๐ณ๐ฑ
Savvii
2024-02-19 15:53:28
(2 years ago)
20 attempts against mh-misbehave-ban on flare
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-18 17:36:14
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 18 12:36:08.659437 2024] [security2:error] [pid 2715840:tid 47718937171712] [client 2a0a:6340:1:953:216:3eff:fe08:7674:57206] [client 2a0a:6340:1:953:216:3eff:fe08:7674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dinersdriveinsdiveslocations.com"] [uri "/.env"] [unique_id "ZdJACEHBrc35IUcf1yKi5QAAAoM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-18 17:15:23
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 18 12:15:16.662621 2024] [security2:error] [pid 2792] [client 2a0a:6340:1:953:216:3eff:fe08:7674:47366] [client 2a0a:6340:1:953:216:3eff:fe08:7674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "colorwize.com"] [uri "/.env"] [unique_id "ZdI7JMpXWoqxNL_p6vUH9wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2024-02-18 12:15:24
(2 years ago)
20 attempts against mh-misbehave-ban on shine
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-13 17:43:01
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 13 12:42:53.555181 2024] [security2:error] [pid 6671] [client 2a0a:6340:1:953:216:3eff:fe08:7674:54122] [client 2a0a:6340:1:953:216:3eff:fe08:7674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paragontechusa.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZcuqHUTFiw-u05F6AOslWAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-13 17:07:50
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 13 12:07:43.276271 2024] [security2:error] [pid 21243:tid 46954960705280] [client 2a0a:6340:1:953:216:3eff:fe08:7674:48314] [client 2a0a:6340:1:953:216:3eff:fe08:7674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bakmail.net"] [uri "/wp-admin/admin-ajax.php"] [unique_id "Zcuh3wPG9reIudTpy_-0zQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2024-02-13 16:20:06
(2 years ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ps-center
2024-02-13 16:13:30
(2 years ago)
MYH: Web Attack GET /wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
ps-center
2024-02-11 16:05:49
(2 years ago)
ABV: Web Attack GET /blog/wp-login.php
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-11 14:43:16
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0a:6340:1:953:216:3eff:fe08:7674 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 11 09:43:12.930759 2024] [security2:error] [pid 15035] [client 2a0a:6340:1:953:216:3eff:fe08:7674:41578] [client 2a0a:6340:1:953:216:3eff:fe08:7674] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||backstore.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "backstore.com"] [uri "/backstore/Index_Products.htm/magmi-importer/conf/magmi.ini"] [unique_id "ZcjdADCup8NO56txc0p01wAAABM"], referer: http://specialtybackstore.com/magmi-importer/conf/magmi.ini
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
setup
2024-02-07 14:55:04
(2 years ago)
/backoffice
Hacking
Web App Attack