|
๐ฎ๐ณ
Altis Shield
|
|
UDP flood/amplification attempt srcport 24659 dstport 123 length 759
|
Fraud Orders
Bad Web Bot
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
๐ง๐ช
taivas.nl
|
|
Wordpress_xmlrpc_attack
|
Bad Web Bot
|
|
|
๐ง๐ช
taivas.nl
|
|
Wordpress_xmlrpc_attack
|
Bad Web Bot
|
|
|
๐ฌ๐ง
Greg Poulson
|
|
Our website was hit by this DDOS at a rate of 4 in 5 minutes.
|
DDoS Attack
Web Spam
Brute-Force
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:211180) triggered by 5.252.28.81 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:211180) triggered by 5.252.28.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 18 12:04:19.134764 2025] [security2:error] [pid 3386591:tid 3386591] [client 5.252.28.81:46415] [client 5.252.28.81] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_HEADERS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "50"] [id "211180"] [rev "3"] [msg "COMODO WAF: Session Fixation: SessionID Parameter Name with No Referer||www.thecrimsonpirate.com|F|2"] [data "Matched Data: phpsessid found within REQUEST_HEADERS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thecrimsonpirate.com"] [uri "/forum/index.php"] [unique_id "Z4vfEydrJOPyWtiewMHHJQAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210831) triggered by 5.252.28.81 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210831) triggered by 5.252.28.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 13 10:45:39.048727 2025] [security2:error] [pid 3731762:tid 3731762] [client 5.252.28.81:37379] [client 5.252.28.81] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||backstore.com|F|4"] [data "a href="] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "backstore.com"] [uri "/webalizer/usage_202501.html"] [unique_id "Z4U1I4vywRtW7wyLMtpz4QAAAB8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ต๐ฑ
sefinek.net
|
|
Triggered Cloudflare WAF (firewallCustom) from RU.
Action taken: MANAGED_CHALLENGE
ASN: 47913 (MIS-A ...
show more
Triggered Cloudflare WAF (firewallCustom) from RU.
Action taken: MANAGED_CHALLENGE
ASN: 47913 (MIS-AS)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2025-01-12T02:06:52Z
Ray ID: 900996f9cc8dec5f
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
Report generated by Cloudflare-WAF-To-AbuseIPDB:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
|
Bad Web Bot
|
|
|
๐ต๐ฑ
sefinek.net
|
|
Triggered Cloudflare WAF (firewallCustom) from RU.
Action taken: MANAGED_CHALLENGE
ASN: 47913 (MIS-A ...
show more
Triggered Cloudflare WAF (firewallCustom) from RU.
Action taken: MANAGED_CHALLENGE
ASN: 47913 (MIS-AS)
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
Timestamp: 2025-01-07T04:07:27Z
Ray ID: 8fe114be79676ff4
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51
Report generated by Cloudflare-WAF-To-AbuseIPDB:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
|
Bad Web Bot
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|