๐ณ๐ฑ
Linuxmalwarehuntingnl
2024-07-04 23:15:27
(2 years ago)
Honeypot HIT
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-06-30 04:37:51
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 30 00:37:44.350247 2024] [security2:error] [pid 936] [client 2a07:e03:2a::bcde:42890] [client 2a07:e03:2a::bcde] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||aigarc.com|F|2"] [data ".backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "aigarc.com"] [uri "/config.backup"] [unique_id "ZoDhGB9Vsr-ONBTgBVWLDQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Linuxmalwarehuntingnl
2024-06-28 22:52:52
(2 years ago)
Honeypot HIT
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-06-16 12:53:49
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 16 08:53:44.201459 2024] [security2:error] [pid 166339] [client 2a07:e03:2a::bcde:59676] [client 2a07:e03:2a::bcde] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||marjosse.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "marjosse.com"] [uri "/sql_dump_file.sql"] [unique_id "Zm7gWGdx1iqucw9yAk7-AAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-15 15:12:28
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 15 11:12:21.608554 2024] [security2:error] [pid 15761] [client 2a07:e03:2a::bcde:40642] [client 2a07:e03:2a::bcde] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||teenybikinigirls.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "teenybikinigirls.com"] [uri "/teeny.sql"] [unique_id "Zh1D1U-Cr-Pssu2w2qsAUAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-21 09:51:15
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 21 05:51:07.240255 2024] [security2:error] [pid 7322] [client 2a07:e03:2a::bcde:43812] [client 2a07:e03:2a::bcde] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.billymitchell.com"] [uri "/.git/config"] [unique_id "ZfwDCwcWqOr9q5FjtjWwZgAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-13 20:28:53
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 13 16:28:49.029438 2024] [security2:error] [pid 8191] [client 2a07:e03:2a::bcde:48424] [client 2a07:e03:2a::bcde] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.suncastleinteriors.com"] [uri "/.git/config"] [unique_id "ZfIMgX9Ff_Z_DyVxpOUDlAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
beehivesafety
2024-01-30 03:46:27
(2 years ago)
Threat Blocked by BeeHive from (ASN:210083) (Network:PRIVEX) (Host:knowledgebase.beehive.systems) (M ...
show more
Threat Blocked by BeeHive from (ASN:210083) (Network:PRIVEX) (Host:knowledgebase.beehive.systems) (Method:GET) (Protocol:HTTP/1.1) (Timestamp:2024-01-30T03:46:27Z)
show less
Open Proxy
VPN IP
Port Scan
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-19 11:58:56
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 2a07:e03:2a::bcde (tor-exit-nl1.privex.cc): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 06:58:50.689887 2023] [security2:error] [pid 13122] [client 2a07:e03:2a::bcde:37201] [client 2a07:e03:2a::bcde] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gototwincities.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gototwincities.com"] [uri "/perl-gardens-plymouth/mailto:[email protected] "] [unique_id "ZVn4ehxMXvskGgF6qfmP1AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ณ
ThreatBook.io
2023-09-27 01:53:35
(2 years ago)
2023-09-26 15:23:43 /
Web App Attack