Anonymous
2025-12-22 14:15:25
(9 months ago)
apache vulnerability scan
Web App Attack
Anonymous
2024-01-11 12:18:53
(2 years ago)
apache vulnerability scan
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2024-01-04 21:10:35
(2 years ago)
Probing for Wordpress vulnerabilities
Bad Web Bot
Web App Attack
๐ฉ๐ช
niceshops.com
2023-12-04 10:16:21
(2 years ago)
Web Attack ([04/Dec/2023:11:16:19.174] GET /wp-login.php)
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-02 00:09:46
(2 years ago)
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 01 19:09:40.042203 2023] [security2:error] [pid 24464] [client 203.56.198.37:53503] [client 203.56.198.37] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 203.56.198.37 (+1 hits since last alert)|tcit.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "tcit.org"] [uri "/xmlrpc.php"] [unique_id "ZWp1xG1XLuAW3hwYrKGq4gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-30 17:33:36
(2 years ago)
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 30 12:33:30.752726 2023] [security2:error] [pid 3139:tid 47378110383872] [client 203.56.198.37:53993] [client 203.56.198.37] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 203.56.198.37 (+1 hits since last alert)|wdmtexas.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "wdmtexas.com"] [uri "/xmlrpc.php"] [unique_id "ZWjHao_WtczkgjbBPjlLyAAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2023-11-29 13:03:27
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2023-11-29 09:21:59
(2 years ago)
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 29 04:21:53.263383 2023] [security2:error] [pid 19320] [client 203.56.198.37:55210] [client 203.56.198.37] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 203.56.198.37 (+1 hits since last alert)|ferrarapanfitness.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "ferrarapanfitness.com"] [uri "/xmlrpc.php"] [unique_id "ZWcCsZJKNPTvfmM3VRBy8wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ps-center
2023-11-28 18:43:23
(2 years ago)
C2: Web Attack GET /wp-login.php
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2023-11-26 01:17:18
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2023-11-25 08:42:46
(2 years ago)
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 25 03:42:43.159991 2023] [security2:error] [pid 30022] [client 203.56.198.37:58162] [client 203.56.198.37] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 203.56.198.37 (+1 hits since last alert)|nycairservice.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "nycairservice.com"] [uri "/xmlrpc.php"] [unique_id "ZWGzg2EpC6mQ6N7uVxcPyAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-24 00:33:04
(2 years ago)
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 203.56.198.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 23 19:32:57.251753 2023] [security2:error] [pid 22402] [client 203.56.198.37:65399] [client 203.56.198.37] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 203.56.198.37 (+1 hits since last alert)|kidswow.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "kidswow.com"] [uri "/xmlrpc.php"] [unique_id "ZV_vOdKWzOtD-WrD5VtusQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
niceshops.com
2023-11-23 19:18:40
(2 years ago)
Web Attack ([23/Nov/2023:20:18:38.369] GET /wp-login.php)
Web App Attack
๐ฆ๐บ
MAGIC
2023-11-23 18:03:45
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
niceshops.com
2023-11-19 08:55:48
(2 years ago)
Web Attack ([19/Nov/2023:09:55:45.719] GET /wp-login.php)
Web App Attack