|
๐ณ๐ฑ
Linuxmalwarehuntingnl
|
|
Unauthorized connection attempt
|
Brute-Force
|
|
|
๐ช๐ธ
10dencehispahard SL
|
|
Unauthorized login attempts [ accesslogs]
|
Brute-Force
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:234930) triggered by 37.120.207.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:234930) triggered by 37.120.207.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 15 04:35:14.501289 2024] [security2:error] [pid 21072] [client 37.120.207.29:56293] [client 37.120.207.29] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\/lib\\\\/php\\\\/connector\\\\.minimal\\\\.php$" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/27_Apps_WPPlugin.conf"] [line "6778"] [id "234930"] [rev "2"] [msg "COMODO WAF: File upload vulnerability in the file manager plugin before 6.9 for WordPress (CVE-2020-25213)||debtsolutionsus.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WPPlugin"] [hostname "debtsolutionsus.com"] [uri "/wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php"] [unique_id "ZkRzwojRKDwZ0XqzIcZjewAAAA8"], referer: www.google.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 37.120.207.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 37.120.207.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 10 04:38:46.121530 2024] [security2:error] [pid 1728022] [client 37.120.207.29:43411] [client 37.120.207.29] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gracebaptisthartsville.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "Zj3dFi3_OGlXDtPVn0lUAgAAAAM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
gu-alvareza
|
|
WordPress.HTTP.Path.Traversal
|
Hacking
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 37.120.207.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 37.120.207.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 09 12:47:56.243646 2024] [security2:error] [pid 623] [client 37.120.207.29:46213] [client 37.120.207.29] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ashwoodsecurity.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "Zjz-PG7QlssrzSDRo-FELAAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฒ๐พ
Rizzy
|
|
Multiple WAF Violations
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 37.120.207.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 37.120.207.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 09 09:11:49.267544 2024] [security2:error] [pid 2635] [client 37.120.207.29:40329] [client 37.120.207.29] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "glassclublake.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ZjzLlRyjqRFiw30z554vfwAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ง๐ช
cmbplf
|
|
125 requests to *wp-config.php
|
Brute-Force
Bad Web Bot
|
|
|
๐บ๐ธ
octageeks.com
|
|
Wordpress malicious attack:[octablocked]
|
Web App Attack
|
|
|
๐บ๐ธ
octageeks.com
|
|
Wordpress malicious attack:[octablocked]
|
Web App Attack
|
|
|
๐ณ๐ฑ
BlueWire Hosting
|
|
Probing for Wordpress vulnerabilities
|
Bad Web Bot
Web App Attack
|
|
|
๐ณ๐ฑ
Kale
|
|
[24/Apr/2024] GET /wp-config.php, /wp-admin/admin-ajax.php?action=duplicator_download&file=%2F..%2Fw ...
show more
[24/Apr/2024] GET /wp-config.php, /wp-admin/admin-ajax.php?action=duplicator_download&file=%2F..%2Fwp-config.php, /wp-config.php.bak, /wp-admin/admin-ajax.php?action=revslider_show_image&img=..%2Fwp-config.php, /wp-config.php~, /wp-config.php.save, /wp-config.php.old, /wp-config.phpe, /wp-config.php_old, /wp-config.phpOLD, /wp-config.php_, /wp-config.php1, /wp-config.php.backup, /wp-config.php.org, /wp-content/plugins/cherry-plugin/admin/import-export/download-content.php?file=..%2F..%2F..%2F..%2F..%2Fwp-config.php, /wp-config, /wp-config.php-old, /wp-config.old, /wp-config.php.orig, /wp-config.php_bak, /wp-config.bak, /wp-content/plugins/multi-plugin-installer/mpi_download.php?filepath=..%2F..%2F..%2F&filename=wp-config.php, /wp-config.php.bk, /wp-config.php2, /wp-config.php?aam-media=1, ...
show less
|
Web App Attack
|
|
|
๐ณ๐ฑ
Savvii
|
|
20 attempts against mh-misbehave-ban on tin
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ง๐ท
hostseries
|
|
Trigger: LF_MODSEC
|
Brute-Force
|
|