๐ฆ๐บ
MAGIC
2024-07-06 15:03:52
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ณ๐ฑ
Linuxmalwarehuntingnl
2024-07-01 10:34:48
(2 years ago)
Unauthorized connection attempt
Brute-Force
๐บ๐ธ
raymarron.com
2024-06-21 14:11:50
(2 years ago)
/wp-config.php.bak
Exploited Host
Web App Attack
Anonymous
2024-06-18 08:25:00
(2 years ago)
Blocked by firewall for Known malicious User-Agents
18/06/2024 06:41:59 (2 hours 43 mins ago)
IP ...
show more
Blocked by firewall for Known malicious User-Agents
18/06/2024 06:41:59 (2 hours 43 mins ago)
IP: 149.102.237.36 Hostname: unn-149-102-237-36.datapacket.com
Human/Bot: Human
Mozilla/5.0 (Windows NT 10.0; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
show less
Hacking
Web App Attack
๐ง๐ท
hostseries
2024-06-18 06:14:31
(2 years ago)
Trigger: LF_MODSEC
Brute-Force
๐ง๐ช
taivas.nl
2024-06-18 04:32:34
(2 years ago)
Many_bad_calls
Web App Attack
๐ฆ๐บ
MAGIC
2024-06-18 04:00:11
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-06-17 21:08:11
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 149.102.237.36 (unn-149-102-237-36.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 149.102.237.36 (unn-149-102-237-36.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 17 17:08:05.839911 2024] [security2:error] [pid 1268356:tid 47380970632960] [client 149.102.237.36:16625] [client 149.102.237.36] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tobiume-shounika.com"] [uri "/wp-config.php.bak"] [unique_id "ZnCltb4LKxMoUAkn8cnwrAAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
akac
2024-06-17 20:02:11
(2 years ago)
Web vulnerability scanning: HTTP/1.0 GET /wp-config.php.bak
Hacking
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-06-17 19:14:08
(2 years ago)
[20:14:06] 4: Exploit attempt against non-existent file - /wp-config.php.bak
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-06-17 18:07:43
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 149.102.237.36 (unn-149-102-237-36.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 149.102.237.36 (unn-149-102-237-36.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 17 14:07:37.578608 2024] [security2:error] [pid 20040] [client 149.102.237.36:29447] [client 149.102.237.36] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingmanrents.com"] [uri "/wp-config.php.bak"] [unique_id "ZnB7acb1t0cZv4kU3SQ33gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
taivas.nl
2024-06-17 16:02:14
(2 years ago)
Bad_requests
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-06-17 14:09:36
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 149.102.237.36 (unn-149-102-237-36.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 149.102.237.36 (unn-149-102-237-36.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 17 10:09:31.995783 2024] [security2:error] [pid 31709] [client 149.102.237.36:28403] [client 149.102.237.36] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dodojuice.com"] [uri "/wp-config.php.bak"] [unique_id "ZnBDm_C0uA9c4EJoXlMJHgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-06-17 11:24:39
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 149.102.237.36 (unn-149-102-237-36.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 149.102.237.36 (unn-149-102-237-36.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 17 07:24:35.273997 2024] [security2:error] [pid 14836] [client 149.102.237.36:17993] [client 149.102.237.36] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "namefinder.com"] [uri "/wp-config.php.bak"] [unique_id "ZnAc8yOu0DrSwvl0cUpw5gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
syokadmin
2024-06-17 10:35:11
(2 years ago)
(mod_security) mod_security (id:77350212) triggered by 149.102.237.36 (IT/Italy/unn-149-102-237-36.d ...
show more
(mod_security) mod_security (id:77350212) triggered by 149.102.237.36 (IT/Italy/unn-149-102-237-36.datapacket.com): 1 in the last 3600 secs
show less
Brute-Force