.130 (AS14061 DIGITALOCEAN-ASN) was intercepted at 2024-06-20T12:52:17Z after violating WAF directive: 874a3e315c344b1281ad4f00046aab6f. Pre-cautionary/corrective action applied: block.
show less
Web Spam
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-06-20 05:00:20
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 104.248.152.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 20 01:00:14.020287 2024] [security2:error] [pid 1570] [client 104.248.152.130:64582] [client 104.248.152.130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blosoms.org"] [uri "/wp-config.php"] [unique_id "ZnO3XqMbbh9AG22tGplcMwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack