๐บ๐ธ
TPI-Abuse
2024-09-17 20:51:58
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 198.251.73.109 (crawlga44.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 198.251.73.109 (crawlga44.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 17 16:51:50.568079 2024] [security2:error] [pid 30398:tid 30398] [client 198.251.73.109:37717] [client 198.251.73.109] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||solcargomiami.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "solcargomiami.com"] [uri "/mailto@[email protected] "] [unique_id "Zunr5lui6en7APtWw7XPbQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2024-08-04 10:00:53
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
lavnet.net
2024-06-08 12:34:13
(2 years ago)
[Sat Jun 08 12:34:11.668921 2024] [authz_core:error] [pid 1098723] [client 198.251.73.109:53075] AH0 ...
show more
[Sat Jun 08 12:34:11.668921 2024] [authz_core:error] [pid 1098723] [client 198.251.73.109:53075] AH01630: client denied by server configuration: /var/www/a0a0.org/web/index.php
[Sat Jun 08 12:34:11.669100 2024] [authz_core:error] [pid 1098723] [client 198.251.73.109:53075] AH01630: client denied by server configuration: /var/www/a0a0.org/web/index.php
[Sat Jun 08 12:34:13.016437 2024] [authz_core:error] [pid 1098723] [client 198.251.73.109:53075] AH01630: client denied by server configuration: /var/www/a0a0.org/web/wp-cron.php
...
show less
Brute-Force
Anonymous
2024-06-07 06:43:06
(2 years ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-06-03 08:17:11
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 198.251.73.109 (crawlga44.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 198.251.73.109 (crawlga44.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 03 04:17:06.303273 2024] [security2:error] [pid 24975] [client 198.251.73.109:57379] [client 198.251.73.109] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cnprcertificationreviews.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cnprcertificationreviews.org"] [uri "/twitter.com"] [unique_id "Zl18AoVnDPKxjDEfl-hz5QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-10 19:25:43
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 198.251.73.109 (crawlga44.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 198.251.73.109 (crawlga44.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 10 15:25:38.942622 2024] [security2:error] [pid 5644] [client 198.251.73.109:53901] [client 198.251.73.109] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thegitsmovie.com|F|2"] [data ".lastcallmovies.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thegitsmovie.com"] [uri "/fincludes/www.lastcallmovies.com"] [unique_id "ZhbnsvALsxZltdB6PSCEEwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kommunos
2024-03-26 01:19:36
(2 years ago)
/wp-cron.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-30 06:14:47
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 198.251.73.109 (crawlga44.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 198.251.73.109 (crawlga44.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 30 01:14:40.003308 2024] [security2:error] [pid 32587] [client 198.251.73.109:43523] [client 198.251.73.109] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||69strains.com|F|2"] [data ".cannapages.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "69strains.com"] [uri "/www.cannapages.com"] [unique_id "ZbiTz7Yn5AH_fgPKRSwCtQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
conseilgouz
2023-12-26 01:26:12
(2 years ago)
cow-Joomla User : try to access forms...
Hacking
๐ฉ๐ช
conseilgouz
2023-12-07 07:41:14
(2 years ago)
vew-(visforms) : try to access forms...
Hacking
๐ต๐ฑ
strefapi_com
2023-12-03 17:03:28
(2 years ago)
Brute-force web
...
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
dondessert.com
2023-09-29 14:15:12
(2 years ago)
[Fri Sep 29 09:39:20.518287 2023] [proxy_fcgi:error] [pid 379377:tid 140378413967104] [client 198.25 ...
show more
[Fri Sep 29 09:39:20.518287 2023] [proxy_fcgi:error] [pid 379377:tid 140378413967104] [client 198.251.73.109:33165] AH01071: Got error 'Primary script unknown'
[Fri Sep 29 10:14:10.896557 2023] [proxy_fcgi:error] [pid 379377:tid 140378246211328] [client 198.251.73.109:38105] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
๐บ๐ธ
jcbriar
2022-12-28 09:49:06
(3 years ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐บ๐ธ
Dhills
2022-11-29 14:06:47
(3 years ago)
/wp-admin/admin-ajax.php
Spoofing
Web App Attack
Anonymous
2022-07-26 20:12:59
(4 years ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/admin-ajax.php
Web App Attack