Anonymous
2024-12-04 05:42:52
(1 year ago)
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2024-12-04 05:10:04
(1 year ago)
Detected as a bad bot
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2024-12-04 05:07:46
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities - 137
Exploited Host
Web App Attack
Anonymous
2024-12-04 05:04:33
(1 year ago)
Http Port:80 (http_status:404) - /vendor.0d3c724de0f2ab138712.js - Agent:Mozilla/5.0 (Windows NT 10. ...
show more
Http Port:80 (http_status:404) - /vendor.0d3c724de0f2ab138712.js - Agent:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/100.0.4896.127 Safari/537.36 OPR/86.0.4363.59
show less
Web App Attack
๐ฆ๐บ
advena
2024-12-04 02:31:04
(1 year ago)
13.215.193.8 (AS16509 AMAZON-02) was intercepted at 2024-12-04T02:16:11Z after violating WAF directi ...
show more
13.215.193.8 (AS16509 AMAZON-02) was intercepted at 2024-12-04T02:16:11Z after violating WAF directive: bot_fight_mode. Pre-cautionary/corrective action applied: managed_challenge.
show less
Web Spam
Hacking
Brute-Force
Web App Attack
๐ฎ๐น
Progetto1
2024-12-04 02:24:02
(1 year ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฌ๐ง
rakkor
2024-12-04 02:21:32
(1 year ago)
2024/12/04 02:21:31 [error] 29530#29530: *307608 open() "/var/services/web/js/jquery.js" failed (2: ...
show more
2024/12/04 02:21:31 [error] 29530#29530: *307608 open() "/var/services/web/js/jquery.js" failed (2: No such file or directory), client: 13.215.193.8, server: , request: "GET /js/jquery.js HTTP/1.1", host: "vpn.rakkor.uk"
2024/12/04 02:21:31 [error] 29533#29533: *307610 open() "/var/services/web/oss.maxcdn.com/libs/respond.js/1.4.2/respond.min.js" failed (2: No such file or directory), client: 13.215.193.8, server: , request: "GET //oss.maxcdn.com/libs/respond.js/1.4.2/respond.min.js HTTP/1.1", host: "vpn.rakkor.uk"
...
show less
Hacking
Brute-Force
Web App Attack
Anonymous
2024-12-04 00:47:36
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
๐จ๐ฆ
polycoda
2024-12-03 23:55:39
(1 year ago)
๐ Probes for tons of inexistent files and PHP scripts
Hacking
Web App Attack
๐ฆ๐บ
clapper
2024-12-03 20:52:05
(1 year ago)
(mod_security) mod_security (id:949110) triggered by 13.215.193.8 (SG/Singapore/ec2-13-215-193-8.ap- ...
show more
(mod_security) mod_security (id:949110) triggered by 13.215.193.8 (SG/Singapore/ec2-13-215-193-8.ap-southeast-1.compute.amazonaws.com): 5 in the last 3600 secs; ID: rub
show less
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-12-03 20:41:37
(1 year ago)
(mod_security) mod_security (id:210831) triggered by 13.215.193.8 (ec2-13-215-193-8.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210831) triggered by 13.215.193.8 (ec2-13-215-193-8.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 03 15:41:29.911632 2024] [security2:error] [pid 25042:tid 25042] [client 13.215.193.8:33636] [client 13.215.193.8] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||thoughtage.org|F|4"] [data "EmailWolf"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "thoughtage.org"] [uri "/"] [unique_id "Z09s-XdPMsICBhIdWdjglAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2024-12-03 20:28:23
(1 year ago)
Multiple critical ModSecurity events
...
Web Spam
Bad Web Bot
Anonymous
2024-12-03 20:08:04
(1 year ago)
Ports: *; Direction: 0; Trigger: CT_LIMIT
Brute-Force
SSH
๐บ๐ธ
ISAFE
2024-12-03 19:59:07
(1 year ago)
13.215.193.8 - - [03/Dec/2024:11:59:07 -0800] "GET //test.isafeventures.com/sites/all/themes/progres ...
show more
13.215.193.8 - - [03/Dec/2024:11:59:07 -0800] "GET //test.isafeventures.com/sites/all/themes/progressive/js/jquery.royalslider.min.js HTTP/1.1" 404 4002 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36"
13.215.193.8 - - [03/Dec/2024:11:59:07 -0800] "GET //oss.maxcdn.com/libs/html5shiv/3.7.0/html5shiv.js HTTP/1.1" 404 3970 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.87 Safari/537.36 OPR/36.0.2130.46"
13.215.193.8 - - [03/Dec/2024:11:59:07 -0800] "GET //test.isafeventures.com/misc/drupal.js HTTP/1.1" 404 3959 "-" "Mozilla/5.0 (Linux; U; Android 2.2; en-us; Sprint APA9292KT Build/FRF91) AppleWebKit/533.1 (KHTML, like Gecko) Version/4.0 Mobile Safari/533.1"
13.215.193.8 - - [03/Dec/2024:11:59:07 -0800] "GET //test.isafeventures.com/misc/jquery-extend-3.4.0.js HTTP/1.1" 404 3972 "-" "Mozilla/5.0 (X11; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/53.0.2785.101
...
show less
Brute-Force
SSH
๐ฉ๐ช
rh24
2024-12-03 19:54:17
(1 year ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 13.215.193.8 (SG/Sin ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 13.215.193.8 (SG/Singapore/ec2-13-215-193-8.ap-southeast-1.compute.amazonaws.com)
show less
Bad Web Bot