|
๐ซ๐ท
bigorre.org
|
|
Excessive crawling : exceed crawl-delay defined in robots.txt
|
Bad Web Bot
|
|
|
Anonymous
|
|
Malicious activity detected
|
Hacking
Brute-Force
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:214540) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazon ...
show more
(mod_security) mod_security (id:214540) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 13 21:35:57.505399 2023] [security2:error] [pid 29007] [client 3.88.130.199:60016] [client 3.88.130.199] ModSecurity: Access denied with code 403 (phase 4). Match of "rx \\\\ssrc=\\\\x22https:\\\\/\\\\/www\\\\.googletagmanager\\\\.com\\\\/ns\\\\.html\\\\?id=GTM|\\\\ssrc=\\\\x22https:\\\\/\\\\/w\\\\.soundcloud\\\\.com\\\\/player\\\\/\\\\?url=" against "TX:0" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/19_Outgoing_FilterInFrame.conf"] [line "14"] [id "214540"] [rev "5"] [msg "COMODO WAF: Possibly malicious iframe tag in output||nvision360.com|F|3"] [data "Matched Data: <iframe style='display:none found within TX:0: <iframe style='display:none"] [severity "ERROR"] [tag "CWAF"] [tag "FilterInFrame"] [hostname "nvision360.com"] [uri "/index.php"] [unique_id "ZXpqCSqkDBNsy1oIvrAMPgAAABg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฆ๐บ
MAGIC
|
|
VM2 Bad user agents ignoring web crawling rules. Draining bandwidth
|
DDoS Attack
Bad Web Bot
|
|
|
๐ฎ๐ช
valeon
|
|
|
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
sohopros
|
|
"Multiple malicious connections."
|
DDoS Attack
|
|
|
๐ณ๐ฑ
xyz.rip
|
|
Mutliple rate-limit violations...
|
Bad Web Bot
Web App Attack
|
|
|
๐ฆ๐บ
MAGIC
|
|
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
|
DDoS Attack
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazon ...
show more
(mod_security) mod_security (id:210730) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 10 04:23:52.830401 2023] [security2:error] [pid 15606] [client 3.88.130.199:50424] [client 3.88.130.199] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.solcargomiami.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.solcargomiami.com"] [uri "/mailto@[email protected]"] [unique_id "ZXWDqJ02407fLgjCKo67AwAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ซ๐ท
bigorre.org
|
|
Excessive crawling : exceed crawl-delay defined in robots.txt
|
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazon ...
show more
(mod_security) mod_security (id:210730) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 09 07:15:10.119839 2023] [security2:error] [pid 8950] [client 3.88.130.199:38392] [client 3.88.130.199] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.brookspowell.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.brookspowell.com"] [uri "/mail to: [email protected]"] [unique_id "ZXRaToZJ_f1xA9BsZ8mD1wAAAAM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazon ...
show more
(mod_security) mod_security (id:210730) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 09 05:41:25.882458 2023] [security2:error] [pid 2483382] [client 3.88.130.199:56344] [client 3.88.130.199] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.phantomkennels.com|F|2"] [data "[email protected]"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.phantomkennels.com"] [uri "/[email protected]"] [unique_id "ZXREVbEpd6QPrjwqQy4tUAAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazon ...
show more
(mod_security) mod_security (id:210730) triggered by 3.88.130.199 (ec2-3-88-130-199.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 08 02:04:29.839934 2023] [security2:error] [pid 12546] [client 3.88.130.199:36632] [client 3.88.130.199] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.deliverystations.co|F|2"] [data ".artigraphic.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.deliverystations.co"] [uri "/www.ArtiGraphic.com"] [unique_id "ZXK__a96GLk1sz9UmjJvFwAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐จ๐ญ
backslash
|
|
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
|
Bad Web Bot
|
|