๐บ๐ธ
octageeks.com
2024-01-20 05:12:10
(2 years ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
octageeks.com
2024-01-19 05:12:02
(2 years ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
octageeks.com
2024-01-18 05:12:00
(2 years ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฌ๐ง
AFRICARGUS
2024-01-17 19:11:22
(2 years ago)
Brute force and multiple malicious GET requests
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2024-01-17 16:48:48
(2 years ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-16 21:44:06
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 16 16:44:01.201257 2024] [security2:error] [pid 2114] [client 52.169.189.146:2052] [client 52.169.189.146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||toody.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "toody.com"] [uri "/site/default/settings.php.BAK"] [unique_id "Zab4oROf_PObmx5WB27dRgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Mediashaker
2024-01-16 09:24:28
(2 years ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 52.169.189.146 (IE/Irela ...
show more
(apache-scanners) Failed apache-scanners trigger with match [redacted] from 52.169.189.146 (IE/Ireland/-)
show less
Port Scan
๐บ๐ธ
mnsf
2024-01-16 09:06:33
(2 years ago)
Scanning/Probing (33)
Request Overload (776)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-16 07:14:50
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 16 02:14:46.983075 2024] [security2:error] [pid 15062] [client 52.169.189.146:1133] [client 52.169.189.146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thenitecapsbluesband.craftcare.net|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thenitecapsbluesband.craftcare.net"] [uri "/site/default/settings.php.BAK"] [unique_id "ZaYs5r-EZQLnWQIsqV-j5wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2024-01-16 05:14:06
(2 years ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-16 01:58:57
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 20:58:53.684185 2024] [security2:error] [pid 5210] [client 52.169.189.146:2960] [client 52.169.189.146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||macjr.net|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "macjr.net"] [uri "/site/default/settings.php.BAK"] [unique_id "ZaXi3SkDAj4O61RG5_tzAAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-16 01:33:29
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 20:33:24.777291 2024] [security2:error] [pid 27388] [client 52.169.189.146:1987] [client 52.169.189.146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||acmedistributingllc.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "acmedistributingllc.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZaXc5Eldi3vHD8iuSOmQ9wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-15 23:23:37
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 18:23:29.142607 2024] [security2:error] [pid 10631] [client 52.169.189.146:2119] [client 52.169.189.146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.dboiler.modelengines.info|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dboiler.modelengines.info"] [uri "/site/default/settings.php.BAK"] [unique_id "ZaW-cZuf7m4TXunTO_4_TAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-15 21:27:41
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 16:27:36.955376 2024] [security2:error] [pid 21201] [client 52.169.189.146:2678] [client 52.169.189.146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.darrenj.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.darrenj.com"] [uri "/site/default/settings.php.BAK"] [unique_id "ZaWjSMKmTTm9tcZtm6NJmwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-15 20:27:00
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 52.169.189.146 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 15:26:55.417084 2024] [security2:error] [pid 25337] [client 52.169.189.146:1662] [client 52.169.189.146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.lodge84.org|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.lodge84.org"] [uri "/site/default/settings.php.BAK"] [unique_id "ZaWVD_zJAKCFoJ4wP5jz6gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack