|
๐ฌ๐ง
Oakley
|
|
(confirmed_bot_sig) Confirmed bot
|
Hacking
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 i ...
show more
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 27 14:38:47.864984 2024] [security2:error] [pid 5339] [client 209.190.14.178:42929] [client 209.190.14.178] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.fishing-links.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fishing-links.com"] [uri "/"] [unique_id "Zd46R0Nh1BRY3BKn_tPfsAAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 i ...
show more
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 23 08:51:50.516739 2024] [security2:error] [pid 620689:tid 47718930867968] [client 209.190.14.178:35077] [client 209.190.14.178] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.dinersdriveinsdiveslocations.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.dinersdriveinsdiveslocations.com"] [uri "/parkview-niteclub-ohio.html"] [unique_id "Zdii9vkv9A_NDbiNP7nqdAAAAgA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 i ...
show more
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 18 22:28:01.127344 2024] [security2:error] [pid 26422] [client 209.190.14.178:34461] [client 209.190.14.178] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.donutlocations.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.donutlocations.com"] [uri "/hurts-donut-tempe.html"] [unique_id "ZdLKwez2hBmRC6xXtPbBKAAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 i ...
show more
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 01 07:15:40.776031 2024] [security2:error] [pid 8392] [client 209.190.14.178:39085] [client 209.190.14.178] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.manvsfoodlocations.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.manvsfoodlocations.com"] [uri "/hawaii-locations.html"] [unique_id "ZbuLbGovPIHqY6fkDCJIKwAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 i ...
show more
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 06 17:40:37.404720 2024] [security2:error] [pid 6940:tid 47216938194688] [client 209.190.14.178:41329] [client 209.190.14.178] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.bestthingieveratelocations.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.bestthingieveratelocations.com"] [uri "/hoboken-nj.html"] [unique_id "ZZnW5VY3MIxlhIrhCWKIWwAAAAM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 i ...
show more
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 13:49:40.749653 2023] [security2:error] [pid 26659] [client 209.190.14.178:42503] [client 209.190.14.178] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||procigar.org|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "procigar.org"] [uri "/quesada-cigars"] [unique_id "ZX9CxJLHZOc-6SFYwSejHwAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 i ...
show more
(mod_security) mod_security (id:210740) triggered by 209.190.14.178 (209-190-14-178.xlhdns.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 21 10:18:26.482259 2023] [security2:error] [pid 10767:tid 47835683849984] [client 209.190.14.178:35235] [client 209.190.14.178] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||dinersdriveinsdiveslocations.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "dinersdriveinsdiveslocations.com"] [uri "/mercado-la-carreta-puerto-rico.html"] [unique_id "ZVzKQmrL7_ZQtAj6S3NYmAAAAEM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|