๐ฌ๐ง
Mendip_Defender
2024-10-04 10:02:22
(1 year ago)
2a03:2880:f806:13:: - - [04/Oct/2024:11:02:36 +0100] "GET /picture.php/WW_30-09-2012_1462 HTTP/1.0" ...
show more
2a03:2880:f806:13:: - - [04/Oct/2024:11:02:36 +0100] "GET /picture.php/WW_30-09-2012_1462 HTTP/1.0" 200 3261 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2024-09-30 07:24:06
(1 year ago)
2a03:2880:f806:13:: - - [30/Sep/2024:08:24:19 +0100] "GET /picture.php/MW_22-07-2012_0537 HTTP/1.0" ...
show more
2a03:2880:f806:13:: - - [30/Sep/2024:08:24:19 +0100] "GET /picture.php/MW_22-07-2012_0537 HTTP/1.0" 200 3325 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2024-09-27 23:33:59
(1 year ago)
2a03:2880:f806:13:: - - [28/Sep/2024:00:34:11 +0100] "GET /picture.php/NYD_01-01-2006_0211/category/ ...
show more
2a03:2880:f806:13:: - - [28/Sep/2024:00:34:11 +0100] "GET /picture.php/NYD_01-01-2006_0211/category/187?action=rate HTTP/1.0" 302 1094 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2024-09-25 11:23:08
(1 year ago)
2a03:2880:f806:13:: - - [25/Sep/2024:12:23:19 +0100] "GET /picture.php/161851 HTTP/1.0" 200 3144 "-" ...
show more
2a03:2880:f806:13:: - - [25/Sep/2024:12:23:19 +0100] "GET /picture.php/161851 HTTP/1.0" 200 3144 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2024-09-19 09:56:03
(1 year ago)
2a03:2880:f806:13:: - - [19/Sep/2024:10:56:11 +0100] "GET /picture.php/DP_27-01-2013_0275/tags/67-hh ...
show more
2a03:2880:f806:13:: - - [19/Sep/2024:10:56:11 +0100] "GET /picture.php/DP_27-01-2013_0275/tags/67-hh?action=rate HTTP/1.0" 302 1085 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
๐ฉ๐ช
ghostwarriors
2024-09-03 17:50:05
(1 year ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ksol-hostmaster
2024-09-03 17:23:19
(1 year ago)
2024/09/03 19:23:18 [error] 50359#783118: *5930388 limiting requests, excess: 0.986 by zone "crawler ...
show more
2024/09/03 19:23:18 [error] 50359#783118: *5930388 limiting requests, excess: 0.986 by zone "crawler", client: 2a03:2880:f806:13::, server: crxforum.ksol.io, request: "GET /showAnswers.php?topicId=565&commentUniqId=5186970edf8f6&seed=666ec26e02c75 HTTP/2.0", host: "crxforum.ksol.io"
...
show less
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2024-08-30 22:46:42
(1 year ago)
2a03:2880:f806:13:: - - [30/Aug/2024:23:46:44 +0100] "GET /picture.php/154679/tags/626-cheddar HTTP/ ...
show more
2a03:2880:f806:13:: - - [30/Aug/2024:23:46:44 +0100] "GET /picture.php/154679/tags/626-cheddar HTTP/1.0" 200 3268 "-" "facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)"
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-08-23 18:08:30
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 23 14:08:21.707446 2024] [security2:error] [pid 18323:tid 18323] [client 2a03:2880:f806:13:::43272] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.trinitydent.com|F|2"] [data ".axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.trinitydent.com"] [uri "/WebResource.axd"] [unique_id "ZsjQFfY5El2o7qtzEdah_AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-22 03:57:15
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 21 23:57:07.890785 2024] [security2:error] [pid 16168:tid 16168] [client 2a03:2880:f806:13:::53684] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lertap5.com|F|2"] [data ".assess.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lertap5.com"] [uri "/HTMLHelp/Lrtp59HTML/www.assess.com"] [unique_id "Zsa3Ewn5F3L6Ah3jb9xwugAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-21 11:29:41
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 21 07:29:34.252926 2024] [security2:error] [pid 29320:tid 29320] [client 2a03:2880:f806:13:::41208] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.microkerneltechnologies.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.microkerneltechnologies.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "ZsXPnvFCE7xwytiHxJyfUwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-18 18:48:22
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 18 14:48:18.413529 2024] [security2:error] [pid 14868:tid 14868] [client 2a03:2880:f806:13:::59612] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.newisci.org|F|2"] [data ".safari-eha.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.newisci.org"] [uri "/expo_2025/www.safari-eha.com"] [unique_id "ZsJB8tVvu8NfXJ4K9mD1zAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-18 07:00:08
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 18 02:59:59.040157 2024] [security2:error] [pid 14001:tid 14001] [client 2a03:2880:f806:13:::51038] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blogs.melton.space|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blogs.melton.space"] [uri "/thehive/wp-json/wp/v2/users/1"] [unique_id "ZsGb7_5Nj9FV_p3ZcWx5nQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-17 17:55:21
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 17 13:55:17.844314 2024] [security2:error] [pid 9664:tid 9664] [client 2a03:2880:f806:13:::60814] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.wild-goose.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.wild-goose.net"] [uri "/wp-json/wp/v2/users/4"] [unique_id "ZsDkBVLNAZxoiHpBXlXwmAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-15 14:51:56
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 15 10:51:52.000972 2024] [security2:error] [pid 32277:tid 32277] [client 2a03:2880:f806:13:::52322] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.greenroomonline.org|F|2"] [data ".wagonwheeltheatre.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.greenroomonline.org"] [uri "/theaters/www.wagonwheeltheatre.com"] [unique_id "Zr4WB067dWDJP6LwWtgQwgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack