|
Anonymous
|
|
191.96.168.40 - - [01/Dec/2025:12:48:17 +0100] "GET /shop/wp-login.php HTTP/1.1" 403 4958 "-" "Mozil ...
show more
191.96.168.40 - - [01/Dec/2025:12:48:17 +0100] "GET /shop/wp-login.php HTTP/1.1" 403 4958 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)"
...
show less
|
Web App Attack
|
|
|
π«π·
Sklurk
|
|
Web App Attack
|
Web App Attack
|
|
|
π©πͺ
BestFans.com
|
|
Credential brute-force attacks on webpage logins
|
Brute-Force
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 19:01:15.097181 2025] [security2:error] [pid 1477:tid 1477] [client 191.96.168.40:49493] [client 191.96.168.40] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "informativearticles.com"] [uri "/.git/HEAD"] [unique_id "Z84duzq6T1Rf2R6mLk5OlQAAABI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π©πͺ
Kimax
|
|
RdpGuard detected brute-force attempt on HTTP
|
Brute-Force
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 13:52:00.607289 2025] [security2:error] [pid 22541:tid 22541] [client 191.96.168.40:49966] [client 191.96.168.40] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chicagoinquirer.com"] [uri "/.git/HEAD"] [unique_id "Z83VQD7G_kkO5f6-IrZ7GwAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 13:07:20.895322 2025] [security2:error] [pid 2513667:tid 2513667] [client 191.96.168.40:59552] [client 191.96.168.40] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "apbb.net"] [uri "/.git/HEAD"] [unique_id "Z83KyFn5yu0CsAoNNorMrwAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 07:53:32.265917 2025] [security2:error] [pid 23093:tid 23093] [client 191.96.168.40:63133] [client 191.96.168.40] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "norun.net"] [uri "/.git/HEAD"] [unique_id "Z82BPF_0EHQQQK0Cm6lPzQAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 07:10:50.085655 2025] [security2:error] [pid 25303:tid 25303] [client 191.96.168.40:63538] [client 191.96.168.40] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arttechnology.net"] [uri "/.git/HEAD"] [unique_id "Z813OuT21dlvvoU9DcUVMQAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 191.96.168.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 03:57:07.600195 2025] [security2:error] [pid 1568:tid 1568] [client 191.96.168.40:64221] [client 191.96.168.40] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scala-global.com"] [uri "/.git/HEAD"] [unique_id "Z81J0wllt-fFM5D4F8gIggAAABI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π¦πΊ
oncord
|
|
Form spam
|
Web Spam
|
|
|
π§π·
diego
|
|
Events: TCP SYN Discovery or Flooding, Seen 3 times in the last 10800 seconds
|
DDoS Attack
|
|
|
π§π·
diego
|
|
Events: TCP SYN Discovery or Flooding, Seen 3 times in the last 10800 seconds
|
DDoS Attack
|
|
|
πΊπ¦
URAN Publishing Service
|
|
191.96.168.40 - - [28/Aug/2024:22:21:33 +0300] "GET /article/view/2413-4260.X.1.35.2020.2/wp-login.p ...
show more
191.96.168.40 - - [28/Aug/2024:22:21:33 +0300] "GET /article/view/2413-4260.X.1.35.2020.2/wp-login.php HTTP/1.1" 404 283 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/102.0.0.0 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
πΊπ¦
URAN Publishing Service
|
|
191.96.168.40 - - [28/Aug/2024:16:35:22 +0300] "GET /article/view/252005/wp-login.php?action=registe ...
show more
191.96.168.40 - - [28/Aug/2024:16:35:22 +0300] "GET /article/view/252005/wp-login.php?action=register HTTP/1.1" 404 277 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/102.0.0.0 Safari/537.36"
...
show less
|
Web App Attack
|
|