๐บ๐ธ
TPI-Abuse
2024-01-08 06:02:00
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 08 01:01:52.878974 2024] [security2:error] [pid 22820] [client 4.210.97.124:1295] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||accomplishedmagazine.com.gemexpressions.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "accomplishedmagazine.com.gemexpressions.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZuP0HSRvCVcZWY4zFXomAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-08 05:24:06
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 08 00:24:00.724668 2024] [security2:error] [pid 7453] [client 4.210.97.124:1458] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.incrp.org|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.incrp.org"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZuG8Lds1il1hzjCJCNMJQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-08 04:10:56
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 23:10:53.338363 2024] [security2:error] [pid 513:tid 47760136664832] [client 4.210.97.124:1927] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.pixelpushersdesign.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.pixelpushersdesign.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZt1zWpHrDFCOBxrxyxJAwAAAQU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dtorrer
2024-01-07 20:18:09
(2 years ago)
General vulnerability scan.
Port Scan
๐จ๐ฟ
spamreporter
2024-01-07 19:24:20
(2 years ago)
Searching for WP vulnerabilities
Hacking
๐บ๐ธ
TPI-Abuse
2024-01-07 17:20:22
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 12:20:15.847081 2024] [security2:error] [pid 31553] [client 4.210.97.124:1091] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||prayers4america.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "prayers4america.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZrdT7EBj5IdBvBvpk9ZIAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-07 16:54:11
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 11:54:06.971584 2024] [security2:error] [pid 23444] [client 4.210.97.124:1788] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||namefinder.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "namefinder.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZrXLvqi5wZrJvWTsdubZwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2024-01-07 15:50:32
(2 years ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-07 14:32:34
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 09:32:27.660424 2024] [security2:error] [pid 28534] [client 4.210.97.124:1735] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||proof.bonefrog.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "proof.bonefrog.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZq1-4-ocaLS6pLJAADh3AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-07 14:06:37
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 09:06:33.967087 2024] [security2:error] [pid 15959] [client 4.210.97.124:1729] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||wcvfr.org|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "wcvfr.org"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZqv6TX9atn2_DJ9SxGq2wAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-07 13:37:23
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 08:37:20.751098 2024] [security2:error] [pid 26049] [client 4.210.97.124:2306] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||photos.centreguephel.org|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "photos.centreguephel.org"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZqpEHveFWHVmWj6oMqELAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-07 13:03:54
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 08:03:49.926575 2024] [security2:error] [pid 21869] [client 4.210.97.124:2072] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bella-vista.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bella-vista.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZqhNQP1EUmSW_V8WD21WAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-07 12:15:22
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 07:15:15.066702 2024] [security2:error] [pid 18874] [client 4.210.97.124:1249] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||3rdid7thinf.org|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "3rdid7thinf.org"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZqV01ldssAt_4zlBYIbbQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-07 11:52:42
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 06:52:35.777018 2024] [security2:error] [pid 14154] [client 4.210.97.124:2830] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.frederickayers.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.frederickayers.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZqQg8x2CUU0QtmEEE32XwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-07 10:16:25
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 4.210.97.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 07 05:16:18.106836 2024] [security2:error] [pid 9118:tid 47286302189312] [client 4.210.97.124:1707] [client 4.210.97.124] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||pueblodermatology.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "pueblodermatology.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZZp58qOhtNtMQJThB2UNgAAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack