Anonymous
2024-12-03 02:45:09
(1 year ago)
(mod_security) mod_security (id:930130) triggered by 35.91.133.197 (US/United States/ec2-35-91-133-1 ...
show more
(mod_security) mod_security (id:930130) triggered by 35.91.133.197 (US/United States/ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 3600 secs
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-12-03 02:18:20
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 21:18:14.805768 2024] [security2:error] [pid 23529:tid 23623] [client 35.91.133.197:58442] [client 35.91.133.197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.maroontribe.com"] [uri "/.git/"] [unique_id "Z05qZmqQgczIvrtLRoRiWAAAAVA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-03 01:50:28
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 20:50:21.988341 2024] [security2:error] [pid 3093808:tid 3093808] [client 35.91.133.197:49984] [client 35.91.133.197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mikeziegler.com"] [uri "/.git/"] [unique_id "Z05j3XIqp3ACctO8TVY7xwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-03 01:21:56
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 20:21:49.435574 2024] [security2:error] [pid 8373:tid 8373] [client 35.91.133.197:58324] [client 35.91.133.197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.closedfortheseason.com"] [uri "/.git/"] [unique_id "Z05dLc-1rbm9ShU5tUGXDwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-03 00:05:26
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 19:05:21.413212 2024] [security2:error] [pid 5469:tid 5469] [client 35.91.133.197:38470] [client 35.91.133.197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.intra.es"] [uri "/.git/"] [unique_id "Z05LQV6tSZpNPxAMFk5V3wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2024-12-03 00:05:09
(1 year ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 23:48:45
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 18:48:40.908556 2024] [security2:error] [pid 25092:tid 25092] [client 35.91.133.197:51830] [client 35.91.133.197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.ozarkmountainwinetrail.org"] [uri "/.git/"] [unique_id "Z05HWN_esmhvbuQAM5HyrwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-12-02 23:47:01
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2024-12-02 23:37:24
(1 year ago)
File repository snooping:
35.91.133.197 - - [02/Dec/2024:23:37:23 +0000] "GET /.git/ HTTP/1.1" 404 ...
show more
File repository snooping:
35.91.133.197 - - [02/Dec/2024:23:37:23 +0000] "GET /.git/ HTTP/1.1" 404 234 "-" "Mozilla/5.0 (X11; Linux x86_64)"
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-02 23:32:08
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 18:32:00.417543 2024] [security2:error] [pid 2478494:tid 2478494] [client 35.91.133.197:39466] [client 35.91.133.197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.thedenzers.com"] [uri "/.git/"] [unique_id "Z05DcL3acyVvVajetVe0AQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2024-12-02 23:15:07
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (US/United States/ec2-35-91-133-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (US/United States/ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 0; Trigger: LF_MODSEC
show less
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2024-12-02 23:14:49
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 35.91.133.197 (ec2-35-91-133-197.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 02 18:14:43.192945 2024] [security2:error] [pid 3310359:tid 3310359] [client 35.91.133.197:58312] [client 35.91.133.197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.seeingblue.com"] [uri "/.git/"] [unique_id "Z04_YwgLUtLrXgZqR-wfMQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2024-12-02 23:09:48
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2024-12-02 23:07:22
(1 year ago)
apache-auth
Brute-Force
Web App Attack
๐ฉ๐ช
FeG Deutschland
2024-12-02 23:03:01
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities - 17
Exploited Host
Web App Attack