๐ฉ๐ช
on-com
2025-03-23 07:31:48
(1 year ago)
URL scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-22 09:57:52
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 22 05:57:48.833857 2025] [security2:error] [pid 29443:tid 29443] [client 2a0b:f4c2::24:60312] [client 2a0b:f4c2::24] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||brbvip.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brbvip.com"] [uri "/db.sql"] [unique_id "Z96JnCNpXmzDsopT_cKo_wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-21 01:44:30
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 20 21:44:22.165634 2025] [security2:error] [pid 23194:tid 23194] [client 2a0b:f4c2::24:61098] [client 2a0b:f4c2::24] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||schmitzcomm.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "schmitzcomm.net"] [uri "/backup_sample.sql"] [unique_id "Z9zEdhU0-2LTJIa2qdzgaQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2025-03-20 00:09:42
(1 year ago)
Repeated attacks detected by Fail2Ban in recidive jail
Hacking
๐ฉ๐ช
LRob
2025-03-19 00:07:42
(1 year ago)
Repeated attacks detected by Fail2Ban in recidive jail
Hacking
๐ฉ๐ช
LRob
2025-03-18 00:04:29
(1 year ago)
Repeated attacks detected by Fail2Ban in recidive jail
Hacking
๐ฉ๐ช
LRob
2025-03-16 00:05:44
(1 year ago)
Repeated attacks detected by Fail2Ban in recidive jail
Hacking
๐ง๐ช
cmbplf
2025-03-14 16:43:01
(1 year ago)
160 requests to */wp-comments-post.php
Brute-Force
Bad Web Bot
๐ฉ๐ช
LRob
2025-03-14 13:30:14
(1 year ago)
Repeated attacks detected by Fail2Ban in recidive jail
Hacking
๐บ๐ธ
TPI-Abuse
2025-03-13 06:00:12
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 13 02:00:03.243740 2025] [security2:error] [pid 5368:tid 5368] [client 2a0b:f4c2::24:42620] [client 2a0b:f4c2::24] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||zabyte.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "zabyte.net"] [uri "/installer-data.sql"] [unique_id "Z9J0Y7TWj3mGl8kCpWELMwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-04 06:01:26
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 04 01:01:21.427974 2025] [security2:error] [pid 19914:tid 19914] [client 2a0b:f4c2::24:3516] [client 2a0b:f4c2::24] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.45northoliveoil.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.45northoliveoil.com"] [uri "/installer-data.sql"] [unique_id "Z8aXMaMlX-A5PQ8Ki89xvAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-01 03:30:57
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 28 22:30:51.581620 2025] [security2:error] [pid 16696:tid 16696] [client 2a0b:f4c2::24:59878] [client 2a0b:f4c2::24] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||fernfield.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "fernfield.com"] [uri "/mysql.sql"] [unique_id "Z8J_a8Dda90RK6SvYVNnCgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-28 15:05:05
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 28 10:04:58.401843 2025] [security2:error] [pid 28235:tid 28235] [client 2a0b:f4c2::24:23356] [client 2a0b:f4c2::24] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.theappbusinessltd.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.theappbusinessltd.com"] [uri "/mysql.sql"] [unique_id "Z8HQmhtsY0VrdYngmvzSDwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-28 03:44:06
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 27 22:44:02.439836 2025] [security2:error] [pid 29965:tid 29965] [client 2a0b:f4c2::24:56744] [client 2a0b:f4c2::24] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nuewines.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nuewines.com"] [uri "/wp-content/mysql.sql"] [unique_id "Z8ExAkY5igKRJMjXXp6JUgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-25 01:48:25
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::24 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 24 20:48:18.816354 2025] [security2:error] [pid 1638490:tid 1638490] [client 2a0b:f4c2::24:47582] [client 2a0b:f4c2::24] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||suefellows.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "suefellows.com"] [uri "/mysql.sql"] [unique_id "Z70hYqMexcvFDoIfOB7fgQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack