Anonymous
2023-05-17 21:51:21
(3 years ago)
(mod_security,apache-scanners) Login failure/trigger from 109.234.162.207 (FR/France/109-234-162-207 ...
show more
(mod_security,apache-scanners) Login failure/trigger from 109.234.162.207 (FR/France/109-234-162-207.reverse.odns.fr)
show less
Port Scan
SQL Injection
๐ฉ๐ฐ
buusbudde.dk
2023-05-15 22:57:16
(3 years ago)
[Tue May 16 00:57:15.470697 2023] [:error] [pid 1309698] [client 109.234.162.207:46446] [client 109. ...
show more
[Tue May 16 00:57:15.470697 2023] [:error] [pid 1309698] [client 109.234.162.207:46446] [client 109.234.162.207] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "juliabudde.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZGK4y-MCKaikvADNtYVp_wAAAAI"]
[Tue May 16 00:57:15.823974 2023] [:error] [pid 1304318] [client 109.234.162.207:46484] [client 109.234.162.207] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 15)"] [severity "CRITI
...
show less
Web App Attack
๐ฌ๐ง
lgirvin
2023-05-15 22:31:56
(3 years ago)
[Mon May 15 23:31:55.584259 2023] [access_compat:error] [pid 132968] [client 109.234.162.207:45344] ...
show more
[Mon May 15 23:31:55.584259 2023] [access_compat:error] [pid 132968] [client 109.234.162.207:45344] AH01797: client denied by server configuration: /var/www/html/luke/wp-admin/admin-ajax.php
...
show less
Web App Attack
๐บ๐ธ
gu-alvareza
2023-05-14 07:05:14
(3 years ago)
WordPress.HTTP.Path.Traversal
Hacking
Web App Attack
๐ง๐ท
AC - Team
2023-05-11 03:54:57
(3 years ago)
109.234.162.207 - - [11/May/2023:00:55:00 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_dow ...
show more
109.234.162.207 - - [11/May/2023:00:55:00 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_download&file=../wp-config.php HTTP/1.1" 301 666 "-" "Chrome"
...
show less
Hacking
Web App Attack
๐ง๐ท
AC - Team
2023-05-10 23:32:49
(3 years ago)
109.234.162.207 - - [10/May/2023:20:32:48 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_dow ...
show more
109.234.162.207 - - [10/May/2023:20:32:48 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_download&file=../wp-config.php HTTP/1.1" 301 691 "-" "Chrome"
...
show less
Hacking
Web App Attack
๐ฉ๐ฐ
buusbudde.dk
2023-05-10 20:43:31
(3 years ago)
[Wed May 10 22:43:29.923049 2023] [:error] [pid 1292397] [client 109.234.162.207:56312] [client 109. ...
show more
[Wed May 10 22:43:29.923049 2023] [:error] [pid 1292397] [client 109.234.162.207:56312] [client 109.234.162.207] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "juliabudde.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZFwB8Rcgceknv9zZXyhD9gAAAAQ"]
[Wed May 10 22:43:30.282318 2023] [:error] [pid 1292476] [client 109.234.162.207:56336] [client 109.234.162.207] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 15)"] [severity "CRITI
...
show less
Web App Attack
๐ฌ๐ง
lgirvin
2023-05-10 20:15:53
(3 years ago)
[Wed May 10 21:15:52.412904 2023] [access_compat:error] [pid 2671004] [client 109.234.162.207:50842] ...
show more
[Wed May 10 21:15:52.412904 2023] [access_compat:error] [pid 2671004] [client 109.234.162.207:50842] AH01797: client denied by server configuration: /var/www/html/luke/wp-admin/admin-ajax.php
...
show less
Web App Attack
Anonymous
2023-05-10 08:31:09
(3 years ago)
Malicious activity detected
Hacking
Brute-Force
๐ง๐ท
AC - Team
2023-05-10 00:36:20
(3 years ago)
109.234.162.207 - - [09/May/2023:21:36:23 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_dow ...
show more
109.234.162.207 - - [09/May/2023:21:36:23 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_download&file=../wp-config.php HTTP/1.1" 301 680 "-" "Chrome"
...
show less
Hacking
Web App Attack
๐ง๐ท
AC - Team
2023-05-10 00:10:41
(3 years ago)
109.234.162.207 - - [09/May/2023:21:10:41 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_dow ...
show more
109.234.162.207 - - [09/May/2023:21:10:41 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_download&file=../wp-config.php HTTP/1.1" 301 666 "-" "Chrome"
...
show less
Hacking
Web App Attack
๐ง๐ท
AC - Team
2023-05-09 22:35:41
(3 years ago)
109.234.162.207 - - [09/May/2023:19:35:39 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_dow ...
show more
109.234.162.207 - - [09/May/2023:19:35:39 -0300] "GET /wp-admin/admin-ajax.php?action=duplicator_download&file=../wp-config.php HTTP/1.1" 400 664 "-" "Chrome"
...
show less
Hacking
Web App Attack
๐ซ๐ท
rellik
2023-03-21 11:57:00
(3 years ago)
Mass Scanning Criticals Files
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
rellik
2023-03-20 23:17:00
(3 years ago)
Mass Scanning Criticals Files
Hacking
Brute-Force
Web App Attack
๐ง๐ท
AC - Team
2023-03-14 18:33:46
(3 years ago)
109.234.162.207 - - [14/Mar/2023:15:33:43 -0300] "GET /wp-admin/admin-ajax.php?action=revslider_show ...
show more
109.234.162.207 - - [14/Mar/2023:15:33:43 -0300] "GET /wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php HTTP/1.1" 400 794 "-" "Chrome"
...
show less
Hacking
Web App Attack