๐บ๐ธ
TPI-Abuse
2024-11-01 10:42:40
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 01 06:42:33.704564 2024] [security2:error] [pid 3170:tid 3170] [client 43.229.114.122:54530] [client 43.229.114.122] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||coolcustomproducts.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "coolcustomproducts.com"] [uri "/wp-content/debug.log"] [unique_id "ZySwmU5dyLhchQ4mCLDSAAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2024-11-01 07:23:46
(1 year ago)
12 requests to /wp-admin/admin-ajax.php?action=duplicator_download&file=../wp-config.php
Brute-Force
Bad Web Bot
Anonymous
2024-11-01 07:19:33
(1 year ago)
$f2bV_matches
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-01 04:29:38
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 01 00:29:32.837559 2024] [security2:error] [pid 1096:tid 1096] [client 43.229.114.122:63087] [client 43.229.114.122] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bbproductionsonline.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bbproductionsonline.com"] [uri "/wp-content/debug.log"] [unique_id "ZyRZLDhmDY_p6WfaVbSAfgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
unifr
2024-11-01 04:08:05
(1 year ago)
Unauthorized IMAP connection attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-11-01 04:02:48
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 01 00:02:42.051816 2024] [security2:error] [pid 23619:tid 23619] [client 43.229.114.122:61483] [client 43.229.114.122] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||caddydad.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "caddydad.com"] [uri "/wp-content/debug.log"] [unique_id "ZyRS4qJ2QhEQyN92XBTmhgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-01 01:50:50
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 31 21:50:43.469960 2024] [security2:error] [pid 16472:tid 16472] [client 43.229.114.122:49290] [client 43.229.114.122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.drbolen.com"] [uri "/wp-content/plugins/usc-e-shop/functions/content-log.php"] [unique_id "ZyQz8xjiIHsxLwwNuzjr0wAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-31 20:21:32
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 31 16:21:27.470118 2024] [security2:error] [pid 11229:tid 11229] [client 43.229.114.122:53875] [client 43.229.114.122] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.cpectec.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.cpectec.com"] [uri "/wp-content/debug.log"] [unique_id "ZyPmxxPBgcMaikkrzIE9UQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-31 15:57:22
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 31 11:57:17.860149 2024] [security2:error] [pid 1427:tid 1456] [client 43.229.114.122:65053] [client 43.229.114.122] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cargomarexpress.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cargomarexpress.com"] [uri "/wp-content/debug.log"] [unique_id "ZyOo3QJNqVXley9qkMuI8AAAAUU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-31 07:00:54
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 31 03:00:45.945732 2024] [security2:error] [pid 25382:tid 25382] [client 43.229.114.122:59849] [client 43.229.114.122] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||accommodation-perthairport.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "accommodation-perthairport.com"] [uri "/wp-content/debug.log"] [unique_id "ZyMrHZsvu2WyJSH9qUXT7gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-10-30 08:46:17
(1 year ago)
Open Source CMS Configuration File Requests
Hacking
Brute-Force
๐ฎ๐ฉ
Ridwan Na'im
2024-10-30 01:41:28
(1 year ago)
Multiple web server 400 error codes from same source ip. - Vulnerability Scanning
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-30 01:01:37
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 43.229.114.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 29 21:01:29.009519 2024] [security2:error] [pid 12192:tid 12192] [client 43.229.114.122:54065] [client 43.229.114.122] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.somuchtoread.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.somuchtoread.com"] [uri "/wp-content/debug.log"] [unique_id "ZyGFaWauodfVbdOkwdVvSAAAADY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2024-10-30 01:01:10
(1 year ago)
Too many Status 40X (15)
Scanning/Probing (15)
Brute-Force
Web App Attack
Anonymous
2024-10-29 23:55:40
(1 year ago)
WAF detection: Local File Inclusion
Web App Attack