Anonymous
2025-08-02 04:50:05
(10 months ago)
| Common web attack.
Hacking
SQL Injection
Web App Attack
πΊπΈ
TPI-Abuse
2025-08-01 07:05:28
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 38.170.157.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 38.170.157.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 01 03:05:20.711171 2025] [security2:error] [pid 3332372:tid 3332381] [client 38.170.157.63:36989] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.kettlehill.net|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.kettlehill.net"] [uri "/....\\\\....\\\\....\\\\....\\\\....\\\\....\\\\....\\\\....\\\\....\\\\windows\\\\win.ini"] [unique_id "aIxnMB33aKcnOojmIbhhewAAAoc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-06-01 05:37:39
(1 year ago)
(mod_security) mod_security (id:210381) triggered by 38.170.157.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210381) triggered by 38.170.157.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 01 01:37:14.038268 2025] [security2:error] [pid 2476985:tid 2477038] [client 38.170.157.63:49327] ModSecurity: Access denied with code 403 (phase 2). Invalid URL Encoding: Non-hexadecimal digits used at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "82"] [id "210381"] [rev "6"] [msg "COMODO WAF: URL Encoding Abuse Attack Attempt||staging.kettlehill.com|F|4"] [data "REQUEST_URI=/account/?user=1&tab=groups&group-name=p%27+or+%27%%27=%27%%27+union+all+select+1,2,3,4,5,6,7,8,9,10,11,concat(%22Database:%22,md5(999999999),0x7c,%20%22Version:%22,version()),13--+-"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "staging.kettlehill.com"] [uri "/account/"] [unique_id "aDvnCoWY4ssUEn37NuVHrAAAAYI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-05-30 23:27:13
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 38.170.157.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 38.170.157.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 30 19:27:07.356671 2025] [security2:error] [pid 811622:tid 811622] [client 38.170.157.63:37749] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.nbcnewsradio.com"] [uri "/.htpasswd"] [unique_id "aDo-ywp2u8TwNS7A6rySdgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-04-27 12:37:03
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
π¨π
backslash
2024-02-13 06:57:09
(2 years ago)
honeypot
Bad Web Bot
π¦πΊ
MAGIC
2023-08-29 23:15:30
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
nowyouknow
2023-08-01 05:46:47
(2 years ago)
(From [email protected] ) Hi,
Would you be open to do an interview?
We are in ...
show more
(From [email protected] ) Hi,
Would you be open to do an interview?
We are interviewing business owners like you and give them the chance to share their story.
Would you like more information on how this works?
If Yes, please contact this email: [email protected]
We are looking forward to hear from you
Best,
Pam Glow
show less
Phishing
Web Spam
πΊπΈ
oncord
2023-07-31 18:16:20
(2 years ago)
Form spam
Web Spam