๐จ๐ฆ
JuicyJ
2025-01-20 11:27:44
(1 year ago)
Excessive crawling/scraping
Web App Attack
๐ฉ๐ฐ
JBH
2025-01-16 10:06:00
(1 year ago)
Tamper HTTP Requests by script code injection
Hacking
SQL Injection
๐ซ๐ท
COMAITE
2025-01-15 03:16:33
(1 year ago)
SQL injection attempt from 45.85.204.9.
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2025-01-14 22:05:19
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (HU/Hungary/-): N in the last X sec ...
show more
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (HU/Hungary/-): N in the last X secs
show less
Web App Attack
๐ฉ๐ช
conseilgouz
2025-01-14 17:15:04
(1 year ago)
coe-12 : Block return, carriage return, ... characters=>/index.php?Itemid=888&id=153&option= ...
show more
coe-12 : Block return, carriage return, ... characters=>/index.php?Itemid=888&id=153&option=com_content%27&view=article(')
show less
Hacking
๐บ๐ธ
TPI-Abuse
2025-01-14 17:03:26
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 14 12:03:17.447915 2025] [security2:error] [pid 1822856:tid 1822856] [client 45.85.204.9:44989] [client 45.85.204.9] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||needtoorder.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "needtoorder.com"] [uri "/index.php"] [unique_id "Z4aY1aW_Wif6i6Mw94GiegAAAAg"], referer: https://needtoorder.com/index.php?cPath=371_517&main_page=product_info&products_id=2986&products_id=%27
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-14 16:46:57
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 14 11:46:53.661482 2025] [security2:error] [pid 6506:tid 6506] [client 45.85.204.9:45541] [client 45.85.204.9] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||terazon.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "terazon.net"] [uri "/index.php"] [unique_id "Z4aU_dM_jzdMFeGDHeTMdwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-14 13:54:53
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 14 08:54:47.766637 2025] [security2:error] [pid 6124:tid 6124] [client 45.85.204.9:45657] [client 45.85.204.9] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.teatrosohoclub.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.teatrosohoclub.com"] [uri "/es/pluginAppObj/pluginAppObj_238_431/download.php"] [unique_id "Z4ZspwTPO_gGBKMV1poOKAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-14 13:34:10
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 14 08:34:04.916207 2025] [security2:error] [pid 15191:tid 15191] [client 45.85.204.9:25125] [client 45.85.204.9] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||learn.panmaneecnc.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "learn.panmaneecnc.com"] [uri "/index.php"] [unique_id "Z4ZnzCTypefHwq8_ZHdNpQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-14 12:23:32
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 14 07:23:28.650480 2025] [security2:error] [pid 4946:tid 4946] [client 45.85.204.9:16803] [client 45.85.204.9] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||logosformacion.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "logosformacion.net"] [uri "/curso.php"] [unique_id "Z4ZXQGgnNO0eBUoa3QUcewAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
conseilgouz
2025-01-14 11:11:10
(1 year ago)
sae-12 : Block return, carriage return, ... characters=>/index.php?catid=%27&id=%27&option=% ...
show more
sae-12 : Block return, carriage return, ... characters=>/index.php?catid=%27&id=%27&option=%27&view=%27(')
show less
Hacking
๐ฑ๐บ
conseilgouz
2025-01-14 10:25:42
(1 year ago)
are-12 : Block return, carriage return, ... characters=>/index.php?option=com_content&option=%27 ...
show more
are-12 : Block return, carriage return, ... characters=>/index.php?option=com_content&option=%27(')
show less
Hacking
๐บ๐ธ
TPI-Abuse
2025-01-14 03:16:29
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 45.85.204.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 13 22:16:23.727064 2025] [security2:error] [pid 4491:tid 4491] [client 45.85.204.9:60413] [client 45.85.204.9] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||cs-mall.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "cs-mall.com"] [uri "/recipe.php"] [unique_id "Z4XXB1nT4SGjeUREXLI_GwAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
maximonline.co.za
2025-01-13 14:30:28
(1 year ago)
Attempts at SQL injection.
SQL Injection
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2025-01-13 08:11:37
(1 year ago)
SQL injection attempt.-112
Web App Attack