๐บ๐ธ
TPI-Abuse
2025-02-14 05:08:42
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 14 00:08:35.284420 2025] [security2:error] [pid 30906:tid 30906] [client 2a0b:f4c2::11:56392] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||local639.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "local639.com"] [uri "/wp-content/mysql.sql"] [unique_id "Z67P0y94LCJ4rwUFX1rjFQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-11 04:44:40
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 10 23:44:34.234786 2025] [security2:error] [pid 26892:tid 26892] [client 2a0b:f4c2::11:5274] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mkdesignndetailing.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mkdesignndetailing.com"] [uri "/mysql.sql"] [unique_id "Z6rVsq9iEM-HSvi4oUDXoQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-10 04:09:04
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 09 23:08:58.469032 2025] [security2:error] [pid 5817:tid 5835] [client 2a0b:f4c2::11:47952] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeanpaullederer.com"] [uri "/downl.php"] [unique_id "Z6l72t4leWOEByjPFqXWaQAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-08 04:58:39
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 07 23:58:33.145242 2025] [security2:error] [pid 11142:tid 11142] [client 2a0b:f4c2::11:7602] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.allotrope.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.allotrope.com"] [uri "/db.sql"] [unique_id "Z6bkeWERkKRTj3av2HFs6AAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-21 20:34:49
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 21 15:34:41.504349 2025] [security2:error] [pid 28283:tid 28283] [client 2a0b:f4c2::11:23040] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.airdriedrivingschool.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.airdriedrivingschool.com"] [uri "/db.sql"] [unique_id "Z5AE4dwGEs9eoFYA6ioS7wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-09 13:21:03
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 09 08:20:53.907182 2025] [security2:error] [pid 3096:tid 3228] [client 2a0b:f4c2::11:23414] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ceol.com"] [uri "/wp-config.php*"] [unique_id "Z3_NNV81bYnwYWQgLqgiCAAAARU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-16 12:12:15
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 16 07:12:08.011241 2024] [security2:error] [pid 20640:tid 20640] [client 2a0b:f4c2::11:1160] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marjosse.com"] [uri "/test/.env"] [unique_id "Z2AZGGV0zVTLO233IEneBgAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Roderic
2024-11-10 18:28:23
(1 year ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 2a0b:f4c2::11 (DE/German ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 2a0b:f4c2::11 (DE/Germany/-)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2024-10-04 17:37:26
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 04 13:37:21.281465 2024] [security2:error] [pid 19004:tid 19004] [client 2a0b:f4c2::11:9926] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.abecasis.com"] [uri "/.git/config"] [unique_id "ZwAn0V5Y8FPyPhXu4YWbGgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-10-03 06:13:17
(1 year ago)
| CMS (WordPress or Joomla) brute force attempt 10 times (rewritten)
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
SCHAPPY
2024-09-29 01:39:48
(1 year ago)
Critical web app attack detected. URL file extension is restricted by policy
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-01 21:32:57
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 01 17:32:48.606670 2024] [security2:error] [pid 18287:tid 18287] [client 2a0b:f4c2::11:24098] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||prcomputersolutions.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "prcomputersolutions.com"] [uri "/prcomput.sql"] [unique_id "ZtTdgEs-JVwp5w6w4S_jdgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MacLotsen
2024-08-28 17:47:07
(2 years ago)
berlin01.tor-exit.artikel10.org - - [28/Aug/2024:19:45:53 +0200] "POST /wp-login.php HTTP/1.1" 200 3 ...
show more
berlin01.tor-exit.artikel10.org - - [28/Aug/2024:19:45:53 +0200] "POST /wp-login.php HTTP/1.1" 200 3903 "https://ellenbakt.nl" "Mozilla/5.0 (X11; CrOS x86_64 14541.0.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
berlin01.tor-exit.artikel10.org - - [28/Aug/2024:19:45:53 +0200] "POST /wp-login.php HTTP/1.1" 200 3903 "https://ellenbakt.nl" "Mozilla/5.0 (Debian; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
berlin01.tor-exit.artikel10.org - - [28/Aug/2024:19:45:53 +0200] "POST /wp-login.php HTTP/1.1" 200 3903 "https://ellenbakt.nl" "Mozilla/5.0 (SS; Linux x86_64; rv:128.0) Gecko/20100101 Firefox/128.0"
berlin01.tor-exit.artikel10.org - - [28/Aug/2024:19:45:53 +0200] "POST /wp-login.php HTTP/1.1" 200 3903 "https://ellenbakt.nl" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.2.1 Safari/605.2.20"
berlin01.tor-exit.artikel10.org - - [28/Aug/2024:19:45:53 +0200] "POST /wp-log
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-18 20:47:48
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 18 16:47:43.342719 2024] [security2:error] [pid 4553:tid 4553] [client 2a0b:f4c2::11:2868] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||reyadecostarica.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "reyadecostarica.com"] [uri "/reyad.sql"] [unique_id "ZsJd7zWUZICxk7cm1Cd2nwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-18 19:58:12
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 18 15:58:06.260837 2024] [security2:error] [pid 4084:tid 4084] [client 2a0b:f4c2::11:27806] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.nysasports.com"] [uri "/.git/config"] [unique_id "ZsJSTpzwzC9oE7E7Bc2maAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack