πΊπΈ
mnsf
2024-01-15 11:06:28
(2 years ago)
Request Overload (174)
Brute-Force
Web App Attack
π¦πΊ
MAGIC
2024-01-11 05:10:34
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2024-01-11 04:40:58
(2 years ago)
(mod_security) mod_security (id:211180) triggered by 35.89.212.51 (ec2-35-89-212-51.us-west-2.comput ...
show more
(mod_security) mod_security (id:211180) triggered by 35.89.212.51 (ec2-35-89-212-51.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 10 23:40:54.769338 2024] [security2:error] [pid 21998] [client 35.89.212.51:42394] [client 35.89.212.51] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_HEADERS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "50"] [id "211180"] [rev "3"] [msg "COMODO WAF: Session Fixation: SessionID Parameter Name with No Referer||depthsofsatan.com|F|2"] [data "Matched Data: phpsessid found within REQUEST_HEADERS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "depthsofsatan.com"] [uri "/forum/index.php"] [unique_id "ZZ9xVjzK-srvrmy0iOIOiwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
MAGIC
2024-01-06 04:14:43
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π¦πΊ
MAGIC
2024-01-05 07:01:27
(2 years ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2024-01-03 21:43:14
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 35.89.212.51 (ec2-35-89-212-51.us-west-2.comput ...
show more
(mod_security) mod_security (id:210730) triggered by 35.89.212.51 (ec2-35-89-212-51.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 03 16:43:10.129644 2024] [security2:error] [pid 11295] [client 35.89.212.51:26399] [client 35.89.212.51] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kulacenterky.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kulacenterky.com"] [uri "/category/schedule/[email protected] "] [unique_id "ZZXU7laBttX2gXukvyEyBAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨πΏ
spamreporter
2023-12-30 22:00:25
(2 years ago)
Scraping
Bad Web Bot
Anonymous
2023-12-30 10:44:47
(2 years ago)
Malicious activity detected
Hacking
Web App Attack
π¦πΊ
MAGIC
2023-12-29 15:10:57
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π¦πΊ
MAGIC
2023-12-29 09:05:01
(2 years ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π¦πΊ
MAGIC
2023-12-28 02:01:33
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π¦πΊ
MAGIC
2023-12-24 18:01:15
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2023-12-19 15:23:19
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 35.89.212.51 (ec2-35-89-212-51.us-west-2.comput ...
show more
(mod_security) mod_security (id:210730) triggered by 35.89.212.51 (ec2-35-89-212-51.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 19 10:23:13.689751 2023] [security2:error] [pid 28105] [client 35.89.212.51:55185] [client 35.89.212.51] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.efltalks.com|F|2"] [data ".clarkandmiller.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.efltalks.com"] [uri "/www.clarkandmiller.com"] [unique_id "ZYG1YbU2mKTu_jTpQaGZNQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-19 08:04:33
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 35.89.212.51 (ec2-35-89-212-51.us-west-2.comput ...
show more
(mod_security) mod_security (id:210730) triggered by 35.89.212.51 (ec2-35-89-212-51.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 19 03:04:28.337651 2023] [security2:error] [pid 25921] [client 35.89.212.51:59871] [client 35.89.212.51] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.thegitsmovie.com|F|2"] [data ".lastcallmovies.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.thegitsmovie.com"] [uri "/fincludes/www.lastcallmovies.com"] [unique_id "ZYFOjBjyXZWI6sW3b1PDmAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TheMadBeaker
2023-12-16 04:14:43
(2 years ago)
Fail2Ban Ban Triggered
HTTP Attempted Bot Registration
Web Spam
Web App Attack