๐บ๐ธ
TPI-Abuse
2024-04-01 22:08:58
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 01 18:08:55.174182 2024] [security2:error] [pid 1640:tid 47059906361088] [client 167.71.208.82:54316] [client 167.71.208.82] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.andyboynton.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.andyboynton.com"] [uri "/wordpress/wp-json/wp/v2/users/"] [unique_id "Zgswdwu9IHMRWyk4oqaCWAAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2024-04-01 21:56:03
(2 years ago)
URL Probing: /de/seppi/xmlrpc.php
Web App Attack
๐ฉ๐ช
sverson
2024-04-01 15:36:00
(2 years ago)
Abusive use detected / Wordpress Attack Attempt
Hacking
Web App Attack
๐ฉ๐ช
conseilgouz
2024-04-01 15:07:01
(2 years ago)
vee-7 : Trying access unauthorized files/dir=>//wp-includes/wlwmanifest.xml
Hacking
๐ง๐ช
taivas.nl
2024-04-01 15:02:10
(2 years ago)
Bad_requests
Bad Web Bot
๐บ๐ธ
NXTwoThou
2024-04-01 14:18:00
(2 years ago)
BadRequest
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-01 13:34:55
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 01 09:34:50.345979 2024] [security2:error] [pid 28570] [client 167.71.208.82:57376] [client 167.71.208.82] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.calvarycavaliers.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.calvarycavaliers.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "Zgq3-vyiZf9jnv5h9xnVGQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
francoisunix
2024-04-01 07:25:34
(2 years ago)
167.71.208.82 - - [01/Apr/2024:07:25:05 +0000] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 1 ...
show more
167.71.208.82 - - [01/Apr/2024:07:25:05 +0000] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
167.71.208.82 - - [01/Apr/2024:07:25:06 +0000] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
167.71.208.82 - - [01/Apr/2024:07:25:06 +0000] "GET //xmlrpc.php?rsd HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
conseilgouz
2024-04-01 05:46:19
(2 years ago)
ece-7 : Trying access unauthorized files/dir=>//wp-includes/wlwmanifest.xml
Hacking
๐ฉ๐ช
conseilgouz
2024-04-01 00:35:38
(2 years ago)
doe-7 : Trying access unauthorized files/dir=>//wp-includes/wlwmanifest.xml
Hacking
๐ฉ๐ช
ps-center
2024-03-31 21:27:40
(2 years ago)
ABV: Web Attack GET /ch-links-verlag/wp-includes/wlwmanifest.xml
Web Spam
Hacking
Bad Web Bot
Web App Attack
Anonymous
2024-03-31 19:02:50
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2024-03-31 16:59:24
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 31 12:59:20.646839 2024] [security2:error] [pid 2254918:tid 47787718059776] [client 167.71.208.82:56669] [client 167.71.208.82] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||whatismetamodern.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "whatismetamodern.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZgmWaJxBq-tjpLtnn_gmsAAAAQk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-31 16:24:54
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 31 12:24:48.266861 2024] [security2:error] [pid 18367] [client 167.71.208.82:64031] [client 167.71.208.82] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nessmonsters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nessmonsters.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZgmOUMqclYwqeVsyPEt8TwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-31 15:44:06
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 167.71.208.82 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 31 11:44:02.883699 2024] [security2:error] [pid 6984] [client 167.71.208.82:51242] [client 167.71.208.82] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.sbeii.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.sbeii.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZgmEwhCArM9olCS43K-L4AAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack