|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 11 01:54:59.752555 2024] [security2:error] [pid 8851] [client 85.215.236.41:57431] [client 85.215.236.41] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "modernere.com"] [uri "/wp-config.php"] [unique_id "ZZ-Qw8if0CPfc91hKnjouAAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 10 17:19:16.131040 2024] [security2:error] [pid 8952] [client 85.215.236.41:64710] [client 85.215.236.41] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lyldevelopers.com"] [uri "/wp-config.php"] [unique_id "ZZ8X5GRkup6wOb727r1VvAAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
Ba-Yu
|
|
General hacking/exploits/scanning
|
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 10 16:45:28.509321 2024] [security2:error] [pid 12082:tid 47138109200128] [client 85.215.236.41:58652] [client 85.215.236.41] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clinicadelparabrisas.com"] [uri "/wp-config.php"] [unique_id "ZZ8P-G4l50OhQGqoMJYGdQAAARI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 10 10:39:36.303108 2024] [security2:error] [pid 26958] [client 85.215.236.41:54816] [client 85.215.236.41] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marxistphilosophy.org"] [uri "/wp-config.php"] [unique_id "ZZ66OK68UH38_3a-jDkY3AAAABY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 10 09:41:55.928436 2024] [security2:error] [pid 382] [client 85.215.236.41:64090] [client 85.215.236.41] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cp.graner.us"] [uri "/wp-config.php"] [unique_id "ZZ6ss0Ao9ZHg0gjAJbYZXgAAABE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 10 09:23:13.837560 2024] [security2:error] [pid 9726] [client 85.215.236.41:51493] [client 85.215.236.41] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rudiscreations.com"] [uri "/wp-config.php"] [unique_id "ZZ6oUa6it63fKEwlimZIzAAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 i ...
show more
(mod_security) mod_security (id:210492) triggered by 85.215.236.41 (ip85-215-236-41.pbiaas.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 10 09:03:14.016310 2024] [security2:error] [pid 17259] [client 85.215.236.41:51350] [client 85.215.236.41] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "loschanchitoswinery.com.nopd.info"] [uri "/wp-config.php"] [unique_id "ZZ6joifda5bjGzNrz7q62QAAAA4"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐จ๐ฑ
darkside
|
|
85.215.236.41 - - [09/Jan/2024:13:39:47 -0300] "GET /media/system/js/core.js HTTP/1.1" 404 71366 "-" ...
show more
85.215.236.41 - - [09/Jan/2024:13:39:47 -0300] "GET /media/system/js/core.js HTTP/1.1" 404 71366 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36"
85.215.236.41 - - [09/Jan/2024:13:39:52 -0300] "GET /wp-includes/js/jquery/jquery.js HTTP/1.1" 404 71366 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.95 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
Anonymous
|
|
SuspiciousQ Activity detected by FMBAD System 2024-01-09 14:56:14
|
Open Proxy
VPN IP
Hacking
Bad Web Bot
Web App Attack
|
|
|
๐จ๐ผ
Jomeg0
|
|
unauthorized attempt to access webserver
|
FTP Brute-Force
Port Scan
Hacking
Brute-Force
Web App Attack
|
|
|
๐ท๐บ
OK
|
|
HTTP/HTTPS
|
Hacking
Web App Attack
|
|
|
๐จ๐ญ
backslash
|
|
|
Bad Web Bot
|
|
|
๐ฆ๐บ
FEWA
|
|
Fail2Ban Ban Triggered
|
Hacking
Bad Web Bot
Web App Attack
|
|
|
๐ณ๐ฑ
Savvii
|
|
20 attempts against mh_ha-misbehave-ban on drop
|
Brute-Force
Bad Web Bot
Web App Attack
|
|