ASPAN
2024-09-10 17:01:22
(1 month ago)
Unsolicited connection attempt(s), port:8080.
Port Scan
ASPAN
2024-09-10 17:01:22
(1 month ago)
Unsolicited connection attempt(s), port:8080.
Port Scan
RCS
2024-09-10 16:58:01
(1 month ago)
fail2ban apache-modsecurity
...
Bad Web Bot
Web App Attack
Anonymous
2024-09-10 16:48:00
(1 month ago)
Restricted File Access Requests
Hacking
Brute-Force
etu brutus
2024-09-10 16:46:46
(1 month ago)
18.222.143.0 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host
TPI-Abuse
2024-09-10 16:36:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.comput ... show more (mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 10 12:35:59.796227 2024] [security2:error] [pid 3974:tid 3974] [client 18.222.143.0:55746] [client 18.222.143.0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boblog111.com"] [uri "/.git/config"] [unique_id "ZuB1b7NNKuiF-_zZ2HcaHQAAAA4"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2024-09-10 16:18:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.comput ... show more (mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 10 12:18:09.245433 2024] [security2:error] [pid 29493:tid 29493] [client 18.222.143.0:37210] [client 18.222.143.0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "4photogifts.com"] [uri "/.git/config"] [unique_id "ZuBxQWcyISmdIBYIHpMOrAAAABU"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2024-09-10 16:03:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.comput ... show more (mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 10 12:03:05.371935 2024] [security2:error] [pid 21867:tid 21867] [client 18.222.143.0:60556] [client 18.222.143.0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "otcda-ts.com"] [uri "/.git/config"] [unique_id "ZuBtuQgwMxxsN-jJAf6-LgAAAAw"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2024-09-10 15:44:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.comput ... show more (mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 10 11:44:16.302362 2024] [security2:error] [pid 18009:tid 18009] [client 18.222.143.0:57504] [client 18.222.143.0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "edensgroup.com"] [uri "/.git/config"] [unique_id "ZuBpUIwXOjUWEs7HTTgtVwAAABM"] show less
Brute-Force
Bad Web Bot
Web App Attack
yukon.ca
2024-09-10 15:04:26
(1 month ago)
Web Server Enforcement Violation: Web Server Exposed Git Repository Information Disclosure
Por ... show more Web Server Enforcement Violation: Web Server Exposed Git Repository Information Disclosure
Port:80 show less
Hacking
Exploited Host
polycoda
2024-09-10 15:03:00
(1 month ago)
Port scan
Port Scan
Eagle Works GmbH
2024-09-10 14:48:29
(1 month ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
JuicyJ
2024-09-10 14:32:00
(1 month ago)
Excessive crawling/probing
Web App Attack
TPI-Abuse
2024-09-10 14:23:41
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.comput ... show more (mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 10 10:23:38.181544 2024] [security2:error] [pid 3903801:tid 3903938] [client 18.222.143.0:48394] [client 18.222.143.0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dba.center"] [uri "/.git/config"] [unique_id "ZuBWav24CSfCzgGS8HY9DwAAAJA"] show less
Brute-Force
Bad Web Bot
Web App Attack
TPI-Abuse
2024-09-10 14:06:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.comput ... show more (mod_security) mod_security (id:210492) triggered by 18.222.143.0 (ec2-18-222-143-0.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 10 10:06:06.334203 2024] [security2:error] [pid 8323:tid 8323] [client 18.222.143.0:46462] [client 18.222.143.0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tech-today.business"] [uri "/.git/config"] [unique_id "ZuBSTraRCBaW7zx6jVN5-AAAAAM"] show less
Brute-Force
Bad Web Bot
Web App Attack