๐บ๐ธ
TPI-Abuse
2025-12-29 21:20:16
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 16:20:09.427976 2025] [security2:error] [pid 21673:tid 21694] [client 66.78.34.124:54483] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kettlehill.net"] [uri "/sample.htaccess"] [unique_id "aVLwidoKFoxlNLdnJRxNtAAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-27 02:38:11
(1 year ago)
(mod_security) mod_security (id:212620) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:212620) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 26 22:37:48.649152 2024] [security2:error] [pid 12714:tid 12876] [client 66.78.34.124:43207] [client 66.78.34.124] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||autodiscover.kettlehill.net|F|2"] [data "Matched Data: <script found within REQUEST_URI: /system/login/sysloginuser.aspx?login=denied&uid=</script><script>alert(document.domain)</script>"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "autodiscover.kettlehill.net"] [uri "/system/login/SysLoginUser.aspx"] [unique_id "Zx2nfMQgf9D2avDXGrUY3AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-03 18:33:54
(1 year ago)
(mod_security) mod_security (id:221260) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:221260) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 03 14:33:44.521768 2024] [security2:error] [pid 944:tid 944] [client 66.78.34.124:49761] [client 66.78.34.124] ModSecurity: Access denied with code 403 (phase 1). Pattern match "^(?:\\\\'\\\\w+?=)?\\\\(\\\\)\\\\s{" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "80"] [id "221260"] [rev "3"] [msg "COMODO WAF: Shellshock Command Injection Vulnerabilities in GNU Bash through 4.3 bash43-026 (CVE-2014-7187, CVE-2014-7186, CVE-2014-7169, CVE-2014-6278, CVE-2014-6277, CVE-2014-6271)||cpcontacts.stdavids-media.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.stdavids-media.com"] [uri "/"] [unique_id "ZtdWiHZths5B3SG4ZFRxYAAAAA4"], referer: () { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-01 01:00:21
(1 year ago)
(mod_security) mod_security (id:211190) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:211190) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 31 21:00:14.757520 2024] [security2:error] [pid 27365:tid 27381] [client 66.78.34.124:51855] [client 66.78.34.124] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||ftp.kettlehill.com|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /index.php?option=com_abbrev&controller=../../../../../../../../../../etc/passwd%00"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.kettlehill.com"] [uri "/index.php"] [unique_id "ZqreHqgBPT69WcxC1M6xAgAAAYs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2024-06-27 12:01:20
(1 year ago)
Unauthorized login attempts [ accesslogs]
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-05-21 23:21:37
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 66.78.34.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 21 19:19:56.592207 2024] [security2:error] [pid 4011:tid 47525679163136] [client 66.78.34.124:53477] [client 66.78.34.124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whm.kettlehill.net"] [uri "/.env"] [unique_id "Zk0sHDHjro3uQnb1ONlA3wAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-05-15 14:53:00
(2 years ago)
DDoS Attack
DDoS Attack
Web App Attack
๐ช๐ธ
10dencehispahard SL
2024-05-08 08:02:12
(2 years ago)
Unauthorized login attempts []
Brute-Force
๐ช๐ธ
10dencehispahard SL
2024-05-08 07:06:21
(2 years ago)
Web Attack
DDoS Attack
Brute-Force
Web App Attack
๐ฆ๐บ
oncord
2024-04-28 05:43:05
(2 years ago)
Form spam
Web Spam
๐บ๐ธ
oncord
2024-04-26 21:45:12
(2 years ago)
Form spam
Web Spam
๐บ๐ธ
nowyouknow
2024-04-25 02:50:08
(2 years ago)
(From [email protected] )(From [email protected] ) Are you alright running your busi ...
show more
(From [email protected] )(From [email protected] ) Are you alright running your business without a lot of funds? This could impede growth and postpone returns on your business.
Now you have the Chance to Obtain Funds for your Businesses and Projects free from stress and any obligation of repayment as our primary focus lies in fostering the growth of your business and projects, enabling you to achieve your desired business goals and dreams.
Take advantage of our Financing opportunity and receive funding for your business and projects in days, and a generous number of years to repayment, providing you sufficient time to grow and attain your business goals.
Get in touch with us at:
+852 3008 8373,
or reach out to us at:
[email protected]
Unsubscribe here if you don't want to get these great offers: https://docs.google.com/forms/d/e/1FAIpQLSdx-LI-ETiB-g37_ijIRHfBNhu__c-Go1dyOyZ_zU_pgeYTEg/viewform?usp=sf_link
Ul. Ogrodowa 11, Garden City, NY, USA, 05-075
show less
Phishing
Web Spam
๐ฆ๐บ
oncord
2024-04-24 15:42:30
(2 years ago)
Form spam
Web Spam
๐ช๐ธ
10dencehispahard SL
2024-03-27 07:00:25
(2 years ago)
Unauthorized login attempts [ BI-16635]
Brute-Force
๐ช๐ธ
10dencehispahard SL
2024-03-27 06:53:10
(2 years ago)
WP scan
Web App Attack