๐ฌ๐ง
Mendip_Defender
2024-09-19 01:10:18
(2 years ago)
2a03:2880:f806:10:: - - [19/Sep/2024:02:10:27 +0100] "GET /picture.php/161353/categories HTTP/1.0" 2 ...
show more
2a03:2880:f806:10:: - - [19/Sep/2024:02:10:27 +0100] "GET /picture.php/161353/categories HTTP/1.0" 200 3172 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
๐ฉ๐ช
ghostwarriors
2024-09-03 20:20:10
(2 years ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ksol-hostmaster
2024-09-03 19:15:41
(2 years ago)
2024/09/03 21:15:41 [error] 50359#783118: *5972947 limiting requests, excess: 0.099 by zone "crawler ...
show more
2024/09/03 21:15:41 [error] 50359#783118: *5972947 limiting requests, excess: 0.099 by zone "crawler", client: 2a03:2880:f806:10::, server: crxforum.ksol.io, request: "GET /showThread.php?topicId=565&commentUniqId=51d03544ceb6e&seed=6683dc7eae057 HTTP/2.0", host: "crxforum.ksol.io"
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-08-21 23:27:52
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 21 19:27:48.769950 2024] [security2:error] [pid 5630:tid 5630] [client 2a03:2880:f806:10:::47798] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.furryfriendzy.org|F|2"] [data ".urbandogg.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.furryfriendzy.org"] [uri "/ourFriendz/www.urbandogg.com"] [unique_id "ZsZ39Mvh1QjCicYc4_OxxwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-21 12:42:15
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 21 08:42:10.763742 2024] [security2:error] [pid 4085076:tid 4085076] [client 2a03:2880:f806:10:::50512] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.ealonline.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.ealonline.org"] [uri "/wp-json/wp/v2/users/9"] [unique_id "ZsXgop9uJjHKpQZI3c_ybQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-20 09:38:59
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 20 05:38:53.652164 2024] [security2:error] [pid 4319:tid 4319] [client 2a03:2880:f806:10:::60684] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.localpetsitters.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.localpetsitters.com"] [uri "/find-a-pet-sitter/rensselaer-county/[email protected] "] [unique_id "ZsRkLVeDVTieFj8AHGOFKQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-19 08:56:43
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 19 04:56:38.193834 2024] [security2:error] [pid 2945:tid 2945] [client 2a03:2880:f806:10:::59890] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.ilikeabe.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.ilikeabe.com"] [uri "/michleencollins.com"] [unique_id "ZsMIxgIL_mCQmwUKlgVXBgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-18 11:24:34
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 18 07:24:30.214670 2024] [security2:error] [pid 26729:tid 26729] [client 2a03:2880:f806:10:::46448] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.baliaccommodationpadangpadang.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.baliaccommodationpadangpadang.com"] [uri "/what-we-offer/fishing-trips/[email protected] "] [unique_id "ZsHZ7io-kc9wm8j92qTppQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-16 08:08:35
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 16 04:08:28.530208 2024] [security2:error] [pid 13159:tid 13232] [client 2a03:2880:f806:10:::41742] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vtweaversguild.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vtweaversguild.org"] [uri "/VWG-FORUM/[email protected] "] [unique_id "Zr8I_LX5xDG0HbcD-GxzqQAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-16 04:58:49
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 16 00:58:44.178438 2024] [security2:error] [pid 29147:tid 29147] [client 2a03:2880:f806:10:::47122] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.nekstlevel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.nekstlevel.com"] [uri "/wp-json/wp/v2/users/2"] [unique_id "Zr7chPpJinabBOKvXFyIBQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-15 11:17:59
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 15 07:17:52.742969 2024] [security2:error] [pid 5698:tid 5698] [client 2a03:2880:f806:10:::40640] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lertap5.com|F|2"] [data ".lertap5.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lertap5.com"] [uri "/Nursing2017/HTML/www.lertap5.com"] [unique_id "Zr3j4P4_zfW7V3kSF0hcSwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-14 22:59:43
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 14 18:59:35.496535 2024] [security2:error] [pid 2744:tid 2744] [client 2a03:2880:f806:10:::46260] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.susanleeward.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.susanleeward.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "Zr0217U124yA-rRGiaFE5wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-14 01:44:32
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 13 21:44:27.353706 2024] [security2:error] [pid 16311:tid 16311] [client 2a03:2880:f806:10:::57988] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||idabwellsmonument.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "idabwellsmonument.org"] [uri "/wp-json/wp/v2/users/4"] [unique_id "ZrwL-_NqSUk8fQ2QD5oU9gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-14 00:25:46
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 13 20:25:42.307542 2024] [security2:error] [pid 807934:tid 807934] [client 2a03:2880:f806:10:::44952] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||deborahbein.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "deborahbein.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "Zrv5hkU2SBDRQOE2LBvZ0AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-13 20:34:07
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:10:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 13 16:34:01.559124 2024] [security2:error] [pid 31347:tid 31347] [client 2a03:2880:f806:10:::37316] [client 2a03:2880:f806:10::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.flatchestedmama.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.flatchestedmama.com"] [uri "/wp-json/wp/v2/users/2"] [unique_id "ZrvDOVVmhDFxsGWSM8NYwAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack