๐บ๐ธ
TPI-Abuse
2024-09-28 05:37:57
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 28 01:35:46.447200 2024] [security2:error] [pid 31113:tid 31113] [client 112.193.255.223:35294] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.post35.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.post35.com"] [uri "/2024.sql"] [unique_id "ZveVsn91dH9ARoo8pFL7EgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-12 05:21:23
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 12 01:19:31.886429 2024] [security2:error] [pid 16364:tid 16364] [client 112.193.255.223:13817] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.chafinlaw.net|F|2"] [data ".bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.chafinlaw.net"] [uri "/log.bak"] [unique_id "ZuJ542twZgz9h5PIOHOFtwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-11 17:04:14
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 11 13:02:25.207609 2024] [security2:error] [pid 6752:tid 12100] [client 112.193.255.223:14156] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.aspencommission.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.aspencommission.com"] [uri "/js.sql"] [unique_id "ZuHNIS3g6vZotu40LinikAAAAg4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-07 16:47:56
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 07 12:46:36.360072 2024] [security2:error] [pid 17549:tid 17549] [client 112.193.255.223:14126] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.powerkiteforum.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.powerkiteforum.com"] [uri "/jsp.sql"] [unique_id "ZtyDbINhGeARdloJKgBvHwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-06 11:32:24
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 06 07:31:47.350405 2024] [security2:error] [pid 19318:tid 19318] [client 112.193.255.223:32898] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.balivisaservice.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.balivisaservice.com"] [uri "/1.sql"] [unique_id "ZtroIz-lI0YtNtCiDP-wzAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-05 22:51:52
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 05 18:50:41.862303 2024] [security2:error] [pid 18116:tid 18116] [client 112.193.255.223:34100] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.randallbrooks.com|F|2"] [data ".bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.randallbrooks.com"] [uri "/dump.bak"] [unique_id "Zto1wVRL8sy5XBUHIwvjPAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-05 20:15:29
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 05 16:13:26.926360 2024] [security2:error] [pid 19514:tid 19514] [client 112.193.255.223:34145] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.baselineledsolutions.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.baselineledsolutions.com"] [uri "/db.sql"] [unique_id "ZtoQ5iYsu8-5xZP7CJTk0gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-03 09:42:24
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 03 05:40:13.111764 2024] [security2:error] [pid 13234:tid 13234] [client 112.193.255.223:34215] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.oiseauxsisters.com|F|2"] [data ".bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.oiseauxsisters.com"] [uri "/oiseauxsisters.bak"] [unique_id "ZtbZfWHdmoMW_kV1PXRW8gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
Charles
2024-09-02 21:47:02
(2 years ago)
112.193.255.223 - - [03/Sep/2024:05:45:50 +0800] "GET /wordpress.sql.gz HTTP/1.1" 404 2110 "-" "Mozi ...
show more
112.193.255.223 - - [03/Sep/2024:05:45:50 +0800] "GET /wordpress.sql.gz HTTP/1.1" 404 2110 "-" "Mozilla/5.0 (X11; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/66.0.3359.117 Safari/537.36 OPR/53.0.2907.99"
...
show less
Web Spam
Email Spam
Brute-Force
Bad Web Bot
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2024-09-01 18:13:40
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 01 14:12:04.507538 2024] [security2:error] [pid 28474:tid 28474] [client 112.193.255.223:33129] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.highaltitudebaking.com|F|2"] [data ".bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.highaltitudebaking.com"] [uri "/php.bak"] [unique_id "ZtSudBor6tXP9GQ8ejM8TAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-01 12:48:22
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 01 08:47:05.286843 2024] [security2:error] [pid 20117:tid 20117] [client 112.193.255.223:33575] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.tanny.com|F|2"] [data ".tanny.com.backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.tanny.com"] [uri "/www.tanny.com.backup"] [unique_id "ZtRiSWHKOQZHT21jh4KphQAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-28 08:21:52
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 28 04:19:40.737595 2024] [security2:error] [pid 2089549:tid 2089549] [client 112.193.255.223:6389] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.ixd.net|F|2"] [data ".bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.ixd.net"] [uri "/2019.bak"] [unique_id "Zs7dnG2WMN85x8XnEtCOLwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-27 22:16:03
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 27 18:13:55.373642 2024] [security2:error] [pid 3272110:tid 3272110] [client 112.193.255.223:7518] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.i-med.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.i-med.com"] [uri "/2011.sql"] [unique_id "Zs5Po2Xu2CP7Xhd4WRYHCgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-26 02:46:45
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 25 22:44:10.159290 2024] [security2:error] [pid 21535:tid 21535] [client 112.193.255.223:44178] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.iconconstructors.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.iconconstructors.com"] [uri "/2010.sql"] [unique_id "Zsvr-rY2MkqrVzbS5Cbt0wAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-25 15:21:09
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 112.193.255.223 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 25 11:18:21.105856 2024] [security2:error] [pid 32204:tid 32256] [client 112.193.255.223:43635] [client 112.193.255.223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.larryfoussconstruction.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.larryfoussconstruction.com"] [uri "/2010.sql"] [unique_id "ZstLPZK46S2opVzGTBjw6QAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack