|
๐ซ๐ฎ
6kilowatti
|
|
[08/Jun/2026:14:35:00 +0000] - 404 404 - GET https mummo.6kw.fi "/config.php" [Client 35.234.187.117 ...
show more
[08/Jun/2026:14:35:00 +0000] - 404 404 - GET https mummo.6kw.fi "/config.php" [Client 35.234.187.117] [Length 47] [Gzip -] [Sent-to 10.144.0.10] "Mozilla/5.0 (Linux; Android 9; Redmi Note 6 Pro) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Mobile Safari/537.36" "-"
[08/Jun/2026:14:35:00 +0000] - 404 404 - GET https mummo.6kw.fi "/api/config.php" [Client 35.234.187.117] [Length 47] [Gzip -] [Sent-to 10.144.0.10] "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/605.1.15 (KHTML, like Gecko)" "-"
...
show less
|
Web App Attack
|
|
|
๐ณ๐ฑ
ConsulHosting
|
|
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 35.234.187.117 (117.187.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.234.187.117 (117.187.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 04:57:39.884632 2026] [security2:error] [pid 22425:tid 22425] [client 35.234.187.117:59036] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||apuntesdeinversion.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "apuntesdeinversion.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiaEAw-Q6h6Gde2IKRyx0QAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Multiple web server 400 error codes from same source ip
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 35.234.187.117 (117.187.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.187.117 (117.187.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 03:53:24.336542 2026] [security2:error] [pid 20895:tid 20895] [client 35.234.187.117:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.txt" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.c2cservices.com"] [uri "/wp-config.txt"] [unique_id "aiZ09P7vAHx0urwj9aaXvAAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฎ๐น
VHosting
|
|
Detected WordPress attack from 4 different servers
|
Brute-Force
Web App Attack
|
|
|
๐ฉ๐ช
BlueWire Hosting
|
|
Probing websites for vulnerabilities
|
Web App Attack
SQL Injection
|
|
|
๐ฌ๐ง
foxxelabs
|
|
Automated report from FoxxeLabs Sentinel. Path probed: /actuator/env | Project: anseo | Reason(s): K ...
show more
Automated report from FoxxeLabs Sentinel. Path probed: /actuator/env | Project: anseo | Reason(s): Known exploit path: /actuator/env | User-Agent: Mozilla/5.0 (OS/2; Warp 4.5; rv:45.0) Gecko/20100101 Firefox/45.0 SeaMonkey/2.42.9esr
show less
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 35.234.187.117 (117.187.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.234.187.117 (117.187.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 20:48:33.953939 2026] [security2:error] [pid 21949:tid 21949] [client 35.234.187.117:55128] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||imaginationbyme.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "imaginationbyme.com"] [uri "/.config/gcloud/credentials.db"] [unique_id "aiYRYf7NewZxeP4pXD3OgAAAAJU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|