๐ฎ๐ฉ
setup
2024-03-11 16:08:14
(2 years ago)
/Paiement/wp-admin/setup-config.php
Hacking
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2024-03-09 05:10:48
(2 years ago)
Scanning for Laravel vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-09 00:13:34
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 08 19:13:30.392356 2024] [security2:error] [pid 27471] [client 34.132.63.165:63195] [client 34.132.63.165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cnwire.com"] [uri "/.env"] [unique_id "ZeupqnNZihIT-WgG35KIqwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-08 23:51:22
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 08 18:51:15.836923 2024] [security2:error] [pid 9364] [client 34.132.63.165:56574] [client 34.132.63.165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "20e2lions.org"] [uri "/.env"] [unique_id "Zeukc7xXFgC2Y0X2czbE8AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2024-03-08 23:47:41
(2 years ago)
URL Probing: /site/wp-class.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-08 23:24:43
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 08 18:24:37.193850 2024] [security2:error] [pid 4832] [client 34.132.63.165:52227] [client 34.132.63.165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maricopaarizona.com"] [uri "/.env"] [unique_id "ZeueNfdNnGcYM389tOI9LgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dtorrer
2024-03-08 22:33:18
(2 years ago)
General vulnerability scan.
Port Scan
๐บ๐ฆ
URAN Publishing Service
2024-03-08 22:00:50
(2 years ago)
34.132.63.165 - - [09/Mar/2024:00:00:49 +0200] "GET /.env HTTP/1.1" 404 274 "-" "Mozilla/5.0 (Linux; ...
show more
34.132.63.165 - - [09/Mar/2024:00:00:49 +0200] "GET /.env HTTP/1.1" 404 274 "-" "Mozilla/5.0 (Linux; U; Android 4.4.2; en-US; HM NOTE 1W Build/KOT49H) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 UCBrowser/11.0.5.850 U3/0.8.0 Mobile Safari/534.30"
...
show less
Web App Attack
๐บ๐ธ
Major Hostility
2024-03-08 20:55:11
(2 years ago)
"GET /.env HTTP/1.1" 404
"GET /.env HTTP/1.1" 404
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-08 20:33:16
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 08 15:33:12.568316 2024] [security2:error] [pid 23380] [client 34.132.63.165:61089] [client 34.132.63.165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theledman.com"] [uri "/.env"] [unique_id "Zet2CPhcCdi2PyxSQAgozgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-08 19:49:04
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 08 14:48:59.439223 2024] [security2:error] [pid 2815] [client 34.132.63.165:63300] [client 34.132.63.165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mathgen.com"] [uri "/.env"] [unique_id "Zetrq8-nycIcBz4U67ye1QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Mediashaker
2024-03-08 19:26:16
(2 years ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 34.132.63.165 (US/United ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 34.132.63.165 (US/United States/165.63.132.34.bc.googleusercontent.com)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2024-03-08 18:44:47
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.63.165 (165.63.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 08 13:44:43.134406 2024] [security2:error] [pid 13933] [client 34.132.63.165:52321] [client 34.132.63.165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "willymoc.com"] [uri "/.env"] [unique_id "Zetcmy19NvhlV5hvoCQnPAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2024-03-08 18:23:00
(2 years ago)
Malicious activity detected: URL probing.
Hacking
Bad Web Bot
Web App Attack
Anonymous
2024-03-08 18:22:33
(2 years ago)
Bot / scanning and/or hacking attempts: GET /wp-2020.php HTTP/1.1, GET / HTTP/1.1, GET /wp-content/a ...
show more
Bot / scanning and/or hacking attempts: GET /wp-2020.php HTTP/1.1, GET / HTTP/1.1, GET /wp-content/alfacgiapi/ HTTP/1.1, GET /alfacgiapi/ HTTP/1.1, GET /?pass=f0aab4595a024d626315fb786dce8282 HTTP/1.1, done, streams: 0/1/1/0/0 (open/recv/resp/push/rst), GET /vendor/phpunit/phpunit/src/Util/PHP/database.php HTTP/1.1, GET /admin/ALFA_DATA/alfacgiapi/ HTTP/1.1, GET /admin/alfacgiapi/ HTTP/1.1, GET /wordpress/wp-includes/ALFA_DATA/alfacgiapi/ HTTP/1.1, idle, streams: 0/15/15/0/0 (open/recv/resp/push/rst), GET /admin/controller/alfacgiapi/ HTTP/1.1, done, streams: 0/15/15/0/0 (open/recv/resp/push/rst), idle, streams: 0/11/11/0/0 (open/recv/resp/push/rst), POST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1, local goaway, streams: 0/1/1/0/0 (open/recv/resp/push/rst)
show less
Hacking
Web App Attack