๐บ๐ธ
TPI-Abuse
2024-07-20 04:24:37
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 20 00:24:30.210499 2024] [security2:error] [pid 14904:tid 14904] [client 50.21.188.82:55723] [client 50.21.188.82] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||newisci.org|F|2"] [data ".safari-eha.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "newisci.org"] [uri "/expo_2025/www.safari-eha.com"] [unique_id "Zps7_ibviQ8XsWR-Yhg74AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-05-05 09:27:32
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 05 05:27:24.887289 2024] [security2:error] [pid 1195] [client 50.21.188.82:40873] [client 50.21.188.82] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.kingstoneproperties.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.kingstoneproperties.com"] [uri "/[email protected] "] [unique_id "ZjdQ_PZlfgKrTEvpeNtwNgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-04-13 10:58:12
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 13 06:58:06.455199 2024] [security2:error] [pid 10455] [client 50.21.188.82:42727] [client 50.21.188.82] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.baliaccommodationpadangpadang.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.baliaccommodationpadangpadang.com"] [uri "/location/[email protected] "] [unique_id "ZhplPjcEz3em_Wr4CPMiwwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
rsa
2024-03-29 21:31:00
(2 years ago)
excessive crawling ddos
DDoS Attack
Web Spam
Web App Attack
๐ฌ๐ง
AFRICARGUS
2024-01-25 05:52:05
(2 years ago)
50.21.188.82 [25/Jan/2024:04:26:03 +0000] GET "/wp-cron.php" HTTP/2.0 403
Web App Attack
๐ฎ๐ฒ
Buster
2023-12-26 18:04:56
(2 years ago)
Repeated script kiddie attack attempts on multiple sites from Perm Blocked Extremely High Risk ASN a ...
show more
Repeated script kiddie attack attempts on multiple sites from Perm Blocked Extremely High Risk ASN and country:
show less
Open Proxy
Hacking
Brute-Force
Web App Attack
๐ฆ๐บ
MAGIC
2023-11-30 03:03:43
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2023-11-22 01:50:03
(2 years ago)
Automatic report - Vulnerability scan
/wp-cron.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-22 01:31:46
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 21 20:31:38.880016 2023] [security2:error] [pid 24669:tid 47881133655808] [client 50.21.188.82:57371] [client 50.21.188.82] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.kerrfamilyassociation.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.kerrfamilyassociation.com"] [uri "/[email protected] "] [unique_id "ZV1Z-mXzpra0YnBmAPP77QAAAQg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-18 20:31:14
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 50.21.188.82 (crawllxa137.1and1.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 18 15:31:11.021923 2023] [security2:error] [pid 12832] [client 50.21.188.82:32897] [client 50.21.188.82] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.veneerdent.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.veneerdent.com"] [uri "/en/about-us/[email protected] "] [unique_id "ZVkfD17QX2V3qJftcBC0QAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mccormackdesigns.com
2023-11-07 19:37:08
(2 years ago)
trying to directly access admin pages for Wordpress (not a Wordpress site)
such as: wp-cron.php, wp ...
show more
trying to directly access admin pages for Wordpress (not a Wordpress site)
such as: wp-cron.php, wp-login.php, etc...
show less
Web App Attack
๐จ๐ณ
ThreatBook.io
2023-07-20 02:01:57
(3 years ago)
ThreatBook Intelligence: Zombie,Spam more details on https://threatbook.io/ip/50.21.188.82
2023-07-1 ...
show more
ThreatBook Intelligence: Zombie,Spam more details on https://threatbook.io/ip/50.21.188.82
2023-07-19 17:28:22 /docs/appdev/source.html
2023-07-19 17:27:50 /docs/manager-howto.html
2023-07-19 17:27:57 /docs/jndi-datasource-examples-howto.html
2023-07-19 17:27:52 /docs/realm-howto.html
2023-07-19 17:28:21 /docs/appdev/introduction.html
2023-07-19 17:27:46 /docs/
2023-07-19 17:25:32 /sitemap.xml
show less
Web App Attack
๐จ๐ด
adalbertoreyes.org
2023-02-15 14:46:49
(3 years ago)
CategoryPortScan
Port Scan
๐ฉ๐ช
ps-center
2022-11-18 22:18:26
(3 years ago)
MYH: Web Attack GET /wp-admin/admin-ajax.php
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
GeekOnTheHill
2022-09-02 03:10:36
(3 years ago)
GET /wp-admin/admin-ajax.php HTTP/1.1
Hacking
Web App Attack