๐บ๐ธ
TPI-Abuse
2024-08-31 02:57:56
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 30 22:57:49.870462 2024] [security2:error] [pid 17814:tid 17814] [client 45.79.214.215:44126] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||exhaustthelimits.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "exhaustthelimits.org"] [uri "/wp-options.sql"] [unique_id "ZtKGraVkxb_M7NGLTD3SugAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-30 22:46:59
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 30 18:46:54.167797 2024] [security2:error] [pid 511:tid 511] [client 45.79.214.215:35222] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||chicagoinquirer.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "chicagoinquirer.com"] [uri "/dump.sql"] [unique_id "ZtJL3rNmf2sz5OTVE-pIzwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
clapper
2024-08-30 22:31:08
(2 years ago)
(mod_security) mod_security (id:949110) triggered by 45.79.214.215 (US/United States/sharedhost1.sta ...
show more
(mod_security) mod_security (id:949110) triggered by 45.79.214.215 (US/United States/sharedhost1.stackframe.com): 5 in the last 3600 secs; ID: rub
show less
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-08-30 18:13:20
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 30 14:13:11.997583 2024] [security2:error] [pid 317:tid 317] [client 45.79.214.215:33630] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||adlc18.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "adlc18.org"] [uri "/backup.sql"] [unique_id "ZtILtw9AqLEOc4NqymWZQwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Apache
2024-08-30 16:28:04
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (US/United States/sharedhost1.sta ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (US/United States/sharedhost1.stackframe.com): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-30 10:34:15
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 30 06:34:09.031810 2024] [security2:error] [pid 5460:tid 5460] [client 45.79.214.215:36538] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||fundaciondamashcc.org.ec|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "fundaciondamashcc.org.ec"] [uri "/dump.sql"] [unique_id "ZtGgIWMkaDQMdt0bACLDJgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-30 10:10:55
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 30 06:10:47.957866 2024] [security2:error] [pid 444871:tid 444871] [client 45.79.214.215:56884] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||fredlandia.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "fredlandia.com"] [uri "/wp-options.sql"] [unique_id "ZtGap4yj21nBTGOogpOgKAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2024-08-30 06:19:01
(2 years ago)
Looking for CMS/PHP/SQL vulnerablilities - 13
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-30 06:00:45
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 30 02:00:40.146419 2024] [security2:error] [pid 24911:tid 24911] [client 45.79.214.215:43958] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||elgar.us|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elgar.us"] [uri "/database.sql"] [unique_id "ZtFgCLOWPBQeMwTCFUrsjwAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
nextweb
2024-08-30 04:45:55
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (US/United States/Georgia/Atlanta ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (US/United States/Georgia/Atlanta/sharedhost1.stackframe.com/[AS63949 Akamai Connected Cloud]): 5 in the last 3600 secs (CF_ENABLE)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-08-30 03:07:24
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 29 23:07:18.112936 2024] [security2:error] [pid 16345:tid 16345] [client 45.79.214.215:56816] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||desertalfas.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "desertalfas.org"] [uri "/backup.sql"] [unique_id "ZtE3ZtKc7iqs5HFES0mO6wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-30 00:03:08
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 29 20:02:59.317424 2024] [security2:error] [pid 13373:tid 13373] [client 45.79.214.215:53734] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cloudex.link|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cloudex.link"] [uri "/backup.sql"] [unique_id "ZtEMM_mvY3SGsNZBKFOXFQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-29 22:21:56
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 29 18:21:51.833506 2024] [security2:error] [pid 831:tid 831] [client 45.79.214.215:46302] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cartiologyfilms.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cartiologyfilms.com"] [uri "/db.sql"] [unique_id "ZtD0f0wA6L-P5jXfmznAtgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-29 21:19:13
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 29 17:19:07.454163 2024] [security2:error] [pid 10324:tid 10324] [client 45.79.214.215:44506] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||btsdigital.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "btsdigital.net"] [uri "/dump.sql"] [unique_id "ZtDlyxB3Pkapi0vMnkAr9wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-29 15:56:25
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 i ...
show more
(mod_security) mod_security (id:210730) triggered by 45.79.214.215 (sharedhost1.stackframe.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 29 11:56:18.052656 2024] [security2:error] [pid 6042:tid 6042] [client 45.79.214.215:39430] [client 45.79.214.215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||alafiariverrendezvous.org|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "alafiariverrendezvous.org"] [uri "/db.sql"] [unique_id "ZtCaIvS0SfmlfzLOChSq-wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack