๐น๐ท
neron
2026-07-30 03:06:20
(1 day ago)
CrowdSec blocked: firehol_cruzit_web_attacks detected via OPNsense firewall
Hacking
Web App Attack
๐ธ๐ฎ
borisperc
2025-08-03 10:36:34
(11 months ago)
Web Spam
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-26 03:56:44
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 23.154.177.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 23.154.177.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 25 22:56:38.737837 2025] [security2:error] [pid 2042:tid 2042] [client 23.154.177.7:17578] [client 23.154.177.7] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nypatriotcards.com"] [uri "/wp-config.php.maj"] [unique_id "Z76Q9m0fAloxfUPgJMUTQQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-19 22:11:28
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 23.154.177.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 23.154.177.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 19 17:11:24.448661 2025] [security2:error] [pid 4101396:tid 4101396] [client 23.154.177.7:39354] [client 23.154.177.7] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||canebrakes.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "canebrakes.com"] [uri "/wp-content/mysql.sql"] [unique_id "Z7ZXDD5BeuRaoxLPF-nllwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-16 09:38:15
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 23.154.177.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 23.154.177.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 16 04:38:11.138935 2025] [security2:error] [pid 11904:tid 11904] [client 23.154.177.7:31718] [client 23.154.177.7] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||graymatterofdc.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "graymatterofdc.com"] [uri "/wp-content/mysql.sql"] [unique_id "Z7GyA9Pr-SwgiiGvJ0nE-AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-12 23:49:12
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 23.154.177.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 23.154.177.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 12 18:49:09.160295 2025] [security2:error] [pid 27181:tid 27197] [client 23.154.177.7:44794] [client 23.154.177.7] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||frannykingsmith.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "frannykingsmith.com"] [uri "/fran.sql"] [unique_id "Z60zdfCcNJEzGHrqNSN4PQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2025-02-10 02:20:59
(1 year ago)
DDoS Attack Layer 7 Silent Bot
DDoS Attack
๐บ๐ฆ
URAN Publishing Service
2025-01-23 12:57:13
(1 year ago)
23.154.177.7 - - [23/Jan/2025:14:56:46 +0200] "GET /wp-admin/admin.php?page=chaty-contact-form-feed& ...
show more
23.154.177.7 - - [23/Jan/2025:14:56:46 +0200] "GET /wp-admin/admin.php?page=chaty-contact-form-feed&search=%3C%2Fscript%3E%3Cimg+src+onerror%3Dalert%28document.domain%29%3E HTTP/1.1" 404 2815 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.2 Safari/605.7.20"
23.154.177.7 - - [23/Jan/2025:14:56:46 +0200] "GET /wp-admin/options.php HTTP/1.1" 404 2814 "something" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:124.0) Gecko/20100101 Firefox/124.0"
...
show less
Web App Attack
๐ฉ๐ช
David Ferneding
2025-01-04 07:51:06
(1 year ago)
Part of large-scale ddos-attack, 212601 requests from this ip
DDoS Attack
๐ฉ๐ช
niceshops.com
2024-12-30 14:30:28
(1 year ago)
Web Attack multi (Dec 24 15:30:27 Matching rules: Detect possible SQL injection - E.g. Sleep(5) )
SQL Injection
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2024-12-29 22:02:43
(1 year ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
niceshops.com
2024-12-22 14:26:16
(1 year ago)
Web Attack multi (Dec 24 15:26:16 Matching rules: Detect possible SQL injection - Too many SQL keyw ...
show more
Web Attack multi (Dec 24 15:26:16 Matching rules: Detect possible SQL injection - Too many SQL keywords (more than 3 times),Detect possible SQL injection - E.g. Sleep(5),Detect possible SQL injection - E.g. Select * from )
show less
SQL Injection
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
niceshops.com
2024-12-22 11:23:01
(1 year ago)
Web Attack ([22/Dec/2024:12:17:40 +0100] )
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
niceshops.com
2024-12-19 03:41:31
(1 year ago)
Web Attack multi (Dec 24 04:41:30 Matching rules: Detect possible SQL injection - Too many SQL keyw ...
show more
Web Attack multi (Dec 24 04:41:30 Matching rules: Detect possible SQL injection - Too many SQL keywords (more than 3 times),Detect possible SQL injection - E.g. Sleep(5),Detect possible SQL injection - E.g. Select * from )
show less
SQL Injection
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
canine.tools
2024-12-10 21:04:08
(1 year ago)
[fail2ban Auto Report] searxng search spam abuse
Port Scan
Brute-Force