(mod_security) mod_security (id:210730) triggered by 54.145.82.93 (ec2-54-145-82-93.compute-1.amazon ...
show more(mod_security) mod_security (id:210730) triggered by 54.145.82.93 (ec2-54-145-82-93.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 28 03:58:44.905144 2024] [security2:error] [pid 6236] [client 54.145.82.93:35246] [client 54.145.82.93] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.mooseled.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.mooseled.com"] [uri "/config/settings.ini"] [unique_id "ZlWOtB06npIbKXBwn291ogAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Ports: 80,443; Direction: 0; Trigger: LF_MODSEC
Brute-Force
SSH
Anonymous
Bot / scanning and/or hacking attempts: GET /.env.test HTTP/1.1, GET /.envs HTTP/1.1, GET /.rbenv-ve ...
show moreBot / scanning and/or hacking attempts: GET /.env.test HTTP/1.1, GET /.envs HTTP/1.1, GET /.rbenv-version HTTP/1.1, done, streams: 0/6/6/0/0 (open/recv/resp/push/rst), GET /.env.sample HTTP/1.1, GET /.env-sample HTTP/1.1, GET /env.json HTTP/1.1, GET /.env_bak HTTP/1.1, GET /.env.docker.dev HTTP/1.1, GET /.env.php HTTP/1.1, GET /.env.backup HTTP/1.1, GET /.env.prod HTTP/1.1, GET /.env.prod.local HTTP/1.1, done, streams: 0/1/1/0/0 (open/recv/resp/push/rst), GET /.env.development.sample HTTP/1.1, GET /.zshenv HTTP/1.1, GET /environment.ts HTTP/1.1, GET /.env_old HTTP/1.1, GET /.env.dev.local HTTP/1.1
show less