๐ซ๐ท
IRISIO
2025-07-08 07:25:49
(1 year ago)
scans/SQL injection/spam posts : 136 queries
SQL Injection
Web App Attack
๐บ๐ธ
mnsf
2025-07-07 20:05:14
(1 year ago)
Too many Status 40X (23)
Brute-Force
Web App Attack
๐ซ๐ท
elf
2025-07-07 18:47:01
(1 year ago)
[Fail2Ban]: Jail apache-auth triggered 5 time(s) for 50.59.99.145.
[Mon Jul 07 20:35:53.811768 2025] ...
show more
[Fail2Ban]: Jail apache-auth triggered 5 time(s) for 50.59.99.145.
[Mon Jul 07 20:35:53.811768 2025] [authz_core:error] [pid 2275325] [client 50.59.99.145:0] AH01630: client denied by server configuration: /var/www/html/-_[redacted]/.git
[Mon Jul 07 20:38:31.438941 2025] [authz_core:error] [pid 2240883] [client 50.59.99.145:0] AH01630: client denied by server configuration: /var/www/html/-_[redacted]/.ftpconfig
[Mon Jul 07 20:40:39.131766 2025] [authz_core:error] [pid 2240896] [client 50.59.99.145:0] AH01630: client denied by server configuration: /var/www/html/-_[redacted]/.aws
[Mon Jul 07 20:42:12.318916 2025] [authz_core:error] [pid 2275377] [client 50.59.99.145:0] AH01630: client denied by server configuration: /var/www/html/-_[redacted]/.env
[Mon Jul 07 20:47:00.872236 2025] [authz_core:error] [pid 2240883] [client 50.59.99.145:0] AH01630: client denied by server configuration: /var/www/html/-_[redacted]/core/.env
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-07 18:30:45
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 50.59.99.145 (web60.3essentials.com): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 50.59.99.145 (web60.3essentials.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 07 14:30:41.907225 2025] [security2:error] [pid 24427:tid 24427] [client 50.59.99.145:58126] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.gibertpartners.com|F|2"] [data ".web.ui.webresource.axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.gibertpartners.com"] [uri "/Telerik.Web.UI.WebResource.axd"] [unique_id "aGwSUZZYeKRt9abM2k5hqwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฑ
ifiguero
2025-07-07 17:48:04
(1 year ago)
Web Attack (WordPress search). 30m ban
Web App Attack
๐ฌ๐ง
Apache
2025-07-07 17:42:22
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.59.99.145 (US/United States/web60.3essential ...
show more
(mod_security) mod_security (id:210492) triggered by 50.59.99.145 (US/United States/web60.3essentials.com): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
๐ต๐ฑ
strefapi_com
2025-07-07 16:51:26
(1 year ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
Blexyel
2025-07-07 16:23:43
(1 year ago)
50.59.99.145 - - [07/Jul/2025:16:23:42 +0000] "GET /.git/config HTTP/1.1" 200 2116 "-" "Mozilla/5.0 ...
show more
50.59.99.145 - - [07/Jul/2025:16:23:42 +0000] "GET /.git/config HTTP/1.1" 200 2116 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.141 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
YF
2025-07-07 14:15:05
(1 year ago)
Brute-Force
Web App Attack
๐ณ๐ฑ
artificialred.nl
2025-07-07 04:12:01
(1 year ago)
[ModSecurity probing] access_ssl_log:50.59.99.145 - - [07/Jul/2025:06:04:52 +0200] GET /.git/config ...
show more
[ModSecurity probing] access_ssl_log:50.59.99.145 - - [07/Jul/2025:06:04:52 +0200] GET /.git/config HTTP/1.0" 404 38379 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML
show less
Port Scan
Web App Attack
๐บ๐ธ
LotPhantom
2025-07-07 03:15:02
(1 year ago)
50.59.99.145 - - [07/Jul/2025:03:14:25 +0000] "GET /ALFA_DATA/alfacgiapi HTTP/1.1" 404 0 "http://api ...
show more
50.59.99.145 - - [07/Jul/2025:03:14:25 +0000] "GET /ALFA_DATA/alfacgiapi HTTP/1.1" 404 0 "http://api.bridginggaps.tech/ALFA_DATA/alfacgiapi" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.141 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-07 02:51:58
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 50.59.99.145 (web60.3essentials.com): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 50.59.99.145 (web60.3essentials.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 06 22:51:52.402817 2025] [security2:error] [pid 24633:tid 24633] [client 50.59.99.145:55359] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||fxztrader.com|F|2"] [data ".web.ui.webresource.axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "fxztrader.com"] [uri "/Telerik.Web.UI.WebResource.axd"] [unique_id "aGs2SM7oA31rs-7AL3e6TwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-07 02:49:02
(1 year ago)
Bot / scanning and/or hacking attempts: GET /cgi-bin/ALFA_DATA/alfacgiapi/ HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-07 01:47:53
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 50.59.99.145 (web60.3essentials.com): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 50.59.99.145 (web60.3essentials.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 06 21:47:47.169163 2025] [security2:error] [pid 20985:tid 20998] [client 50.59.99.145:56518] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "la.productions"] [uri "/sftp-config.json"] [unique_id "aGsnQwUxiOGgZbr78ASs7wAAAMs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
szasa
2025-07-07 00:53:46
(1 year ago)
2025/07/07 02:44:01 [error] 3939048#3939048: *1330970 access forbidden by rule, client: 50.59.99.145 ...
show more
2025/07/07 02:44:01 [error] 3939048#3939048: *1330970 access forbidden by rule, client: 50.59.99.145, server: datamentor.hu, request: "GET /.git/config HTTP/1.1", host: "datamentor.hu"
2025/07/07 02:51:26 [error] 3939048#3939048: *1331506 access forbidden by rule, client: 50.59.99.145, server: datamentor.hu, request: "GET /.env HTTP/1.1", host: "datamentor.hu"
2025/07/07 02:52:45 [error] 3939048#3939048: *1331591 access forbidden by rule, client: 50.59.99.145, server: datamentor.hu, request: "GET /api/.env HTTP/1.1", host: "datamentor.hu"
2025/07/07 02:53:46 [error] 3939048#3939048: *1331651 access forbidden by rule, client: 50.59.99.145, server: datamentor.hu, request: "GET /backend/.env HTTP/1.1", host: "datamentor.hu"
...
show less
Web App Attack