π³π±
Linuxmalwarehuntingnl
2024-07-04 23:16:15
(2 years ago)
Honeypot HIT
Brute-Force
πΊπΈ
TPI-Abuse
2024-06-29 05:06:43
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 29 01:06:38.244908 2024] [security2:error] [pid 17687] [client 2a0b:f4c2::11:41148] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||tenmenband.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "tenmenband.com"] [uri "/tenmenba.sql"] [unique_id "Zn-WXs4VuN9RIKOoqDamOQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Linuxmalwarehuntingnl
2024-06-28 22:53:00
(2 years ago)
Honeypot HIT
Brute-Force
πΊπΈ
TPI-Abuse
2024-06-13 03:13:11
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 12 23:13:04.228120 2024] [security2:error] [pid 3496] [client 2a0b:f4c2::11:1216] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.susanleeward.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.susanleeward.com"] [uri "/backup.sql"] [unique_id "ZmpjwLIIVicf3-yaB_FrRwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-06-09 14:16:15
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 09 10:16:10.544501 2024] [security2:error] [pid 24004] [client 2a0b:f4c2::11:49902] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||chinookdrivingacademy.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "chinookdrivingacademy.com"] [uri "/chinookdrivingac.sql"] [unique_id "ZmW5KtphCnbVeR0sFaRwwwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
MarkGGN
2024-04-26 02:00:36
(2 years ago)
Wordpress related. [1714096569] [0] [*] [#8745229] [0] [2] [2a0b:f4c2::11] [403] [GET] [/index.php] ...
show more
Wordpress related. [1714096569] [0] [*] [#8745229] [0] [2] [2a0b:f4c2::11] [403] [GET] [/index.php] [WordPress: Blocked access to the WP REST API] [hex:2f77702d6a736f6e2f77702f76322f70616765732f3332323434]
[1714096569] [0] [*] [#8745229] [0] [2] [2a0b:f4c2::11] [403] [GET] [/index.php] [WordPress: Blocked access to the WP REST API] [hex:2f77702d6a736f6e2f77702f76322f70616765732f3332323434]
show less
Web Spam
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-04-23 10:05:07
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 23 06:05:00.898333 2024] [security2:error] [pid 23987] [client 2a0b:f4c2::11:3848] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||studiopilates.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "studiopilates.net"] [uri "/udiopilates.sql"] [unique_id "ZieHzBdS5KfMop4PWFmt5wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-03-29 05:15:22
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 29 01:15:16.456710 2024] [security2:error] [pid 16939] [client 2a0b:f4c2::11:39762] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.mukau.com"] [uri "/.git/config"] [unique_id "ZgZOZB9dLXs8G_ig0hzajgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-03-28 21:35:09
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 28 17:35:05.367131 2024] [security2:error] [pid 5435] [client 2a0b:f4c2::11:60264] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.michaelholdaway.com"] [uri "/.git/config"] [unique_id "ZgXiicQ0NDhMGF03M6YolgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-03-28 18:32:09
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 28 14:32:02.932367 2024] [security2:error] [pid 8080] [client 2a0b:f4c2::11:57612] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.alpha-hk.com"] [uri "/.git/config"] [unique_id "ZgW3orV8fOxOenH8wq1A5QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-03-21 17:10:30
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 21 13:10:22.474878 2024] [security2:error] [pid 15301] [client 2a0b:f4c2::11:38034] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.martaaizenman.com"] [uri "/.git/config"] [unique_id "Zfxp_prO07cLCbL_v2MS7AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-03-21 15:04:02
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 21 11:03:57.469931 2024] [security2:error] [pid 21956] [client 2a0b:f4c2::11:21168] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.proyectando.com"] [uri "/.git/config"] [unique_id "ZfxMXcn6FkAtmi9aKyMrtAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-03-21 12:25:36
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 21 08:25:29.855948 2024] [security2:error] [pid 22848] [client 2a0b:f4c2::11:55022] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.triforiawinds.com"] [uri "/.git/config"] [unique_id "ZfwnOUUQ9DSvHhovRCRSWwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-03-21 08:39:44
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 21 04:39:35.829758 2024] [security2:error] [pid 28070] [client 2a0b:f4c2::11:63062] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.lisadodd.com"] [uri "/.git/config"] [unique_id "ZfvyR1R4H_bgUl_rOjMAwwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-03-21 08:05:57
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::11 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 21 04:05:50.986739 2024] [security2:error] [pid 12524] [client 2a0b:f4c2::11:58892] [client 2a0b:f4c2::11] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.whitmarshinc.com"] [uri "/.git/config"] [unique_id "ZfvqXpJRh9uyjQXe67_8pwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack