Anonymous
2024-08-22 05:07:02
(1 year ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-21 22:05:08
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 21 18:05:03.773591 2024] [security2:error] [pid 2916386:tid 2916477] [client 193.37.32.45:55867] [client 193.37.32.45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ceol.ceol.us"] [uri "/wp-config.php"] [unique_id "ZsZkj5SPpnc7vX6UPWYz2QAAAUg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-08-21 13:14:34
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2024-08-02 20:54:24
(1 year ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-02 03:06:50
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 01 23:06:43.230615 2024] [security2:error] [pid 25127:tid 25127] [client 193.37.32.45:18523] [client 193.37.32.45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hotelkona.com"] [uri "/wp-config.php"] [unique_id "ZqxNQ7Rth7FDXyqmg0TneAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2024-08-01 05:13:02
(1 year ago)
101 attacks on PHP URLs:
GET /wp-includes/ID3/about.php HTTP/1.1
Web App Attack
๐ฉ๐ช
SCHAPPY
2024-08-01 04:45:02
(1 year ago)
Brute-force attack to identify web exploits
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-16 21:04:55
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 16 17:04:46.922455 2024] [security2:error] [pid 21222] [client 193.37.32.45:38283] [client 193.37.32.45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "braintechsoftwaresolutions.com"] [uri "/wp-content/plugins/wp-config.php"] [unique_id "ZpbgbjTQ3UCN65drU_rX2wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-15 21:37:26
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 15 17:37:21.012588 2024] [security2:error] [pid 13602] [client 193.37.32.45:45757] [client 193.37.32.45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ebookplanner.banis-associates.com|F|2"] [data ".web.ui.webresource.axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ebookplanner.banis-associates.com"] [uri "/Telerik.Web.UI.WebResource.axd"] [unique_id "ZpWWkc7B2zH2HJFm18zYpQAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
taivas.nl
2024-07-15 08:02:14
(1 year ago)
Site scraper
Web App Attack
Anonymous
2024-07-14 05:26:01
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2024-07-13 17:23:23
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 13 13:23:17.401309 2024] [security2:error] [pid 4572] [client 193.37.32.45:27619] [client 193.37.32.45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mainefirst.org"] [uri "/wp-config.php"] [unique_id "ZpK4BQYiY4fsRWG3Oohy5gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐บ
HoneyPotEU02
2024-07-11 19:54:38
(1 year ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-10 22:14:18
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 10 18:14:11.571864 2024] [security2:error] [pid 3405323] [client 193.37.32.45:35033] [client 193.37.32.45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||robinnixon.com|F|2"] [data ".web.ui.webresource.axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "robinnixon.com"] [uri "/Telerik.Web.UI.WebResource.axd"] [unique_id "Zo8HsxaxX3CUjJNselJbWwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-10 13:36:11
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 193.37.32.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 10 09:36:07.857504 2024] [security2:error] [pid 12018] [client 193.37.32.45:22463] [client 193.37.32.45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.beepainless.garyrankin.com|F|2"] [data ".web.ui.webresource.axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.beepainless.garyrankin.com"] [uri "/Telerik.Web.UI.WebResource.axd"] [unique_id "Zo6ORyohj4PuqXMsSQXvdAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack