๐บ๐ธ
TPI-Abuse
2025-05-11 23:12:32
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 212.30.37.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 212.30.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 11 19:12:24.897411 2025] [security2:error] [pid 555927:tid 555927] [client 212.30.37.59:41859] [client 212.30.37.59] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.aeongames.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.aeongames.com"] [uri "/old/backup.sql"] [unique_id "aCEu2LJDWDuaHghMWf3TmAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-10 23:44:56
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 212.30.37.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 212.30.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 10 19:44:49.571369 2025] [security2:error] [pid 2338609:tid 2338609] [client 212.30.37.59:9243] [client 212.30.37.59] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||portfolioboosterllc.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "portfolioboosterllc.com"] [uri "/backups/mysql.sql"] [unique_id "aB_k8fx2Jgcm_d1catc1qwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-04-24 09:30:03
(1 year ago)
Account archive download attempts
Hacking
Brute-Force
๐บ๐ธ
Penny Packer
2025-04-22 12:51:13
(1 year ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-18 05:47:19
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 212.30.37.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 212.30.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 18 01:47:15.070700 2025] [security2:error] [pid 16262:tid 16262] [client 212.30.37.59:27663] [client 212.30.37.59] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dudleyanddudley.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dudleyanddudley.com"] [uri "/dump.sql"] [unique_id "aAHnY0wF31I_X28IbmClZQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-03-31 11:56:43
(1 year ago)
(wordpress) Failed wordpress login from 212.30.37.59 (NL/The Netherlands/-)
Brute-Force
๐ซ๐ฎ
YF
2025-03-21 23:00:05
(1 year ago)
xmlrpc.php (Potential DDoS or brute force)
Brute-Force
Web App Attack
๐บ๐ธ
Penny Packer
2025-03-21 11:44:20
(1 year ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-13 06:55:39
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 212.30.37.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 212.30.37.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 13 02:55:28.858414 2025] [security2:error] [pid 16806:tid 16806] [client 212.30.37.59:57531] [client 212.30.37.59] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||doubloonswap.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "doubloonswap.com"] [uri "/bak/dump.sql"] [unique_id "Z9KBYFZnv5UcmB9p01-1DAAAAD8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2025-03-05 03:04:34
(1 year ago)
apache-alfa-111
Web App Attack
๐บ๐ธ
Penny Packer
2025-02-23 06:50:10
(1 year ago)
Fail2Ban apache-tripwires
Web App Attack
๐ฎ๐ฑ
Dolphi
2025-02-17 00:20:07
(1 year ago)
POST //xmlrpc.php
Brute-Force
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2025-02-14 16:50:07
(1 year ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
LB/Lebanon/-
Web App Attack
๐ณ๐ฑ
MM-bot
2025-02-13 06:19:36
(1 year ago)
URL-probe: HTTP/1.1 GET request on /.well-known/acme-challenge/index.php (2025-02-13 07:19:36 UTC+1)
Hacking
Web App Attack
๐ฉ๐ช
spam.must.die
2025-02-12 15:33:59
(1 year ago)
IP triggered category <category>
Hacking
Web App Attack