|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 19 03:08:26.433665 2025] [security2:error] [pid 10384:tid 10384] [client 193.70.80.213:54508] [client 193.70.80.213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "freemanfoundationcle.org"] [uri "/wp-config.phpnew"] [unique_id "Z9ptajdUdhyFpFtCr1t6TAAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 22 17:25:09.899979 2025] [security2:error] [pid 18550:tid 18563] [client 193.70.80.213:44766] [client 193.70.80.213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "property-management-companies-chicago.com"] [uri "/wp-config.php.save"] [unique_id "Z7pOxSsmN3qUzAYZTWv6BgAAAMs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐จ๐ญ
backslash
|
|
block ruleset Badbot using very old user-agents 5CF3CDB778C7D82564405B86B9242E612F378C68
|
Bad Web Bot
|
|
|
๐ช๐ธ
el-brujo
|
|
DDoS Attack Layer 7 SilentBot
|
DDoS Attack
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_MODSEC
|
Brute-Force
SSH
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 28 11:54:28.861103 2025] [security2:error] [pid 27384:tid 27384] [client 193.70.80.213:51474] [client 193.70.80.213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "donnrowe.com"] [uri "/wp-config.php3"] [unique_id "Z5kLxEvtKMDo6-CW8g2hWAAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 22 15:41:19.214045 2025] [security2:error] [pid 29906:tid 29906] [client 193.70.80.213:52434] [client 193.70.80.213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "simplehandymanllc.com"] [uri "/wp-config.php~"] [unique_id "Z5FX7yp5ThHS9tE_0fH3EgAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 16 17:33:58.997928 2025] [security2:error] [pid 2084814:tid 2084814] [client 193.70.80.213:41752] [client 193.70.80.213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "velocitymech.com"] [uri "/wp-config.php5"] [unique_id "Z4mJVgmeNxB-EWU8blVX0QAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 11 14:24:34.853727 2025] [security2:error] [pid 23292:tid 23292] [client 193.70.80.213:44518] [client 193.70.80.213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cormanleigh.com"] [uri "/wp-config.php_old1"] [unique_id "Z4LFckOqsQAF4Mi9_rpFHgAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in ...
show more
(mod_security) mod_security (id:210492) triggered by 193.70.80.213 (ns3064540.ip-193-70-80.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 06 12:43:59.041501 2025] [security2:error] [pid 27066:tid 27066] [client 193.70.80.213:46720] [client 193.70.80.213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cycontechnology.com"] [uri "/wp-config.php.2"] [unique_id "Z3wWX0SAAruBtQz1tkNW-QAAABg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|