|
Anonymous
|
|
Backdrop CMS module - malicious activity detected
|
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
on-com
|
|
URL scan
|
Brute-Force
Web App Attack
|
|
|
๐ฌ๐ท
JCB
|
|
50.87.144.93 - - [29/Mar/2024:08:33:23 +0200] "GET /wp-content/plugins/wp-automatic/js/main-front.js ...
show more
50.87.144.93 - - [29/Mar/2024:08:33:23 +0200] "GET /wp-content/plugins/wp-automatic/js/main-front.js HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux; Android 7.0; Moto G (4)) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4143.7 Mobile Safari/537.36 Chrome-Lighthouse"
show less
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 25 17:01:51.092900 2024] [security2:error] [pid 12793] [client 50.87.144.93:53980] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||teguer.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "teguer.com"] [uri "/images/stories/xnight.php"] [unique_id "ZgHmP0zq7j36cEMJ7_9tKgAAAAc"], referer: http://teguer.com/images/stories/xnight.php
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 25 15:35:58.975251 2024] [security2:error] [pid 342] [client 50.87.144.93:56692] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||mainescentsecrets.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "mainescentsecrets.com"] [uri "/images/stories/localhost.php"] [unique_id "ZgHSHpeRQ8mMv8hqcTOPLQAAAAQ"], referer: http://simplesite.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 25 12:43:25.978221 2024] [security2:error] [pid 26102] [client 50.87.144.93:14404] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||manb.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "manb.org"] [uri "/images/stories/gay.php"] [unique_id "ZgGprZRNS_YE4cny576OMAAAAAY"], referer: http://simplesite.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 25 11:02:44.920295 2024] [security2:error] [pid 32689] [client 50.87.144.93:53800] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||dynabandllc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "dynabandllc.com"] [uri "/images/stories/tmp.php"] [unique_id "ZgGSFPr7us72AD40HZ6dRAAAABw"], referer: http://dynabandllc.com/images/stories/tmp.php
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 25 09:14:21.981269 2024] [security2:error] [pid 7287] [client 50.87.144.93:12924] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||jabbosjingles.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "jabbosjingles.com"] [uri "/images/stories/vito.php"] [unique_id "ZgF4rdOeW1If5Tsj3udebQAAAAo"], referer: http://simplesite.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 25 08:22:22.980763 2024] [security2:error] [pid 11136] [client 50.87.144.93:15208] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||techamerica.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "techamerica.net"] [uri "/images/stories/tommy.php"] [unique_id "ZgFsfkJgWwGxohQYqKgobQAAAAw"], referer: http://techamerica.net/images/stories/tommy.php
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 25 07:26:48.054306 2024] [security2:error] [pid 18251] [client 50.87.144.93:38380] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||kathiepontinen.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "kathiepontinen.com"] [uri "/images/stories/bojog.php"] [unique_id "ZgFfeJJe-K99KJNgvFVhZQAAAAE"], referer: http://simplesite.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 25 06:49:56.014393 2024] [security2:error] [pid 3267] [client 50.87.144.93:49800] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||jwwsb.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "jwwsb.org"] [uri "/images/stories/k4l0nk.php"] [unique_id "ZgFW1HdxViN4iEKjKSBe9QAAAAg"], referer: http://simplesite.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฑ๐บ
conseilgouz
|
|
are-0 : Trying access unauthorized files=>/images/stories/localhost.php()
|
Hacking
|
|
|
๐บ๐ธ
Mainpine
|
|
probing for vulnerable web apps
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 24 14:34:31.861259 2024] [security2:error] [pid 29743:tid 47674415924992] [client 50.87.144.93:46884] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||piazza9.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "piazza9.com"] [uri "/images/stories/explore.php"] [unique_id "ZgByN5sm0INk2eDj3exU1wAAANE"], referer: http://simplesite.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in th ...
show more
(mod_security) mod_security (id:240000) triggered by 50.87.144.93 (gator3074.hostgator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 24 07:45:51.002138 2024] [security2:error] [pid 8466:tid 47551483029248] [client 50.87.144.93:35990] [client 50.87.144.93] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||jeflis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "jeflis.com"] [uri "/images/stories/upl.php"] [unique_id "ZgASbhJEYj-4hAoVonbRDwAAAAU"], referer: http://simplesite.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|