๐บ๐ธ
octageeks.com
2024-03-31 04:08:03
(2 years ago)
Wordpress malicious attack:[octa404]
Web App Attack
๐บ๐ธ
octageeks.com
2024-03-29 04:08:07
(2 years ago)
Wordpress malicious attack:[octa404]
Web App Attack
๐บ๐ธ
octageeks.com
2024-03-27 04:08:00
(2 years ago)
Wordpress malicious attack:[octa404]
Web App Attack
๐บ๐ธ
octageeks.com
2024-03-25 04:08:39
(2 years ago)
Wordpress malicious attack:[octa404]
Web App Attack
๐บ๐ธ
TheMadBeaker
2024-03-24 16:39:51
(2 years ago)
Fail2Ban Ban Triggered
HTTP SQL Injection Attempt
Hacking
SQL Injection
๐ซ๐ท
Sklurk
2024-03-24 16:33:04
(2 years ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-06 07:30:28
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 06 02:30:23.582666 2024] [security2:error] [pid 9698] [client 84.32.71.48:43779] [client 84.32.71.48] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||dudleyanddudley.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "dudleyanddudley.com"] [uri "/back/www.sql"] [unique_id "Zegbj1c4rDhwIb3Px45KTQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-27 01:21:49
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 26 20:21:43.476581 2024] [security2:error] [pid 29261] [client 84.32.71.48:9899] [client 84.32.71.48] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kim-porter.com"] [uri "/old/.env"] [unique_id "Zd05Jzo2TggKIAffapw3dgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-21 05:52:40
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 21 00:52:35.585720 2024] [security2:error] [pid 10877] [client 84.32.71.48:59241] [client 84.32.71.48] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bitcoinsquaretrader.com"] [uri "/backup/.env"] [unique_id "ZdWPoxnoxeABbgVshiZNjwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
hbrks
2024-02-12 23:04:09
(2 years ago)
HEAD http://p4u.xyz/bak/p4u.xyz.zip
statusCode: 503
Web Spam
Hacking
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-02-07 03:06:20
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 06 22:06:14.986271 2024] [security2:error] [pid 4274:tid 47317426185984] [client 84.32.71.48:59221] [client 84.32.71.48] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||liquido.cocoonprojects.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "liquido.cocoonprojects.com"] [uri "/old/dump.sql"] [unique_id "ZcLzpsvt8jyPbAZM3dIquAAAAJM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-30 01:03:16
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 29 20:03:09.014989 2024] [security2:error] [pid 3530] [client 84.32.71.48:12595] [client 84.32.71.48] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jeromebrownmba.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jeromebrownmba.com"] [uri "/bak/www.sql"] [unique_id "ZbhKzch6BcvlpqNPt35JUwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-24 09:36:44
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 24 04:36:36.523261 2024] [security2:error] [pid 26794] [client 84.32.71.48:7169] [client 84.32.71.48] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.wizind.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.wizind.com"] [uri "/CookieAuth.dll"] [unique_id "ZbDaJDfhDCHhw7IN_WjerQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-24 01:24:48
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 23 20:24:34.159131 2024] [security2:error] [pid 21695] [client 84.32.71.48:9839] [client 84.32.71.48] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.rowemachinery.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.rowemachinery.com"] [uri "/CookieAuth.dll"] [unique_id "ZbBm0qwamxoHU23TkTMVTgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-23 17:25:02
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 23 12:24:53.365801 2024] [security2:error] [pid 18367:tid 47130992240384] [client 84.32.71.48:18123] [client 84.32.71.48] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.aaadatacom.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.aaadatacom.com"] [uri "/CookieAuth.dll"] [unique_id "Za_2Zd6BFhZqXVyH1M20eQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack