πΊπΈ
TPI-Abuse
2023-11-19 16:27:02
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 11:26:59.028028 2023] [security2:error] [pid 10580:tid 47846558566144] [client 2a01:4f8:241:4b06::2:47752] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.gilesrentalcars.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.gilesrentalcars.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVo3U-_EG2paxn2pb8s9GQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 16:09:07
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 11:09:02.559018 2023] [security2:error] [pid 6352] [client 2a01:4f8:241:4b06::2:50200] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fraganciasyaromasbritanicas.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fraganciasyaromasbritanicas.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVozHmoZ03ZDFxHpKotPYQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 15:31:40
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 10:31:32.336704 2023] [security2:error] [pid 14535] [client 2a01:4f8:241:4b06::2:42610] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.elimer.com.ve|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.elimer.com.ve"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVoqVDd0vT3hNYLbE6SKmwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 15:14:03
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 10:13:56.229873 2023] [security2:error] [pid 8742] [client 2a01:4f8:241:4b06::2:41072] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.dorismitchell.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.dorismitchell.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVomNCuLzBgRHqu_1-euHQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 14:42:52
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 09:42:47.387031 2023] [security2:error] [pid 8782] [client 2a01:4f8:241:4b06::2:55462] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.creationorevolution.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.creationorevolution.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVoe5zp65HcGhM8zeAO3HgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 14:10:34
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 09:10:30.520404 2023] [security2:error] [pid 29729] [client 2a01:4f8:241:4b06::2:49222] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cccorponline.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cccorponline.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVoXVuYDUYMgNbGd81_ZZgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 13:35:14
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 08:35:10.804683 2023] [security2:error] [pid 3758] [client 2a01:4f8:241:4b06::2:41326] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.blosser.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.blosser.info"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVoPDu8auV-ctIH6-WIKQwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 12:20:38
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 07:20:32.155182 2023] [security2:error] [pid 15739] [client 2a01:4f8:241:4b06::2:59038] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.angelabcomics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.angelabcomics.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVn9kI31bz1u9GEc1119nwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 11:55:42
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 06:55:36.808649 2023] [security2:error] [pid 18412:tid 48010641839872] [client 2a01:4f8:241:4b06::2:36590] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.alemarmedia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.alemarmedia.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVn3uNV3-d1WFtE7xP6BPAAAANA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-19 11:22:12
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:4b06::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 06:22:08.632975 2023] [security2:error] [pid 18939] [client 2a01:4f8:241:4b06::2:53598] [client 2a01:4f8:241:4b06::2] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.accommodation-perthairport.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.accommodation-perthairport.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVnv4Ca2Kja-JIjYSCifCQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
expandmade.com
2023-11-17 20:22:40
(2 years ago)
unauthorized rest api call [17/Nov/2023:20:22:40 "GET /wp-json/"]
Web App Attack
Anonymous
2023-11-17 10:54:44
(2 years ago)
2a01:4f8:241:4b06::2 - - [17/Nov/2023:11:54:43 +0100] "GET /wp-json HTTP/1.1" 401 5364 "-" "Mozilla/ ...
show more
2a01:4f8:241:4b06::2 - - [17/Nov/2023:11:54:43 +0100] "GET /wp-json HTTP/1.1" 401 5364 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36 OPR/102.0.0.0"
2a01:4f8:241:4b06::2 - - [17/Nov/2023:11:54:43 +0100] "GET /wp-json/ HTTP/1.1" 401 5364 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36"
2a01:4f8:241:4b06::2 - - [17/Nov/2023:11:54:44 +0100] "GET /wp-admin/admin-ajax.php?action=tve_login_submit HTTP/1.1" 401 5364 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36 OPR/102.0.0.0"
...
show less
Web App Attack
π¦πΊ
MAGIC
2023-11-17 04:01:02
(2 years ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2023-11-13 17:21:19
(2 years ago)
Detected Hacking, SQL Injection or general Web App Attack
Web App Attack
π¦πΊ
MAGIC
2023-11-08 03:12:03
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot