๐บ๐ธ
BSG Webmaster
2023-07-15 07:35:13
(2 years ago)
Port scanning (Port 80)
Port Scan
Hacking
๐ญ๐บ
whitehoodie
2023-07-15 03:08:18
(2 years ago)
AUTOMATED REPORT: Tried to access .env file
Hacking
Bad Web Bot
Web App Attack
๐ง๐ท
ufn.edu.br
2023-07-11 10:20:28
(2 years ago)
[Tue Jul 11 07:20:24.950308 2023] [access_compat:error] [pid 31379] [client 170.64.178.195:59915] AH ...
show more
[Tue Jul 11 07:20:24.950308 2023] [access_compat:error] [pid 31379] [client 170.64.178.195:59915] AH01797: client denied by server configuration: /var/www/html/up.php
[Tue Jul 11 07:20:27.040913 2023] [access_compat:error] [pid 31436] [client 170.64.178.195:59982] AH01797: client denied by server configuration: /var/www/html/doc.php
[Tue Jul 11 07:20:27.738482 2023] [access_compat:error] [pid 31383] [client 170.64.178.195:60007] AH01797: client denied by server configuration: /var/www/html/shells.php
...
show less
Exploited Host
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2023-07-11 10:20:09
(2 years ago)
170.64.178.195 - - [11/Jul/2023:13:20:08 +0300] "GET /wp-content/uploads/2021/12/up.php HTTP/1.1" 40 ...
show more
170.64.178.195 - - [11/Jul/2023:13:20:08 +0300] "GET /wp-content/uploads/2021/12/up.php HTTP/1.1" 404 285 "-" "python-requests/2.26.0"
170.64.178.195 - - [11/Jul/2023:13:20:09 +0300] "GET /wp-content/ALFA_DATA/alfacgiapi/ HTTP/1.1" 404 285 "-" "python-requests/2.26.0"
...
show less
Web App Attack
๐ง๐ท
ufn.edu.br
2023-07-11 02:24:59
(2 years ago)
[Mon Jul 10 23:24:55.799717 2023] [access_compat:error] [pid 31379] [client 170.64.178.195:50571] AH ...
show more
[Mon Jul 10 23:24:55.799717 2023] [access_compat:error] [pid 31379] [client 170.64.178.195:50571] AH01797: client denied by server configuration: /var/www/html/z.php
[Mon Jul 10 23:24:57.285786 2023] [access_compat:error] [pid 31379] [client 170.64.178.195:50571] AH01797: client denied by server configuration: /var/www/html/e.php
[Mon Jul 10 23:24:57.641695 2023] [access_compat:error] [pid 31379] [client 170.64.178.195:50571] AH01797: client denied by server configuration: /var/www/html/r.php
...
show less
Exploited Host
Web App Attack
๐ป๐ณ
Xuan Can
2023-06-07 05:59:34
(3 years ago)
(mod_security) mod_security (id:210492) triggered by 170.64.178.195 (AU/Australia/-): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.178.195 (AU/Australia/-): 1 in the last 3600 secs; Ports: 80,443; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 07 12:59:27.878913 2023] [security2:error] [pid 4476:tid 47722331653888] [client 170.64.178.195:50690] [client 170.64.178.195] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "103.7.42.146"] [uri "/.env"] [unique_id "ZIAcv0MSl9n93QLHJsXaHwAAAA4"]
show less
Brute-Force
SSH
๐ฉ๐ช
Ba-Yu
2023-06-07 04:41:01
(3 years ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
octageeks.com
2023-05-31 04:07:03
(3 years ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ป๐ณ
Xuan Can
2023-05-30 22:41:32
(3 years ago)
(mod_security) mod_security (id:210492) triggered by 170.64.178.195 (AU/Australia/-): 1 in the last ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.178.195 (AU/Australia/-): 1 in the last 3600 secs; Ports: 80,443; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 31 05:41:25.129199 2023] [security2:error] [pid 5988:tid 47592169125632] [client 170.64.178.195:52260] [client 170.64.178.195] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "112.213.89.134"] [uri "/.env"] [unique_id "ZHZ7lfasqhIjSyHYexisVQAAAEc"]
show less
Brute-Force
SSH
๐บ๐ฆ
URAN Publishing Service
2023-05-25 06:01:29
(3 years ago)
170.64.178.195 - - [25/May/2023:09:01:27 +0300] "GET /wp-content/uploads/2021/12/up.php HTTP/1.1" 40 ...
show more
170.64.178.195 - - [25/May/2023:09:01:27 +0300] "GET /wp-content/uploads/2021/12/up.php HTTP/1.1" 404 285 "-" "python-requests/2.26.0"
170.64.178.195 - - [25/May/2023:09:01:28 +0300] "GET /wp-content/ALFA_DATA/alfacgiapi/ HTTP/1.1" 404 285 "-" "python-requests/2.26.0"
...
show less
Web App Attack
๐ง๐ท
ufn.edu.br
2023-05-25 05:58:38
(3 years ago)
[Thu May 25 02:58:35.057971 2023] [access_compat:error] [pid 8642] [client 170.64.178.195:63646] AH0 ...
show more
[Thu May 25 02:58:35.057971 2023] [access_compat:error] [pid 8642] [client 170.64.178.195:63646] AH01797: client denied by server configuration: /var/www/html/up.php
[Thu May 25 02:58:37.185326 2023] [access_compat:error] [pid 7228] [client 170.64.178.195:63776] AH01797: client denied by server configuration: /var/www/html/doc.php
[Thu May 25 02:58:37.889945 2023] [access_compat:error] [pid 8642] [client 170.64.178.195:63823] AH01797: client denied by server configuration: /var/www/html/shells.php
...
show less
Exploited Host
Web App Attack
๐ญ๐บ
whitehoodie
2023-04-23 11:13:12
(3 years ago)
AUTOMATED REPORT: Tried to access .env file
Hacking
Bad Web Bot
Web App Attack
๐ญ๐บ
whitehoodie
2023-04-22 09:32:42
(3 years ago)
AUTOMATED REPORT: Tried to access .env file
Hacking
Bad Web Bot
Web App Attack
๐ญ๐บ
whitehoodie
2023-04-16 01:42:49
(3 years ago)
AUTOMATED REPORT: Tried to access .env file
Hacking
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2023-04-14 03:03:27
(3 years ago)
Distributed DDOS attempts for multiple sites
DDoS Attack
Bad Web Bot