๐บ๐ธ
reikejan
2024-02-27 21:56:00
(2 years ago)
Multiple suspicious activities were detected
Probing for vulnerable code
Brute-Force
Web App Attack
๐ซ๐ท
Laurent-1971
2024-02-26 17:26:40
(2 years ago)
/wp-content/plugins/ultimate-member/assets/css/common.css [ Mozilla/5.0 (Windows NT 10.0; Win64; x64 ...
show more
/wp-content/plugins/ultimate-member/assets/css/common.css [ Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/121.0.0.0 Safari/537.36 ]
show less
Web App Attack
๐ฒ๐พ
Rizzy
2024-02-25 17:25:01
(2 years ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฉ๐ช
FeG Deutschland
2024-02-25 09:06:03
(2 years ago)
Looking for CMS/PHP/SQL vulnerablilities - 13
Exploited Host
Web App Attack
๐ฆ๐บ
weblite
2024-02-25 05:40:07
(2 years ago)
WP_MALWARE_PROBE
Hacking
Web App Attack
๐ซ๐ท
DUBREUIL
2024-02-24 09:09:00
(2 years ago)
/admin.php?520=1
DDoS Attack
Open Proxy
Port Scan
Hacking
SQL Injection
Brute-Force
Web App Attack
SSH
๐ฆ๐บ
MAGIC
2024-02-24 04:06:47
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ณ๐ฟ
Tripwire
2024-02-23 20:36:04
(2 years ago)
Unauthorized admin access - /admin/pages
Brute-Force
Web App Attack
๐ฉ๐ช
DEV-DNS
2024-02-22 06:44:41
(2 years ago)
(php-url-fopen) Failed php-url-fopen trigger from 34.238.196.56 (US/United States/Virginia/Ashburn/e ...
show more
(php-url-fopen) Failed php-url-fopen trigger from 34.238.196.56 (US/United States/Virginia/Ashburn/ec2-34-238-196-56.compute-1.amazonaws.com/[redacted])
show less
Web App Attack
๐บ๐ธ
mnsf
2024-02-21 21:05:28
(2 years ago)
Too many Status 40X (13)
Brute-Force
Web App Attack
๐ณ๐ฟ
Tripwire
2024-02-21 17:55:34
(2 years ago)
Login script scanning - /wordpress/admin.php?520=1
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-21 06:19:24
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 34.238.196.56 (ec2-34-238-196-56.compute-1.amaz ...
show more
(mod_security) mod_security (id:210730) triggered by 34.238.196.56 (ec2-34-238-196-56.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 21 01:19:19.934987 2024] [security2:error] [pid 8125] [client 34.238.196.56:54063] [client 34.238.196.56] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||grasslakepizzatime.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "grasslakepizzatime.com"] [uri "/wp-content/plugins/wordfence/vendor/wordfence/wf-waf/src/rules.key"] [unique_id "ZdWV52TJQdLk8EXSbZunVwAAAAg"], referer: grasslakepizzatime.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-20 23:06:38
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 34.238.196.56 (ec2-34-238-196-56.compute-1.amaz ...
show more
(mod_security) mod_security (id:210730) triggered by 34.238.196.56 (ec2-34-238-196-56.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 20 18:06:34.265862 2024] [security2:error] [pid 20006:tid 47955374335744] [client 34.238.196.56:26049] [client 34.238.196.56] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cocoonprojects.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cocoonprojects.com"] [uri "/wp-content/plugins/wordfence/vendor/wordfence/wf-waf/src/rules.key"] [unique_id "ZdUweomQ3CBA-uDtGKl2_gAAAIc"], referer: cocoonprojects.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2024-02-20 21:03:33
(2 years ago)
Too many Status 40X (15)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-20 18:27:11
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 34.238.196.56 (ec2-34-238-196-56.compute-1.amaz ...
show more
(mod_security) mod_security (id:210730) triggered by 34.238.196.56 (ec2-34-238-196-56.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 20 13:27:06.984471 2024] [security2:error] [pid 18836] [client 34.238.196.56:13400] [client 34.238.196.56] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cbrtome.cl|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cbrtome.cl"] [uri "/wp-content/plugins/wordfence/vendor/wordfence/wf-waf/src/rules.key"] [unique_id "ZdTu-oIkLH4qyHdt65B_CQAAABA"], referer: cbrtome.cl
show less
Brute-Force
Bad Web Bot
Web App Attack