๐บ๐ธ
TPI-Abuse
2024-11-25 17:57:01
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 25 12:56:52.852474 2024] [security2:error] [pid 1877:tid 1877] [client 2a0b:f4c2:1::1:8045] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.shaunthomas.com"] [uri "/.git/config"] [unique_id "Z0S6ZNyoRoWjMsyFAWXrLAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2024-11-23 05:10:06
(1 year ago)
Probing for Wordpress vulnerabilities
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-22 04:11:04
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 21 23:11:00.400258 2024] [security2:error] [pid 22972:tid 22972] [client 2a0b:f4c2:1::1:54431] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.garthp.com"] [uri "/.git/config"] [unique_id "Z0AEVOY_aHYsqbdpIHMfIQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-20 14:57:12
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 20 09:57:03.428315 2024] [security2:error] [pid 6721:tid 6721] [client 2a0b:f4c2:1::1:46061] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.midnight-tech.com"] [uri "/.git/config"] [unique_id "Zz34v_9REALxs9DfiePlVwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-20 10:14:32
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 20 05:14:24.674091 2024] [security2:error] [pid 20805:tid 20805] [client 2a0b:f4c2:1::1:8267] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.webwzl.com"] [uri "/.git/config"] [unique_id "Zz22gLqQ_9o-OHRPqhWhkgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-20 01:46:16
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 19 20:46:12.913658 2024] [security2:error] [pid 4464:tid 4596] [client 2a0b:f4c2:1::1:4113] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.kd2lst.us"] [uri "/.git/config"] [unique_id "Zz0_ZNK_IVh4GuSfcZN9FwAAAVY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-20 01:28:39
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 19 20:28:31.186747 2024] [security2:error] [pid 9767:tid 9767] [client 2a0b:f4c2:1::1:22675] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.highdesertrocketry.org"] [uri "/.git/config"] [unique_id "Zz07P6My_wZl8G1f8NxSewAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
XICTRON
2024-11-08 13:35:08
(1 year ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2024-11-07 03:40:48
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 06 22:40:41.109578 2024] [security2:error] [pid 2879:tid 2882] [client 2a0b:f4c2:1::1:64123] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robotics4fun.com"] [uri "/wp-config.php9"] [unique_id "Zyw2uVhfAzrAyl2nACzhCwAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-11-05 10:30:06
(1 year ago)
| Multiple common web attacks from same source ip. (multiple servers)
Hacking
SQL Injection
Web App Attack
๐ฆ๐บ
weblite
2024-11-04 15:56:38
(1 year ago)
WP_MALWARE_PROBE
Hacking
Web App Attack
๐ฉ๐ช
Admins@FBN
2024-11-03 19:57:08
(1 year ago)
FW-PortScan: Traffic Blocked srcport=61897 dstport=443
Port Scan
๐ต๐ฑ
sefinek.net
2024-11-03 11:02:24
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
ASN: 60729 (TORSERVERS-NET)
P ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
ASN: 60729 (TORSERVERS-NET)
Protocol: HTTP/2 (method GET)
Domain: stella.sefinek.net
Endpoint: /favicon.ico
Timestamp: 2024-11-03T10:06:17Z
Ray ID: 8dcb8d00e926ca50
Rule ID: 61a9aeb040004a25a09c35e9bfb80913
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:132.0) Gecko/20100101 Firefox/132.0
Report generated by Node-Cloudflare-WAF-AbuseIPDB https://github.com/sefinek/Node-Cloudflare-WAF-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
BlueWire Hosting
2024-11-02 15:10:58
(1 year ago)
Probing for Wordpress vulnerabilities
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2024-11-02 14:19:59
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
ASN: 60729 (TORSERVERS-NET)
P ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
ASN: 60729 (TORSERVERS-NET)
Protocol: HTTP/2 (method GET)
Domain: blocklist.sefinek.net
Endpoint: /generated/v1/0.0.0.0/malicious/DandelionSprout-AntiMalwareHosts.fork.txt
Query: ?_=7
Timestamp: 2024-11-02T12:21:17Z
Ray ID: 8dc415620874ca33
Rule ID: 61a9aeb040004a25a09c35e9bfb80913
UA: Mozilla/5.0 (Android 12; Mobile; rv:128.0) Gecko/128.0 Firefox/128.0
Report generated by Node-Cloudflare-WAF-AbuseIPDB https://github.com/sefinek/Node-Cloudflare-WAF-AbuseIPDB
show less
Bad Web Bot