πΊπΈ
TPI-Abuse
2025-02-21 15:27:17
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 21 10:27:11.571994 2025] [security2:error] [pid 3820:tid 3820] [client 2a0b:f4c2:2::45:36581] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||computerservicesofflorida.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "computerservicesofflorida.com"] [uri "/mysql.sql"] [unique_id "Z7ibTy5NdrUUM4sEzH8nXQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-02-18 06:43:04
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 18 01:42:57.594943 2025] [security2:error] [pid 29366:tid 29366] [client 2a0b:f4c2:2::45:57279] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.gasoilliquidsdaily.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.gasoilliquidsdaily.com"] [uri "/gasoil.sql"] [unique_id "Z7Qr8eqgPNW6ecEhaKxZNgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-02-10 20:00:53
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 10 15:00:45.786426 2025] [security2:error] [pid 3212253:tid 3212253] [client 2a0b:f4c2:2::45:44423] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||preserveourcommunity.com.jimgrenier.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "preserveourcommunity.com.jimgrenier.com"] [uri "/mysql.sql"] [unique_id "Z6pa7Y2UfHrSwnkIhVvQ8QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π³
ThreatBook.io
2025-01-16 23:18:36
(1 year ago)
2025-01-16 02:26:00 /
Web App Attack
πΊπΈ
TPI-Abuse
2024-12-04 17:31:22
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 04 12:31:19.711661 2024] [security2:error] [pid 14166:tid 14421] [client 2a0b:f4c2:2::45:52135] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cheqs.org"] [uri "/wp-config.php_old"] [unique_id "Z1CR56R0cNOhgbx1Ag1N9AAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-09-19 18:55:48
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 19 14:55:42.624242 2024] [security2:error] [pid 28261:tid 28261] [client 2a0b:f4c2:2::45:57975] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stukabird.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stukabird.com"] [uri "/backups.sql"] [unique_id "ZuxzroWiDtvqeJvII7naqwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
afleventoffice.com.au
2024-09-04 11:37:45
(2 years ago)
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-18 07:23:27
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 18 03:23:22.724198 2024] [security2:error] [pid 27527:tid 27535] [client 2a0b:f4c2:2::45:44801] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.pinnaclemgmt.net"] [uri "/.git/config"] [unique_id "ZsGhakjRQNlow065_BmmFwAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-08-06 07:26:21
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 06 03:26:14.652163 2024] [security2:error] [pid 29259:tid 29259] [client 2a0b:f4c2:2::45:15987] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.nesetsv.com"] [uri "/.git/config"] [unique_id "ZrHQFpoN615Z9tas4cHiFAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
OiledAmoeba
2024-08-05 16:03:12
(2 years ago)
2a0b:f4c2:2::45 - - [05/Aug/2024:18:03:07 +0200] "www.ruhnke.cloud" "POST //xmlrpc.php HTTP/1.1" 200 ...
show more
2a0b:f4c2:2::45 - - [05/Aug/2024:18:03:07 +0200] "www.ruhnke.cloud" "POST //xmlrpc.php HTTP/1.1" 200 258 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36" "-" 0.900 "-"
2a0b:f4c2:2::45 - - [05/Aug/2024:18:03:08 +0200] "www.ruhnke.cloud" "POST //xmlrpc.php HTTP/1.1" 200 256 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36" "-" 0.643 "-"
2a0b:f4c2:2::45 - - [05/Aug/2024:18:03:09 +0200] "www.ruhnke.cloud" "POST //xmlrpc.php HTTP/1.1" 200 291 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36" "-" 0.654 "-"
2a0b:f4c2:2::45 - - [05/Aug/2024:18:03:10 +0200] "www.ruhnke.cloud" "POST //xmlrpc.php HTTP/1.1" 403 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36" "-" 0.484 "-"
2a0b:f4c2:2::45 - - [05/Aug/2024:18:03:11 +0200] "
...
show less
Brute-Force
πΊπΈ
TPI-Abuse
2024-07-30 09:45:56
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 30 05:45:51.786805 2024] [security2:error] [pid 22730:tid 22730] [client 2a0b:f4c2:2::45:31703] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.schryverdesign.com"] [uri "/.git/config"] [unique_id "Zqi2T05OinlVRnpmp_f3BQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-07-30 07:18:05
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 30 03:17:57.618844 2024] [security2:error] [pid 26783:tid 26783] [client 2a0b:f4c2:2::45:31051] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.caonabo.com"] [uri "/.git/config"] [unique_id "ZqiTpZojKhLgE19ZgUwt7gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-07-30 06:00:45
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 30 02:00:39.233099 2024] [security2:error] [pid 7441:tid 7441] [client 2a0b:f4c2:2::45:3137] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.ribas.name"] [uri "/.git/config"] [unique_id "ZqiBh4NK0JSfCvdPoSAKeQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-07-22 15:41:47
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 22 11:41:40.451254 2024] [security2:error] [pid 3028:tid 3028] [client 2a0b:f4c2:2::45:52247] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.cmabiblequizzing.org"] [uri "/.git/config"] [unique_id "Zp59tLHvcBjuQ95_0TUo2gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-07-14 13:25:06
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2:2::45 (tor-exit-45.for-privacy.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 14 09:24:56.548064 2024] [security2:error] [pid 21996] [client 2a0b:f4c2:2::45:53859] [client 2a0b:f4c2:2::45] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "encuentraunbuenabogado.com"] [uri "/wp-config.phpold"] [unique_id "ZpPRqOJ4gq3ld5Ibp2ODpwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack