๐ฉ๐ช
HERA - Operations
2024-02-25 19:28:10
(2 years ago)
argeforum - searching for vulnerable scripts: admin.php 2024/02/25 20:28:10
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-25 01:24:34
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 24 20:24:26.646380 2024] [security2:error] [pid 17735] [client 2a0b:f4c2:1::1:28079] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||player-care.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "player-care.com"] [uri "/mailto:[email protected] "] [unique_id "ZdqWylSt_sKHNGHPDjShKwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-13 01:39:04
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 12 20:38:58.698295 2024] [security2:error] [pid 19232] [client 2a0b:f4c2:1::1:16211] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||register-yacht-bvi.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "register-yacht-bvi.com"] [uri "/mailto:[email protected] "] [unique_id "ZcrIMhTYmNrQ3mVv0UoI3QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-12 17:11:59
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 12 12:11:54.513197 2024] [security2:error] [pid 12353] [client 2a0b:f4c2:1::1:61391] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "78cards.biz"] [uri "/.env"] [unique_id "ZcpRWmmlfFKZfZoi5xRp_gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-11 06:37:04
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 11 01:37:00.422559 2024] [security2:error] [pid 19156] [client 2a0b:f4c2:1::1:24243] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mrslindasoulfoodtogo.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mrslindasoulfoodtogo.com"] [uri "/mrslinda.sql"] [unique_id "ZchrDDSvspZZfrdJWcDmKAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-28 10:20:00
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 28 05:19:54.913318 2024] [security2:error] [pid 18016] [client 2a0b:f4c2:1::1:1153] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||globalsecurity360.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "globalsecurity360.com"] [uri "/mailto:[email protected] "] [unique_id "ZbYqSjlVsFrkLP4sFREH4gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-01 04:40:48
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 31 23:40:43.444577 2023] [security2:error] [pid 9649] [client 2a0b:f4c2:1::1:38751] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||forgottenvictims.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "forgottenvictims.com"] [uri "/mailto:[email protected] "] [unique_id "ZZJCS1LcgqR3mYV5LRDsKQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
zeitschel.net
2023-12-07 22:29:36
(2 years ago)
2023-12-07 23:29:28 Unauthorized /owa/auth.owa
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-22 00:03:22
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 21 19:03:19.437607 2023] [security2:error] [pid 1268] [client 2a0b:f4c2:1::1:11775] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||veneerdent.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "veneerdent.com"] [uri "/ar/\\xd8\\xb9\\xd9\\x86\\xd8\\xa7/\\xd8\\xa7\\xd9\\x84\\xd9\\x81\\xd8\\xb1\\xd9\\x8a\\xd9\\x82/[email protected] "] [unique_id "ZV1FR03PA5aDfhByG52MXwAAABU"], referer: http://veneerdent.com/ar/%d8%b9%d9%86%d8%a7/%d8%a7%d9%84%d9%81%d8%b1%d9%8a%d9%82/[email protected]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-16 06:56:31
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:1::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 16 01:56:24.472257 2023] [security2:error] [pid 6467] [client 2a0b:f4c2:1::1:53181] [client 2a0b:f4c2:1::1] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.castillejo.eu"] [uri "/.git/config"] [unique_id "ZVW9GJ5loT6pVfhHtU-gxQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2023-10-26 22:15:32
(2 years ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-admin.php - User Agent: M ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-admin.php - User Agent: Mozilla/5.0 (Windows NT 10.0; rv:109.0) Gecko/20100101 Firefox/115.0 - Timestamp: 10/26/2023 5:15 pm (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
ALSCOยฎ๏ธ
2023-10-09 22:04:30
(2 years ago)
Report By ALSCO Security Team: XSS Injection Attempt Detected
Web App Attack
๐บ๐ธ
Secure Gatewayยฎ๏ธ
2023-10-09 22:04:30
(2 years ago)
Report By Secure Gateway Security Team: Unauthorized Connection Attempt
Web App Attack
๐จ๐ณ
ThreatBook.io
2023-09-25 01:28:07
(2 years ago)
ThreatBook Intelligence: Scanner more details on http://threatbook.io/ip/2a0b:f4c2:1::1
2023-09-24 0 ...
show more
ThreatBook Intelligence: Scanner more details on http://threatbook.io/ip/2a0b:f4c2:1::1
2023-09-24 03:24:23 /favicon.ico
show less
Web App Attack
๐จ๐ณ
ThreatBook.io
2023-09-23 00:56:53
(2 years ago)
ThreatBook Intelligence: Scanner more details on http://threatbook.io/ip/2a0b:f4c2:1::1
2023-09-22 0 ...
show more
ThreatBook Intelligence: Scanner more details on http://threatbook.io/ip/2a0b:f4c2:1::1
2023-09-22 01:05:01 /favicon.ico
2023-09-22 01:05:04 /
show less
Web App Attack