π©πͺ
FeG Deutschland
2025-04-02 17:44:32
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1
Exploited Host
Web App Attack
π¦πΊ
MAGIC
2025-03-30 07:06:47
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πͺπͺ
Unwasted
2025-03-29 06:09:27
(1 year ago)
Checking for non existing WP login
Hacking
Web App Attack
π©πͺ
Hazzard
2025-03-27 21:25:11
(1 year ago)
(wordpress) Failed wordpress login from 44.242.36.155 (US/United States/ec2-44-242-36-155.us-west-2. ...
show more
(wordpress) Failed wordpress login from 44.242.36.155 (US/United States/ec2-44-242-36-155.us-west-2.compute.amazonaws.com)
show less
Brute-Force
πΊπΈ
mnsf
2025-03-27 21:05:31
(1 year ago)
Xmlrpc Caught (6)
Brute-Force
Web App Attack
πͺπΈ
librebit
2025-03-17 09:46:31
(1 year ago)
Brute force
Brute-Force
πͺπΈ
librebit
2025-02-20 05:42:42
(1 year ago)
Brute force
Brute-Force
πΊπΈ
TPI-Abuse
2025-02-19 09:01:19
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 44.242.36.155 (ec2-44-242-36-155.us-west-2.comp ...
show more
(mod_security) mod_security (id:225170) triggered by 44.242.36.155 (ec2-44-242-36-155.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 19 04:01:14.208826 2025] [security2:error] [pid 19363:tid 19363] [client 44.242.36.155:56810] [client 44.242.36.155] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||estudiovarela.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "estudiovarela.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z7Wd2hAwOqnWIFn4DkKsrAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-02-19 05:12:38
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 44.242.36.155 (ec2-44-242-36-155.us-west-2.comp ...
show more
(mod_security) mod_security (id:225170) triggered by 44.242.36.155 (ec2-44-242-36-155.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 19 00:12:32.185226 2025] [security2:error] [pid 15495:tid 15495] [client 44.242.36.155:56850] [client 44.242.36.155] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kmelson.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kmelson.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z7VoQDv_AGF30D5UHGluJQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-02-19 03:21:14
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 44.242.36.155 (ec2-44-242-36-155.us-west-2.comp ...
show more
(mod_security) mod_security (id:225170) triggered by 44.242.36.155 (ec2-44-242-36-155.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 18 22:21:10.826179 2025] [security2:error] [pid 15358:tid 15358] [client 44.242.36.155:38042] [client 44.242.36.155] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||soereng.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "soereng.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z7VOJrf15K4sl-CSrW0FIQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΉπ·
rtbh.com.tr
2024-12-04 20:52:55
(1 year ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
πΉπ·
rtbh.com.tr
2024-12-03 20:52:54
(1 year ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
π¦πΊ
MAGIC
2024-12-03 00:04:31
(1 year ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π©πͺ
iNetWorker
2024-12-02 14:51:11
(1 year ago)
trolling for resource vulnerabilities
Web App Attack
π©πͺ
Hazzard
2024-12-02 14:20:29
(1 year ago)
(wordpress) Failed wordpress login from 44.242.36.155 (US/United States/Oregon/Boardman/ec2-44-242-3 ...
show more
(wordpress) Failed wordpress login from 44.242.36.155 (US/United States/Oregon/Boardman/ec2-44-242-36-155.us-west-2.compute.amazonaws.com/[redacted]): (CF_ENABLE)
show less
Brute-Force