πΊπΈ
myagent.site
2023-12-20 08:16:08
(2 years ago)
Banned for posting to wp-login.php without referer {"log":"agent-148325","pwd":"agent-148325[login]" ...
show more
Banned for posting to wp-login.php without referer {"log":"agent-148325","pwd":"agent-148325[login]","wp-submit":"Log In","redirect_to":"http:\/\/jennjulehomes.com\/wp-admin\/","testcookie":"1"}
show less
Hacking
πΊπΈ
TPI-Abuse
2023-12-17 17:53:39
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 12:53:35.294789 2023] [security2:error] [pid 28112] [client 2603:3:6102:6340:::43224] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bigheartskitchen.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bigheartskitchen.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX81n-LGzXpUDzqWlaUz1AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-17 16:00:15
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 11:00:12.295879 2023] [security2:error] [pid 20567] [client 2603:3:6102:6340:::43544] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||midiowagymnastics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "midiowagymnastics.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX8bDHUXcIxPeRF414xf2gAAABQ"], referer: http://midiowagymnastics.com///wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-17 12:35:05
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 07:34:58.185948 2023] [security2:error] [pid 1375] [client 2603:3:6102:6340:::53460] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||garantaconsulting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "garantaconsulting.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX7q8oXDuwGWRTw9NrmXuwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-17 10:31:56
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 05:31:49.953953 2023] [security2:error] [pid 24542] [client 2603:3:6102:6340:::58124] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||serranoscoffee.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "serranoscoffee.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX7OFaDNM4T1MKLN9O1wiAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-17 08:19:41
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 17 03:19:37.390777 2023] [security2:error] [pid 2552:tid 47560089425664] [client 2603:3:6102:6340:::43980] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cocoonprojects.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cocoonprojects.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZX6vGZhujp4Bh0IhdlffZgAAAQU"], referer: http://cocoonproject.com///wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-15 11:01:08
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 15 06:01:02.008416 2023] [security2:error] [pid 6650] [client 2603:3:6102:6340:::40898] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tcit.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tcit.org"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZXwx7qlpbsVOpJU8qgca8gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-15 10:22:27
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 15 05:22:21.956249 2023] [security2:error] [pid 30222] [client 2603:3:6102:6340:::43340] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||duct.cloudex.click|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "duct.cloudex.click"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZXwo3ZM-LuOlyc-aUuWY7wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-15 08:31:02
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 15 03:30:56.812327 2023] [security2:error] [pid 4329] [client 2603:3:6102:6340:::38684] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cemesur-vision21.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cemesur-vision21.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZXwOwG4omD8ALllZ_xBQRgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
SCHAPPY
2023-12-01 12:23:05
(2 years ago)
Brute-force attack to identify web exploits
Brute-Force
Web App Attack
π©πͺ
eminovic.ba
2023-11-30 17:43:12
(2 years ago)
Wordpress attack
...
Hacking
Brute-Force
Web App Attack
πΈπͺ
maxxsense
2023-11-30 05:23:16
(2 years ago)
(wordpress) Failed wordpress login from 2603:3:6102:6340:: (US/United States/-)
Brute-Force
π¬π§
Swiptly
2023-11-30 00:43:06
(2 years ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack
πΊπΈ
MogBox
2023-11-29 20:07:34
(2 years ago)
(WPLOGIN) WP Login Attack 2603:3:6102:6340:: (Unknown): 3 in the last 3600 secs; Ports: *; Direction ...
show more
(WPLOGIN) WP Login Attack 2603:3:6102:6340:: (Unknown): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 2603:3:6102:6340:: - - [29/Nov/2023:15:07:26 -0500] "GET /wp-login.php HTTP/1.1" 301 271 "http://mogbox.net/wp-login.php" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
2603:3:6102:6340:: - - [29/Nov/2023:15:07:27 -0500] "GET /wp-login.php HTTP/1.1" 301 271 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
2603:3:6102:6340:: - - [29/Nov/2023:15:07:28 -0500] "POST /wp-login.php HTTP/1.1" 302 - "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
show less
Hacking
πΊπΈ
MogBox
2023-11-29 20:07:33
(2 years ago)
(mod_security) mod_security (id:5000130) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 36 ...
show more
(mod_security) mod_security (id:5000130) triggered by 2603:3:6102:6340:: (Unknown): 1 in the last 3600 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Wed Nov 29 15:07:28.155547 2023] [security2:error] [pid 45392:tid 46968986457856] [client 2603:3:6102:6340:::0] [client 2603:3:6102:6340::] ModSecurity: Access denied with code 401 (phase 2). Operator EQ matched 0 at REQUEST_HEADERS. [file "/etc/apache2/conf.d/modsec2.rules.conf"] [line "534"] [id "5000130"] [msg "wp-login request blocked, no referer"] [hostname "mogbox.net"] [uri "/wp-login.php"] [unique_id "ZWeaADrFGtm8NHo5lB2TdwAAAEc"]
show less
Hacking