๐บ๐ธ
ds6.net
2024-11-21 03:37:35
(1 year ago)
Blocked by CSF Firewall. Reason: lfd: (mod_security) mod_security (id:225170) triggered by 150.241.8 ...
show more
Blocked by CSF Firewall. Reason: lfd: (mod_security) mod_security (id:225170) triggered by 150.241.89.104 (US/United States/jealous-dock.aeza.network): 5 in the last 3600 secs - Sun Oct 27 02:42:25 2024
show less
Hacking
๐บ๐ธ
octageeks.com
2024-10-28 04:06:09
(1 year ago)
Wordpress malicious attack:[octa404]
Web App Attack
๐น๐ท
selahattinalan
2024-10-27 12:35:53
(1 year ago)
150.241.89.104 - - [27/Oct/2024:15:35:52 +0300] "POST /xmlrpc.php HTTP/1.1" 200 3836 "-" "Apache-Htt ...
show more
150.241.89.104 - - [27/Oct/2024:15:35:52 +0300] "POST /xmlrpc.php HTTP/1.1" 200 3836 "-" "Apache-HttpClient/4.5.13 (Java/11.0.24)"
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-10-27 12:29:27
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 27 08:29:20.382919 2024] [security2:error] [pid 25140:tid 25140] [client 150.241.89.104:60872] [client 150.241.89.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aeongames.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aeongames.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zx4yIG_jE42nFUIfXLNfsgAAAA0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-27 12:13:55
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 27 08:13:51.164829 2024] [security2:error] [pid 25248:tid 25248] [client 150.241.89.104:48684] [client 150.241.89.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||five21.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "five21.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zx4uf86f9wUJuIk_Kiob3gAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-27 11:13:17
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 27 07:13:13.806108 2024] [security2:error] [pid 11901:tid 11901] [client 150.241.89.104:36996] [client 150.241.89.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||3penguinsdesign.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "3penguinsdesign.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zx4gSZOs-0CWCys2TeyeGAAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
INTEQ
2024-10-27 11:13:12
(1 year ago)
Web attack from 150.241.89.104
Web App Attack
๐ฉ๐ช
FeG Deutschland
2024-10-27 11:04:01
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities - 135
Exploited Host
Web App Attack
๐ง๐ช
taivas.nl
2024-10-27 11:02:11
(1 year ago)
Wordpress_xmlrpc_attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-10-27 09:47:46
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 27 05:47:42.667779 2024] [security2:error] [pid 12926:tid 12926] [client 150.241.89.104:60370] [client 150.241.89.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blacksheepoffroad.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blacksheepoffroad.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zx4MPqHH0Nd9SEYILnXNWwAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2024-10-27 09:44:31
(1 year ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-27 09:16:47
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 27 05:16:42.283182 2024] [security2:error] [pid 12811:tid 12811] [client 150.241.89.104:48212] [client 150.241.89.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lawrencehale.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lawrencehale.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zx4E-s6H4cQhpPOFWxAu7gAAAAc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-27 08:31:06
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 27 04:30:59.459535 2024] [security2:error] [pid 5316:tid 5316] [client 150.241.89.104:42408] [client 150.241.89.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||primacomm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "primacomm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zx36Qw0KuxMv08VqWNUwigAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2024-10-27 07:51:53
(1 year ago)
Blocked user enumeration attempt
Hacking
๐บ๐ธ
TPI-Abuse
2024-10-27 07:28:14
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 150.241.89.104 (jealous-dock.aeza.network): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 27 03:28:10.132955 2024] [security2:error] [pid 10072:tid 10072] [client 150.241.89.104:55970] [client 150.241.89.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sahinozalit.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sahinozalit.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zx3riiHo9F0i_X5QuQgDeQAAABk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack