Anonymous
2024-01-18 14:36:52
(2 years ago)
Hacking
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
MarkGGN
2024-01-06 09:29:23
(2 years ago)
Webexploits. 179.61.219.65 - - [06/Jan/2024:10:29:22 +0100] "GET /wp-json/wpgmza/v1/markers HTTP/1.1 ...
show more
Webexploits. 179.61.219.65 - - [06/Jan/2024:10:29:22 +0100] "GET /wp-json/wpgmza/v1/markers HTTP/1.1" 404 149 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36"
179.61.219.65 - - [06/Jan/2024:10:29:23 +0100] "GET /wp-json/wp/v2/posts HTTP/1.1" 200 675 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36"
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
AFRICARGUS
2024-01-06 06:05:37
(2 years ago)
Several malicious GET requests including:
179.61.219.65 [06/Jan/2024:05:51:27 +0000] GET "/wp-jso ...
show more
Several malicious GET requests including:
179.61.219.65 [06/Jan/2024:05:51:27 +0000] GET "/wp-json" HTTP/2.0 403
179.61.219.65 [06/Jan/2024:05:51:28 +0000] GET "/wp-json/wpgmza/v1/markers" HTTP/2.0 403
179.61.219.65 [06/Jan/2024:05:51:29 +0000] GET "/wp-json/wp/v2/posts" HTTP/2.0 403
179.61.219.65 [06/Jan/2024:05:51:30 +0000] GET "/?p=99" HTTP/2.0 404
show less
Hacking
Web App Attack
๐ฆ๐บ
MAGIC
2024-01-05 12:00:02
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฒ๐พ
syokadmin
2023-12-19 05:00:01
(2 years ago)
179.61.219.65 (NL/The Netherlands/-), more than 2 Apache 403 hits in the last 3600 secs
Brute-Force
๐ฉ๐ช
Jaime
2023-12-13 03:54:25
(2 years ago)
179.61.219.65 - Access forbidden 401 ... /wp-json
Brute-Force
๐ฆ๐บ
MAGIC
2023-12-12 15:03:17
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
Jaime
2023-12-06 02:18:18
(2 years ago)
179.61.219.65 - This day 4 times Access forbidden 401 ... /index.php?rest_route=/tdw ... and more
Brute-Force
Anonymous
2023-12-05 14:47:07
(2 years ago)
Scanning WP websites for exploits.
Web App Attack
๐ฆ๐บ
MAGIC
2023-11-22 15:00:30
(2 years ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฆ๐บ
MAGIC
2023-11-22 11:00:43
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2023-11-20 13:47:31
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 179.61.219.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 179.61.219.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 08:47:27.847923 2023] [security2:error] [pid 19960] [client 179.61.219.65:41300] [client 179.61.219.65] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.achildsspace.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.achildsspace.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVtjbw5psEl5SyBjBHMvDAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 13:01:22
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 179.61.219.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 179.61.219.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 08:01:18.660252 2023] [security2:error] [pid 29057] [client 179.61.219.65:37162] [client 179.61.219.65] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||twobytwotutoring.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "twobytwotutoring.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVtYnpFJ4bS__IjCRL_gFQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 12:33:17
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 179.61.219.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 179.61.219.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 07:33:08.851572 2023] [security2:error] [pid 31445] [client 179.61.219.65:37064] [client 179.61.219.65] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.teamweurding.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.teamweurding.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVtSBMSL-_F27zkW3RG1BAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2023-11-13 17:20:11
(2 years ago)
Detected Hacking, SQL Injection or general Web App Attack
Web App Attack