๐บ๐ธ
TPI-Abuse
2024-06-10 23:25:23
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 10 19:25:19.577356 2024] [security2:error] [pid 13794] [client 2a0b:f4c2::4:60260] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jrwoodsrentals.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jrwoodsrentals.com"] [uri "/backup.sql"] [unique_id "ZmeLXyHj16rL5WKya0wOtgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-05-15 00:17:26
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 14 20:17:19.686914 2024] [security2:error] [pid 25861] [client 2a0b:f4c2::4:33868] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||letmespeakpodcast.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "letmespeakpodcast.com"] [uri "/let.sql"] [unique_id "ZkP_DzwWmkSE0MEy2OR93wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-29 03:22:00
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 28 23:21:54.582854 2024] [security2:error] [pid 19737:tid 47670668334848] [client 2a0b:f4c2::4:50718] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.sjstauffer.com"] [uri "/.git/config"] [unique_id "ZgYz0lvmdmkOQozvr2LZ8gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-29 00:05:30
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 28 20:05:25.323975 2024] [security2:error] [pid 3065] [client 2a0b:f4c2::4:53304] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.36sovereignchambers.com"] [uri "/.git/config"] [unique_id "ZgYFxT_KG2q_OKy2PBA0CwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-28 20:36:58
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 28 16:36:51.934066 2024] [security2:error] [pid 14331:tid 47743670171392] [client 2a0b:f4c2::4:57762] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.peterhansenranch.com"] [uri "/.git/config/"] [unique_id "ZgXU47-4pJo1meKMDwEI9wAAAIs"], referer: https://ipv6.peterhansenranch.com/.git/config
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-23 14:49:38
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 23 10:49:29.447108 2024] [security2:error] [pid 2774] [client 2a0b:f4c2::4:29334] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||viszin.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "viszin.com"] [uri "/in.sql"] [unique_id "Zf7r-ZDzt8PMbwuLcBOOZgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-21 10:01:04
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 21 06:00:57.765702 2024] [security2:error] [pid 3101828:tid 47759632819968] [client 2a0b:f4c2::4:1192] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.legalgrind.com"] [uri "/.git/config"] [unique_id "ZfwFWVW-ENp-ygENHYGgvQAAAhQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-21 08:36:20
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 21 04:36:13.475867 2024] [security2:error] [pid 8177] [client 2a0b:f4c2::4:4814] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.lordhari.com"] [uri "/.git/config"] [unique_id "ZfvxfQBa546M0mucWiOsnwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-21 00:39:54
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 20 20:39:48.331122 2024] [security2:error] [pid 14599] [client 2a0b:f4c2::4:31180] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.pardescommunications.com"] [uri "/.git/config"] [unique_id "ZfuB1Gwff6CLjlsZyaOEpgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-17 15:47:19
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 17 11:47:00.369003 2024] [security2:error] [pid 14915] [client 2a0b:f4c2::4:21476] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.valentineamartey.com"] [uri "/.git/config"] [unique_id "ZfcQdKI5KQZjB4A60fNwQAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-14 14:06:30
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 14 10:06:18.318252 2024] [security2:error] [pid 372309] [client 2a0b:f4c2::4:30178] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.sinobit.org"] [uri "/.git/config"] [unique_id "ZfMEWmUye9wMbhSI_wavQgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-13 20:56:10
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::4 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 13 16:56:01.465821 2024] [security2:error] [pid 21397] [client 2a0b:f4c2::4:7040] [client 2a0b:f4c2::4] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.mcthorpe.com"] [uri "/.git/config"] [unique_id "ZfIS4dR4jpezjJB-XQ9e_gAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
chronos
2023-11-12 22:28:29
(2 years ago)
[[12/11/2023 - 19:28:28 -03:00 UTC]
Attack from [2a0b:f4c2::4][berlin01.tor-exit.artikel10.org]
Act ...
show more
[[12/11/2023 - 19:28:28 -03:00 UTC]
Attack from [2a0b:f4c2::4][berlin01.tor-exit.artikel10.org]
Action: BLocKed
Bad Web Bot -> Webpage scraping (email extraction, content, etc.) crawlers that do not respect robots.txt. Excessive requests and user agent spoofing.
]
...
show less
Bad Web Bot
๐บ๐ธ
chronos
2023-11-12 22:28:16
(2 years ago)
[[12/11/2023 - 19:28:14 -03:00 UTC]
Attack from [2a0b:f4c2::4][berlin01.tor-exit.artikel10.org]
Act ...
show more
[[12/11/2023 - 19:28:14 -03:00 UTC]
Attack from [2a0b:f4c2::4][berlin01.tor-exit.artikel10.org]
Action: BLocKed
Hacking... Unauthorized attempts to access the server.
Web App Attack -> Attempts to probe for or exploit installed web applications such as a CMS like WordPress/Drupal, e-commerce solutions, forum software, phpMyAdmin and various other ]
...
show less
Hacking
Web App Attack
๐บ๐ธ
chronos
2023-10-11 10:17:23
(2 years ago)
[[11/10/2023 - 07:17:22 -03:00 UTC]
Attack from [2a0b:f4c2::4][berlin01.tor-exit.artikel10.org]
Act ...
show more
[[11/10/2023 - 07:17:22 -03:00 UTC]
Attack from [2a0b:f4c2::4][berlin01.tor-exit.artikel10.org]
Action: BLocKed
Hacking... Unauthorized attempts to access the server.
Web App Attack -> Attempts to probe for or exploit installed web applications such as a CMS like WordPress/Drupal, e-commerce solutions, forum software, phpMyAdmin and various other ]
...
show less
Hacking
Web App Attack