πΊπΈ
TPI-Abuse
2024-08-23 18:08:30
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 23 14:08:21.707446 2024] [security2:error] [pid 18323:tid 18323] [client 2a03:2880:f806:13:::43272] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.trinitydent.com|F|2"] [data ".axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.trinitydent.com"] [uri "/WebResource.axd"] [unique_id "ZsjQFfY5El2o7qtzEdah_AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-22 03:57:15
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 21 23:57:07.890785 2024] [security2:error] [pid 16168:tid 16168] [client 2a03:2880:f806:13:::53684] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lertap5.com|F|2"] [data ".assess.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lertap5.com"] [uri "/HTMLHelp/Lrtp59HTML/www.assess.com"] [unique_id "Zsa3Ewn5F3L6Ah3jb9xwugAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-21 11:29:41
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 21 07:29:34.252926 2024] [security2:error] [pid 29320:tid 29320] [client 2a03:2880:f806:13:::41208] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.microkerneltechnologies.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.microkerneltechnologies.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "ZsXPnvFCE7xwytiHxJyfUwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-18 18:48:22
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 18 14:48:18.413529 2024] [security2:error] [pid 14868:tid 14868] [client 2a03:2880:f806:13:::59612] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.newisci.org|F|2"] [data ".safari-eha.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.newisci.org"] [uri "/expo_2025/www.safari-eha.com"] [unique_id "ZsJB8tVvu8NfXJ4K9mD1zAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-18 07:00:08
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 18 02:59:59.040157 2024] [security2:error] [pid 14001:tid 14001] [client 2a03:2880:f806:13:::51038] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blogs.melton.space|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blogs.melton.space"] [uri "/thehive/wp-json/wp/v2/users/1"] [unique_id "ZsGb7_5Nj9FV_p3ZcWx5nQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-17 17:55:21
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 17 13:55:17.844314 2024] [security2:error] [pid 9664:tid 9664] [client 2a03:2880:f806:13:::60814] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.wild-goose.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.wild-goose.net"] [uri "/wp-json/wp/v2/users/4"] [unique_id "ZsDkBVLNAZxoiHpBXlXwmAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-15 14:51:56
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 15 10:51:52.000972 2024] [security2:error] [pid 32277:tid 32277] [client 2a03:2880:f806:13:::52322] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.greenroomonline.org|F|2"] [data ".wagonwheeltheatre.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.greenroomonline.org"] [uri "/theaters/www.wagonwheeltheatre.com"] [unique_id "Zr4WB067dWDJP6LwWtgQwgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-14 23:16:56
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 14 19:16:48.796344 2024] [security2:error] [pid 2741:tid 2741] [client 2a03:2880:f806:13:::35754] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.americanureport.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.americanureport.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "Zr064FBgYamPwFz9mfiyVQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-14 12:54:11
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 14 08:54:04.861745 2024] [security2:error] [pid 30174:tid 30174] [client 2a03:2880:f806:13:::58866] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.darrenj.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.darrenj.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "Zryo7OQ-7mTxlnybhBfGWgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-12 14:09:29
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 12 10:09:26.060642 2024] [security2:error] [pid 12977:tid 12977] [client 2a03:2880:f806:13:::45512] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.blackbull.theappbusinessltd.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.blackbull.theappbusinessltd.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "ZroXlkbvT1w3W4Mk7p3hnAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-10 23:38:39
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 10 19:38:35.898980 2024] [security2:error] [pid 19264:tid 19279] [client 2a03:2880:f806:13:::36602] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.fishrapper.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fishrapper.com"] [uri "/images/2020-fishing-link-hovers/debug.log"] [unique_id "Zrf5-4hCZ-t_Eevhq-fnqAAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-10 23:12:40
(2 years ago)
(mod_security) mod_security (id:211180) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:211180) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 10 19:12:33.540928 2024] [security2:error] [pid 14146:tid 14146] [client 2a03:2880:f806:13:::38970] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_HEADERS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "50"] [id "211180"] [rev "3"] [msg "COMODO WAF: Session Fixation: SessionID Parameter Name with No Referer||www.thecrimsonpirate.com|F|2"] [data "Matched Data: phpsessid found within REQUEST_HEADERS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thecrimsonpirate.com"] [uri "/forum/index.php"] [unique_id "Zrfz4RvyoS_jVIwjvhngyQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-10 15:30:39
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 10 11:30:32.571333 2024] [security2:error] [pid 27509:tid 27509] [client 2a03:2880:f806:13:::50432] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.artsy-style.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.artsy-style.com"] [uri "/ART/flowers/Thumbs.db"] [unique_id "ZreHmN1KNn83fqd8jQK6OwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-10 08:37:29
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 10 04:37:24.588178 2024] [security2:error] [pid 21084:tid 21084] [client 2a03:2880:f806:13:::43286] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fruitinthedesert.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fruitinthedesert.com"] [uri "/NewFruits/wp-json/wp/v2/users/1"] [unique_id "ZrcmxB-Abx1I0gcFL7p5KwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-09 05:44:27
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:13:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 09 01:44:22.365748 2024] [security2:error] [pid 111128:tid 111128] [client 2a03:2880:f806:13:::45424] [client 2a03:2880:f806:13::] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dailybeautysupply.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dailybeautysupply.com"] [uri "/store/c2/Hair_Care.html/&sa=U&ved=2ahUKEwiA89iT0uzzAhXVbCsKHbeFA2IQFnoECBsQAg&usg=AOvVaw1lKcn-WLWFamr6RcENDbdH/magmi/conf/magmi.ini"] [unique_id "ZrWstlilG9djMF5nScEDOwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack