🇺🇸
TPI-Abuse
2024-07-30 06:22:44
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 30 02:22:41.600307 2024] [security2:error] [pid 31911:tid 31911] [client 2a06:1700:0:12::4:24678] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.thewritekellys.com"] [uri "/.git/config"] [unique_id "ZqiGsUR9_iwNQ3bjqZkrCQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-07-30 06:05:42
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 30 02:05:35.061343 2024] [security2:error] [pid 13300:tid 13300] [client 2a06:1700:0:12::4:17616] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.nsdorganogram.org"] [uri "/.git/config"] [unique_id "ZqiCr7bcj-0huWUJ7XeElQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-07-29 22:31:32
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 29 18:31:24.200899 2024] [security2:error] [pid 18859:tid 18859] [client 2a06:1700:0:12::4:10828] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.getagriponlife.net"] [uri "/.git/config"] [unique_id "ZqgYPNyorUrcfv_Rz-F9kQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-07-25 02:04:39
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 24 22:04:32.069963 2024] [security2:error] [pid 30926:tid 30926] [client 2a06:1700:0:12::4:2512] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.dezignone.com"] [uri "/.git/config"] [unique_id "ZqGysL0fxhC57-7NWUbg0AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-07-22 16:54:38
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 22 12:54:34.397829 2024] [security2:error] [pid 10648:tid 10737] [client 2a06:1700:0:12::4:26774] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.woadwellness.com"] [uri "/.git/config"] [unique_id "Zp6OypMXNVuBlAlecUhNFQAAAQQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-07-22 16:19:29
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 22 12:19:20.174906 2024] [security2:error] [pid 16911:tid 16911] [client 2a06:1700:0:12::4:28872] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.scottcampbellconstruction.com"] [uri "/.git/config"] [unique_id "Zp6GiNMOgsQAr807KsS6zgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-07-06 06:13:02
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 06 02:12:53.282896 2024] [security2:error] [pid 23144] [client 2a06:1700:0:12::4:65026] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lezbianseductions.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lezbianseductions.com"] [uri "/lezbia.sql"] [unique_id "ZojgZeOL2eEJypOzdJ-eegAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Linuxmalwarehuntingnl
2024-07-04 23:15:05
(2 years ago)
Honeypot HIT
Brute-Force
🇳🇱
Linuxmalwarehuntingnl
2024-06-28 22:52:46
(2 years ago)
Honeypot HIT
Brute-Force
🇳🇱
BlueWire Hosting
2024-06-28 14:10:04
(2 years ago)
Probing for Wordpress vulnerabilities
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-06-28 02:17:54
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 27 22:17:47.181409 2024] [security2:error] [pid 21302] [client 2a06:1700:0:12::4:23110] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.marjosse.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.marjosse.com"] [uri "/backup-2023.sql"] [unique_id "Zn4dS5HJkREGSvQ1OIYg_AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-06-10 23:25:38
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 10 19:25:32.609061 2024] [security2:error] [pid 5061] [client 2a06:1700:0:12::4:32200] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jrwoodsrentals.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jrwoodsrentals.com"] [uri "/woodsrentals.sql"] [unique_id "ZmeLbMc62BOwGtVwq4UDNwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-06-08 15:54:36
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 08 11:54:28.948202 2024] [security2:error] [pid 1114749:tid 47827623360256] [client 2a06:1700:0:12::4:41764] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thecraftsycat.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thecraftsycat.com"] [uri "/cat.sql"] [unique_id "ZmR-tOVfDm7OH9f8DsO-oQAAAYc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-06-07 15:12:06
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 07 11:11:55.706998 2024] [security2:error] [pid 21891] [client 2a06:1700:0:12::4:5206] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "salsberggroup.com"] [uri "/wp-config.php.de"] [unique_id "ZmMjO5hxcYAfntRe_FcCCQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2024-06-01 23:32:33
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a06:1700:0:12::4 (bucarest01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 01 19:32:24.941726 2024] [security2:error] [pid 14223] [client 2a06:1700:0:12::4:1366] [client 2a06:1700:0:12::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.alternatievemedia.com"] [uri "/.git/config"] [unique_id "ZluviGKLZ7_-T-1k3ncLQQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack