π¨π¦
mitsurugi
2025-03-23 17:28:00
(1 year ago)
Xmlrpc attack.
Brute-Force
Web App Attack
π§πͺ
cmbplf
2025-03-19 14:03:44
(1 year ago)
162.398 requests in 1 hour (1d59m59s)
Brute-Force
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-03-19 13:36:00
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 34.46.137.104 (104.137.46.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.46.137.104 (104.137.46.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 19 09:35:55.426443 2025] [security2:error] [pid 28927:tid 28927] [client 34.46.137.104:53494] [client 34.46.137.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.gabbyspetnanny.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.gabbyspetnanny.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z9rIO_uqTiVt-jNzyjkm0gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-03-19 13:23:05
(1 year ago)
Malicious activity detected
Hacking
Brute-Force
πΊπΈ
TPI-Abuse
2025-03-19 13:14:46
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 34.46.137.104 (104.137.46.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.46.137.104 (104.137.46.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 19 09:14:39.075614 2025] [security2:error] [pid 1733959:tid 1733959] [client 34.46.137.104:56363] [client 34.46.137.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lightningbug.farm|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lightningbug.farm"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z9rDPxfRWJpy6Etq4JbuOAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
MAGIC
2025-03-19 13:09:29
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
mnsf
2025-03-19 13:05:50
(1 year ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
π¬π§
Apache
2025-03-19 12:59:57
(1 year ago)
(mod_security) mod_security (id:210410) triggered by 34.46.137.104 (US/United States/104.137.46.34.b ...
show more
(mod_security) mod_security (id:210410) triggered by 34.46.137.104 (US/United States/104.137.46.34.bc.googleusercontent.com): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2025-03-19 12:56:28
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 34.46.137.104 (104.137.46.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.46.137.104 (104.137.46.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 19 08:56:21.974144 2025] [security2:error] [pid 26740:tid 26754] [client 34.46.137.104:63066] [client 34.46.137.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.east-lease.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.east-lease.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z9q-9Q-y-WQpabbPb9fCOgAAAMs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-03-19 12:33:48
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 34.46.137.104 (104.137.46.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.46.137.104 (104.137.46.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 19 08:33:42.231720 2025] [security2:error] [pid 1495028:tid 1495028] [client 34.46.137.104:57994] [client 34.46.137.104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||solporpoise.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "solporpoise.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z9q5pmJyRpg37F1IrxO_wAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack