Anonymous
2024-01-25 09:53:08
(2 years ago)
[24/Jan/2024:09:12:32 -0500] - [24/Jan/2024:09:15:38 -0500] General vuln. probe
Hacking
๐บ๐ธ
MPL
2024-01-23 22:32:51
(2 years ago)
tcp/443 (2 or more attempts)
Port Scan
๐ซ๐ท
www.unitiz.com
2024-01-22 08:51:08
(2 years ago)
Probing non-existent URLs
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-16 05:26:22
(2 years ago)
(mod_security) mod_security (id:210350) triggered by 202.159.107.242 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 202.159.107.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 16 00:26:17.786713 2024] [security2:error] [pid 371] [client 202.159.107.242:54706] [client 202.159.107.242] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||192.64.150.19:80|F|4"] [data "close, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "192.64.150.19"] [uri "/invoker/readonly"] [unique_id "ZaYTeZeGUup_f9Z5_IBGMAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
ozisp.com.au
2024-01-12 12:14:34
(2 years ago)
ID_MNT-APJII-ID_<33>1705061673 [1:2006402:10] ET POLICY Incoming Basic Auth Base64 HTTP Password det ...
show more
ID_MNT-APJII-ID_<33>1705061673 [1:2006402:10] ET POLICY Incoming Basic Auth Base64 HTTP Password detected unencrypted [Classification: Potential Corporate Privacy Violation] [Priority: 1] {TCP} 202.159.107.242:33634
show less
Hacking
๐บ๐ธ
TPI-Abuse
2024-01-11 06:12:48
(2 years ago)
(mod_security) mod_security (id:210350) triggered by 202.159.107.242 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 202.159.107.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 11 01:12:45.445180 2024] [security2:error] [pid 25286] [client 202.159.107.242:40580] [client 202.159.107.242] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||192.64.150.240:80|F|4"] [data "close, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "192.64.150.240"] [uri "/invoker/readonly"] [unique_id "ZZ-G3R71tFVW_Z9GrC7zYwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
www.unitiz.com
2024-01-10 03:17:09
(2 years ago)
Probing non-existent URLs
Bad Web Bot
Web App Attack
Anonymous
2024-01-06 21:44:35
(2 years ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐ท๐ธ
Smel
2024-01-02 22:30:13
(2 years ago)
MH/MP Probe, Scan, Hack -
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2024-01-02 20:39:59
(2 years ago)
(mod_security) mod_security (id:210350) triggered by 202.159.107.242 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 202.159.107.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 02 15:39:54.960832 2024] [security2:error] [pid 13144] [client 202.159.107.242:38954] [client 202.159.107.242] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||192.64.150.55:80|F|4"] [data "close, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "192.64.150.55"] [uri "/invoker/readonly"] [unique_id "ZZR0mgV6CsYI7Wz1jc8uAwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Al Coholic
2024-01-02 12:04:44
(2 years ago)
Detected By Fail2ban
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-29 18:53:25
(2 years ago)
(mod_security) mod_security (id:210350) triggered by 202.159.107.242 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 202.159.107.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 29 13:53:21.825013 2023] [security2:error] [pid 7405] [client 202.159.107.242:48498] [client 202.159.107.242] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||192.64.150.166:443|F|4"] [data "close, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "192.64.150.166"] [uri "/script"] [unique_id "ZY8VoUhf0Xnw8Hj5H0wcqwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ธ
Smel
2023-12-22 08:15:13
(2 years ago)
MH/MP Probe, Scan, Hack -
Port Scan
Hacking
๐บ๐ธ
FireballDWF
2023-12-15 05:30:06
(2 years ago)
404 NOT FOUND
Web App Attack
๐บ๐ธ
Al Coholic
2023-12-15 04:32:32
(2 years ago)
Detected By Fail2ban
Hacking
Bad Web Bot
Web App Attack