๐ฉ๐ฐ
wnbhosting.dk
2023-12-19 03:57:41
(2 years ago)
WP xmlrpc [2023-12-19T04:57:41+01:00]
Hacking
Web App Attack
Anonymous
2023-12-16 09:32:49
(2 years ago)
uhrenankauf.pro 45.66.35.21 [16/Dec/2023:10:32:45 +0100] "POST /xmlrpc.php HTTP/1.1" 200 5592 "-" "M ...
show more
uhrenankauf.pro 45.66.35.21 [16/Dec/2023:10:32:45 +0100] "POST /xmlrpc.php HTTP/1.1" 200 5592 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_5) AppleWebKit/600.8.9 (KHTML, like Gecko)"
uhrenankauf.pro 45.66.35.21 [16/Dec/2023:10:32:49 +0100] "POST /xmlrpc.php HTTP/1.1" 200 5592 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_5) AppleWebKit/600.8.9 (KHTML, like Gecko)"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-16 04:55:28
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.66.35.21 (ams01.torexit.nl): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.35.21 (ams01.torexit.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 15 23:55:22.804279 2023] [security2:error] [pid 5508] [client 45.66.35.21:58506] [client 45.66.35.21] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||agapeaccountingllc.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "agapeaccountingllc.com"] [uri "/sql_backup.sql"] [unique_id "ZX0tup0VPvVMywJ9AxpyvQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2023-12-15 09:49:04
(2 years ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-11 22:31:25
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.66.35.21 (ams01.torexit.nl): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.35.21 (ams01.torexit.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 11 17:31:18.603103 2023] [security2:error] [pid 8092] [client 45.66.35.21:53148] [client 45.66.35.21] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||estudiovarela.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "estudiovarela.com"] [uri "/2022-estudiovarela.sql"] [unique_id "ZXeNtjCIeEqcyJc4X7q4fwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-09 20:24:58
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.66.35.21 (ams01.torexit.nl): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.35.21 (ams01.torexit.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 09 15:24:50.281149 2023] [security2:error] [pid 3059235] [client 45.66.35.21:55700] [client 45.66.35.21] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||americanvaluesbooks.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "americanvaluesbooks.com"] [uri "/2022_nvaluesbooks.sql"] [unique_id "ZXTNEjHri9V2m5i8yj4SJAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-09 20:00:33
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.66.35.21 (ams01.torexit.nl): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.35.21 (ams01.torexit.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 09 15:00:29.256207 2023] [security2:error] [pid 11444] [client 45.66.35.21:49306] [client 45.66.35.21] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||millgirlmusings.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "millgirlmusings.com"] [uri "/2022-llgirlmusings.sql"] [unique_id "ZXTHXd7UQxYf5foXXt8wIAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Kenshin869
2023-12-08 04:23:40
(2 years ago)
Wordpress unauthorized access attempt
Brute-Force
๐ณ๐ฑ
Study Bitcoin ๐ค
2023-11-28 18:09:50
(2 years ago)
Bad
Brute-Force
๐ซ๐ท
Kenshin869
2023-11-27 19:59:13
(2 years ago)
Wordpress unauthorized access attempt
Brute-Force
๐ฉ๐ฐ
wnbhosting.dk
2023-11-26 12:23:22
(2 years ago)
WP xmlrpc [2023-11-26T13:23:22+01:00]
Hacking
Web App Attack