|
π§π·
diego
|
|
Events: TCP SYN Discovery or Flooding, Seen 3 times in the last 10800 seconds
|
DDoS Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 19:01:46.893787 2024] [security2:error] [pid 7397] [client 149.36.51.131:26435] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "depthsofsatan.com"] [uri "/wordpress/wp-config.php.bak"] [unique_id "Zdfgal5-Bb3FzgI-Otb4GQAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 18:07:52.034211 2024] [security2:error] [pid 23594] [client 149.36.51.131:25739] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dbfitwell.com"] [uri "/wp-config.php.bak"] [unique_id "ZdfTyJrMH51pzB5I17oVHwAAABA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 17:29:26.278753 2024] [security2:error] [pid 8090] [client 149.36.51.131:60709] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.daisydoesoap.com"] [uri "/wp-config.php.bak"] [unique_id "ZdfKxgj-LZhMCSIhh_7ObAAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 15:20:02.201964 2024] [security2:error] [pid 12930] [client 149.36.51.131:10785] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.computerservicesofflorida.com"] [uri "/wp-config.php.bak"] [unique_id "ZdescomwZeLVtloi0RHMAQAAABE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 14:30:19.350969 2024] [security2:error] [pid 18352] [client 149.36.51.131:44951] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cmcnow.net"] [uri "/wp-config.php.bak"] [unique_id "Zdegy2JeVzOdJ2Euu3lfKgAAAAo"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π·π΄
INTEQ
|
|
Web attack from 149.36.51.131
|
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 14:15:10.737497 2024] [security2:error] [pid 26865] [client 149.36.51.131:59405] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "climasyequipos.com"] [uri "/wp-config.php.bak"] [unique_id "ZdedPmd6bXnLQH53-x_jJQAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 13:50:12.953985 2024] [security2:error] [pid 14228] [client 149.36.51.131:25379] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.citizensforsanity.com"] [uri "/wp-config.php.bak"] [unique_id "ZdeXZBNYf1OC3TUV6R8TRgAAABA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 13:10:19.755553 2024] [security2:error] [pid 28732] [client 149.36.51.131:27791] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chicagoinquirer.com"] [uri "/wp-config.php.bak"] [unique_id "ZdeOC-0HadtvfjcOEYJQSgAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 12:47:08.758413 2024] [security2:error] [pid 10943:tid 47618847684352] [client 149.36.51.131:30681] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chaoticperception.com"] [uri "/wp-config.php.bak"] [unique_id "ZdeInC2grjuXGCkzdKzcMAAAAEM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 12:13:45.641870 2024] [security2:error] [pid 19877] [client 149.36.51.131:17709] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "celebritybikinigossip.com"] [uri "/wp-config.php.bak"] [unique_id "ZdeAyaTvkG1e0jztn9576wAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 11:53:01.690501 2024] [security2:error] [pid 30253] [client 149.36.51.131:24867] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cathybermanmft.com"] [uri "/wp-config.php.bak"] [unique_id "Zdd77bPvcQeNMqLRO4W2eAAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 11:35:04.203475 2024] [security2:error] [pid 8379] [client 149.36.51.131:65405] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "casadelsolmexico.net"] [uri "/wp-config.php.bak"] [unique_id "Zdd3uIvrazqlCoUumrJBJQAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 149.36.51.131 (unn-149-36-51-131.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 22 10:29:30.971892 2024] [security2:error] [pid 1501] [client 149.36.51.131:24141] [client 149.36.51.131] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.calvarycavaliers.org"] [uri "/wp-config.php.bak"] [unique_id "ZddoWkIin1GJQx36tqOjHAAAABA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|