๐บ๐ธ
TPI-Abuse
2024-03-24 04:14:22
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 24 00:14:16.232710 2024] [security2:error] [pid 2096296] [client 84.32.71.84:61351] [client 84.32.71.84] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||firejasstrio.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "firejasstrio.com"] [uri "/back/mysql.sql"] [unique_id "Zf-omCvoYT1gswkX9gcslAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-15 19:54:00
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 15 15:53:51.883869 2024] [security2:error] [pid 17153] [client 84.32.71.84:27389] [client 84.32.71.84] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bitcoincasting.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bitcoincasting.com"] [uri "/old/www.sql"] [unique_id "ZfSnT9Gvls_bfDrzwh5ragAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
hbrks
2024-03-13 09:08:51
(2 years ago)
http://_/
statusCode: 400
user-agent:DDOS Attack
Web Spam
Hacking
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-03-05 10:31:15
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 05 05:31:10.004314 2024] [security2:error] [pid 26449] [client 84.32.71.84:43529] [client 84.32.71.84] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||symbarenewables.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "symbarenewables.com"] [uri "/bak/sql.sql"] [unique_id "Zeb0bvZf4xUVs86hP1VuZAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-05 03:19:32
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 04 22:19:28.278789 2024] [security2:error] [pid 22508] [client 84.32.71.84:50387] [client 84.32.71.84] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||powderriverinc.com|F|2"] [data ".dat"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "powderriverinc.com"] [uri "/backup/wallet.dat"] [unique_id "ZeaPQLQFbeCJvHCAymo_JgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-03 12:13:04
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 03 07:12:59.901926 2024] [security2:error] [pid 20384] [client 84.32.71.84:55199] [client 84.32.71.84] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.nationalenq.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.nationalenq.com"] [uri "/back/www.sql"] [unique_id "ZeRpS_4p52bmpUABDuaomQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
hbrks
2024-02-27 22:02:05
(2 years ago)
HEAD http://leralmedia.com/www.tar
statusCode: 503
Web Spam
Hacking
Bad Web Bot
๐ฉ๐ช
hbrks
2024-02-12 09:22:21
(2 years ago)
HEAD http://ncs.guru/backups/public_html.zip
statusCode: 503
Web Spam
Hacking
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-02-08 23:43:04
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 08 18:42:57.858480 2024] [security2:error] [pid 20502] [client 84.32.71.84:50201] [client 84.32.71.84] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||equine-essence.com|F|2"] [data ".com.sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "equine-essence.com"] [uri "/backups/equineessence.com.sql"] [unique_id "ZcVnAeawWaWFdWa0AHSsiQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-15 15:29:48
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.84 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 15 10:29:41.611117 2024] [security2:error] [pid 13005] [client 84.32.71.84:31887] [client 84.32.71.84] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bitcointoolfair.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bitcointoolfair.com"] [uri "/restore/backup.sql"] [unique_id "ZaVPZQTeAZE0xb2GRFb3FgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฑ
FAZ_Noc
2023-12-19 07:09:50
(2 years ago)
SQL injection - Unauthorized connection attempt detected from IP address
SQL Injection
๐น๐ญ
Sawasdee
2023-10-23 19:29:59
(2 years ago)
Port Scan
...
Port Scan
Anonymous
2023-10-04 23:43:59
(3 years ago)
84.32.71.84 - - [05/Oct/2023:00:43:59 +0100] "HEAD /backup/backup.zip HTTP/1.1" 403 124 "-" "-"
...
Web App Attack