๐ฌ๐ง
Apache
2024-01-06 18:02:27
(2 years ago)
(mod_security) mod_security (id:20000010) triggered by 18.221.23.108 (US/United States/ec2-18-221-23 ...
show more
(mod_security) mod_security (id:20000010) triggered by 18.221.23.108 (US/United States/ec2-18-221-23-108.us-east-2.compute.amazonaws.com): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
๐ช๐ฌ
Mostafa Taha
2024-01-06 14:01:03
(2 years ago)
Bad Bot
Web Spam
Bad Web Bot
๐ฟ๐ฆ
Birdflew
2024-01-06 01:03:32
(2 years ago)
Port scanning
Hacking
๐ซ๐ท
conseilgouz
2024-01-05 22:36:50
(2 years ago)
hae-Joomla Admin : try to force the door...
Hacking
Anonymous
2024-01-05 20:49:20
(2 years ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-05 08:04:18
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 18.221.23.108 (ec2-18-221-23-108.us-east-2.comp ...
show more
(mod_security) mod_security (id:210730) triggered by 18.221.23.108 (ec2-18-221-23-108.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 05 03:04:12.365164 2024] [security2:error] [pid 4201] [client 18.221.23.108:47816] [client 18.221.23.108] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||procigar.org|F|2"] [data ".godominicanrepublic.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "procigar.org"] [uri "/event/procigar-festival-2022/www.godominicanrepublic.com"] [unique_id "ZZe3_A57ZGh-rL8WD_4dQgAAAAo"], referer: https://procigar.org/tabacalera-palma/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-04 18:05:22
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 18.221.23.108 (ec2-18-221-23-108.us-east-2.comp ...
show more
(mod_security) mod_security (id:210730) triggered by 18.221.23.108 (ec2-18-221-23-108.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 04 13:05:14.782428 2024] [security2:error] [pid 31986] [client 18.221.23.108:37702] [client 18.221.23.108] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||homebuilt.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "homebuilt.org"] [uri "/directory/[email protected] "] [unique_id "ZZbzWs4k6Th7A6v6lhq74QAAABU"], referer: https://homebuilt.org/directory/raceair.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-04 17:14:15
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 18.221.23.108 (ec2-18-221-23-108.us-east-2.comp ...
show more
(mod_security) mod_security (id:210730) triggered by 18.221.23.108 (ec2-18-221-23-108.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 04 12:14:13.386754 2024] [security2:error] [pid 15897] [client 18.221.23.108:39182] [client 18.221.23.108] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||hazardvillefire.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hazardvillefire.org"] [uri "/publicsafetyedu.com"] [unique_id "ZZbnZd2hWpzjzB2eXvjjxAAAAAg"], referer: https://hazardvillefire.org/Volunteer_to_be_a_Firefighter.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
mangomad
2024-01-04 14:46:27
(2 years ago)
Repeated Apache mod_security rule triggers
Brute-Force
Web App Attack
Anonymous
2024-01-02 23:10:06
(2 years ago)
Excessive HTTP/HTTPS connections.
Bad Web Bot
๐ณ๐ฑ
Roderic
2024-01-02 06:37:33
(2 years ago)
(apache-bow-document) Failed apache-bow-scanners trigger with match [redacted] from 18.221.23.108 (U ...
show more
(apache-bow-document) Failed apache-bow-scanners trigger with match [redacted] from 18.221.23.108 (US/United States/ec2-18-221-23-108.us-east-2.compute.amazonaws.com)
show less
Hacking
๐บ๐ธ
WebWizards.NZ
2024-01-02 04:11:02
(2 years ago)
Dodgy URLs Bad Bot
Bad Web Bot
๐บ๐ธ
WebWizards.NZ
2024-01-02 04:11:02
(2 years ago)
Dodgy URLs Bad Bot
Bad Web Bot
๐ณ๐ฑ
Roderic
2024-01-01 19:10:02
(2 years ago)
(mod_security) mod_security triggered on hostname [redacted] 18.221.23.108 (US/United States/ec2-18- ...
show more
(mod_security) mod_security triggered on hostname [redacted] 18.221.23.108 (US/United States/ec2-18-221-23-108.us-east-2.compute.amazonaws.com)
show less
SQL Injection
๐ณ๐ฑ
Savvii
2024-01-01 10:49:36
(2 years ago)
26 attempts against mh_ha-misbehave-ban on iron
Brute-Force
Bad Web Bot
Web App Attack