๐บ๐ธ
hostseries
2024-09-25 10:04:45
(1 year ago)
Trigger: LF_DISTATTACK
Brute-Force
๐ช๐ธ
10dencehispahard SL
2024-07-20 08:00:54
(1 year ago)
Unauthorized login attempts [ accesslogs]
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-07-19 17:23:04
(1 year ago)
(mod_security) mod_security (id:243420) triggered by 172.121.142.218 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:243420) triggered by 172.121.142.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 19 13:22:56.034999 2024] [security2:error] [pid 26263:tid 26263] [client 172.121.142.218:44443] [client 172.121.142.218] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "ARGS:form_id" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6649"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.takemehomedogrescue.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.takemehomedogrescue.org"] [uri "/wp-admin/admin-ajax.php"] [unique_id "Zpqg7keoY5r3p-1M5EZemQAAAAQ"], referer: http://www.takemehomedogrescue.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MrDD
2024-06-24 20:50:21
(2 years ago)
Botnet Attacking Cisco Web VPN
Brute-Force
Anonymous
2024-05-05 01:04:57
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฆ๐บ
oncord
2024-04-30 16:24:28
(2 years ago)
Form spam
Web Spam
๐บ๐ธ
hostseries
2024-04-15 13:09:18
(2 years ago)
Trigger: LF_DISTATTACK
Brute-Force
๐บ๐ธ
hostseries
2024-04-02 18:11:13
(2 years ago)
Trigger: LF_DISTATTACK
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-01-26 14:46:49
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 172.121.142.218 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 172.121.142.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 26 09:46:43.523322 2024] [security2:error] [pid 21186] [client 172.121.142.218:24435] [client 172.121.142.218] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mariposaoriginals.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mariposaoriginals.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZbPF041Kz99eWiOVuIM1bQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-18 12:18:22
(2 years ago)
(mod_security) mod_security (id:240950) triggered by 172.121.142.218 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240950) triggered by 172.121.142.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 18 07:18:17.537622 2024] [security2:error] [pid 9288] [client 172.121.142.218:51583] [client 172.121.142.218] ModSecurity: Access denied with code 403 (phase 1). Pattern match "\\\\D" at TX:1. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "4530"] [id "240950"] [rev "2"] [msg "COMODO WAF: XSS & SQL injection vulnerability in Pragyan CMS 3.0 (CVE-2015-1471)||www.contagion-game.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.contagion-game.com"] [uri "/wiki/index.php"] [unique_id "ZakXCQhYSwCGT0KmMPlO3QAAAAU"], referer: http://www.contagion-game.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
hostseries
2023-12-30 14:14:28
(2 years ago)
Trigger: LF_DISTATTACK
Brute-Force
๐บ๐ธ
nowyouknow
2023-10-10 13:12:47
(2 years ago)
Phishing
Web Spam
๐ฆ๐ท
SOC Telecentro
2023-08-29 13:51:20
(2 years ago)
Automatic report - Brute Force attack using this IP address over e-commerce solution (4481 times in ...
show more
Automatic report - Brute Force attack using this IP address over e-commerce solution (4481 times in last 24 hours)
show less
DDoS Attack
Brute-Force
Bad Web Bot
๐ฆ๐ท
SOC Telecentro
2023-07-20 12:10:55
(2 years ago)
Automatic report - Brute Force attack using this IP address over e-commerce solution (36 times in la ...
show more
Automatic report - Brute Force attack using this IP address over e-commerce solution (36 times in last 24 hours)
show less
DDoS Attack
Brute-Force
Bad Web Bot