๐บ๐ธ
octageeks.com
2024-04-21 04:08:18
(2 years ago)
Wordpress malicious attack:[octaxmlrpc]
Web App Attack
๐บ๐ธ
octageeks.com
2024-04-19 04:08:20
(2 years ago)
Wordpress malicious attack:[octaxmlrpc]
Web App Attack
๐บ๐ธ
octageeks.com
2024-04-18 04:08:19
(2 years ago)
Wordpress malicious attack:[octaxmlrpc]
Web App Attack
๐บ๐ธ
octageeks.com
2024-04-16 04:08:22
(2 years ago)
Wordpress malicious attack:[octaxmlrpc]
Web App Attack
๐ธ๐ช
webbfabriken
2024-04-15 01:40:03
(2 years ago)
spam or other hacking activities reported by webbfabriken security servers
Attack reported by Webbf ...
show more
spam or other hacking activities reported by webbfabriken security servers
Attack reported by Webbfabiken Security API - WFSecAPI
show less
Web Spam
๐บ๐ธ
TPI-Abuse
2024-04-14 00:13:44
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 199.249.230.150 (tor61.quintex.com): 1 in the l ...
show more
(mod_security) mod_security (id:210730) triggered by 199.249.230.150 (tor61.quintex.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 13 20:13:36.599994 2024] [security2:error] [pid 14656] [client 199.249.230.150:48254] [client 199.249.230.150] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.kporterdesign.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.kporterdesign.com"] [uri "/design.sql"] [unique_id "ZhsfsMTknDw0TjTA-TZHHQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2024-04-12 13:58:11
(2 years ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐จ๐ฟ
plzenskypruvodce.cz
2024-04-12 10:14:51
(2 years ago)
[Fri Apr 12 12:14:49.893587 2024] [access_compat:error] [pid 2937485:tid 140550254622464] [client 19 ...
show more
[Fri Apr 12 12:14:49.893587 2024] [access_compat:error] [pid 2937485:tid 140550254622464] [client 199.249.230.150:54822] AH01797: client denied by server configuration: /var/www/opusarium.cz/www/xmlrpc.php
[Fri Apr 12 12:14:50.554929 2024] [access_compat:error] [pid 2937485:tid 140550237837056] [client 199.249.230.150:54822] AH01797: client denied by server configuration: /var/www/opusarium.cz/www/xmlrpc.php
...
show less
Web App Attack
๐ช๐ธ
10dencehispahard SL
2024-04-12 06:09:32
(2 years ago)
Unauthorized login attempts [ accesslogs]
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-02-15 11:02:17
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 199.249.230.150 (tor61.quintex.com): 1 in the l ...
show more
(mod_security) mod_security (id:210492) triggered by 199.249.230.150 (tor61.quintex.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 15 06:02:09.520541 2024] [security2:error] [pid 5186] [client 199.249.230.150:42978] [client 199.249.230.150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "williams-rodriguez.org"] [uri "/wp-content/plugins/wp-hide-security-enhancer/router/file-process.php"] [unique_id "Zc3vMa7aFJCWtOzPbJyQ3gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-13 17:42:40
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 199.249.230.150 (tor61.quintex.com): 1 in the l ...
show more
(mod_security) mod_security (id:210730) triggered by 199.249.230.150 (tor61.quintex.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 13 12:42:34.656825 2024] [security2:error] [pid 3101] [client 199.249.230.150:42746] [client 199.249.230.150] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gilgoinn.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gilgoinn.com"] [uri "/db_backup_file.sql"] [unique_id "ZcuqCvSjloy-6GXQlp7sKAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
niceshops.com
2024-02-12 18:49:16
(2 years ago)
Web Attack ([12/Feb/2024:19:49:10 +0100] )
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
niceshops.com
2024-02-12 03:26:46
(2 years ago)
Web Attack multi (Feb 24 04:26:45 Matching rules: Detect possible SQL injection - E.g. Select * fro ...
show more
Web Attack multi (Feb 24 04:26:45 Matching rules: Detect possible SQL injection - E.g. Select * from )
show less
SQL Injection
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-12 01:28:49
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 199.249.230.150 (tor61.quintex.com): 1 in the l ...
show more
(mod_security) mod_security (id:210730) triggered by 199.249.230.150 (tor61.quintex.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 11 20:28:44.457886 2024] [security2:error] [pid 23266] [client 199.249.230.150:36440] [client 199.249.230.150] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||africa.systems|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "africa.systems"] [uri "/africa.sql"] [unique_id "Zcl0TByLk79DpM76E8LlLgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
niceshops.com
2024-02-11 08:35:20
(2 years ago)
Web Attack multi (Feb 24 09:35:20 Matching rules: Detect possible SQL injection - Too many SQL keyw ...
show more
Web Attack multi (Feb 24 09:35:20 Matching rules: Detect possible SQL injection - Too many SQL keywords (more than 3 times),Detect possible SQL injection - E.g. Sleep(5),Detect possible SQL injection - E.g. Select * from )
show less
SQL Injection
Brute-Force
Bad Web Bot
Web App Attack