๐ฉ๐ช
nyuuzyou
2024-12-14 17:56:04
(1 year ago)
Intensive scraping: /web?s=Powered%20by%20myUPB&country=ab-ab&scraper=brave. User-Agent: Mozilla/5.0 ...
show more
Intensive scraping: /web?s=Powered%20by%20myUPB&country=ab-ab&scraper=brave. User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Xbox; Xbox One) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Edge/44.18363.8131.
show less
Bad Web Bot
๐ช๐ธ
el-brujo
2024-12-13 20:33:10
(1 year ago)
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net:443 userAgent: Mozilla/5.0 (Linux ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net:443 userAgent: Mozilla/5.0 (Linux; Android 6.0; LG-D850 Build/MRA58K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/53.0.2785.97 Mobile Safari/537.36 Action: block Source: l7ddos ASN Description: GOOGLE-CLOUD-PLATFORM Country: IN Method: GET Timestamp: 2024-12-13T20:33:10Z ruleId: dc5a0a1f7bd5439fa5053c81119b122b. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2024-12-11 15:15:05
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฉ๐ช
mxbl
2024-12-11 03:41:57
(1 year ago)
Scanning for CMS vulnerabilities on a non-CMS system: /.git/HEAD
Web App Attack
๐ช๐ธ
el-brujo
2024-12-10 18:10:00
(1 year ago)
DDoS Attack Layer 7
DDoS Attack
๐ท๐ด
abuse_IP_reporter
2024-12-09 13:00:37
(1 year ago)
ddosattackagainspublicwebpagewithrandomstrings
DDoS Attack
๐ท๐ด
abuse_IP_reporter
2024-12-09 13:00:37
(1 year ago)
ddosattackagainspublicwebpagewithrandomstrings
DDoS Attack
๐ท๐ด
abuse_IP_reporter
2024-12-09 13:00:37
(1 year ago)
ddosattackagainspublicwebpagewithrandomstrings
DDoS Attack
๐บ๐ธ
TPI-Abuse
2024-11-24 03:47:03
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 34.100.189.30 (30.189.100.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.100.189.30 (30.189.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 23 22:47:00.947515 2024] [security2:error] [pid 26006:tid 26006] [client 34.100.189.30:50640] [client 34.100.189.30] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ronniescedarinn.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ronniescedarinn.com"] [uri "/mailto:[email protected] "] [unique_id "Z0KhtH5oqM-DwpOgNPOPAQAAAAY"], referer: http://ronniescedarinn.com/contact_us.htm
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
nyuuzyou
2024-11-17 13:20:30
(1 year ago)
Intensive scraping: /web?s=dating%20software%20powered%20by%20eMeeting%20LLC%20seiner&country=pi-pi& ...
show more
Intensive scraping: /web?s=dating%20software%20powered%20by%20eMeeting%20LLC%20seiner&country=pi-pi&scraper=wiby. User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/5.3.2679.68.
show less
Bad Web Bot
๐จ๐ฆ
PulseServers
2024-11-17 09:00:05
(1 year ago)
Malicious Web Traffic - Exploit probing, request floods, etc. on a server hosted by PulseServers.com ...
show more
Malicious Web Traffic - Exploit probing, request floods, etc. on a server hosted by PulseServers.com - ISCA1
...
show less
DDoS Attack
Exploited Host
๐ป๐ณ
Xuan Can
2024-11-02 09:12:27
(1 year ago)
(mod_security) mod_security (id:6) triggered by 34.100.189.30 (IN/India/30.189.100.34.bc.googleuserc ...
show more
(mod_security) mod_security (id:6) triggered by 34.100.189.30 (IN/India/30.189.100.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: 80,443; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 02 16:12:17.305189 2024] [security2:error] [pid 26504:tid 26533] [client 34.100.189.30:39562] [client 34.100.189.30] ModSecurity: Access denied with connection close (phase 2). Pattern match "wp-login.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "63"] [id "6"] [severity "CRITICAL"] [hostname "kb.pavietnam.vn"] [uri "/wp-login.php"] [unique_id "ZyXs8VlOI7XbjaleCfWXiQAAAEE"], referer: https://kb.pavietnam.vn/1-so-cau-lenh-tcpdump-thuong-duoc-su-dung.html
show less
Brute-Force
SSH
๐บ๐ธ
mnsf
2024-11-02 04:03:56
(1 year ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
Anonymous
2024-11-02 03:43:28
(1 year ago)
POST requests to non-existent URL's
Hacking
Brute-Force