|
๐น๐ท
rtbh.com.tr
|
|
list.rtbh.com.tr report: tcp/0
|
Brute-Force
|
|
|
๐ฉ๐ช
LRob
|
|
Repeated attacks detected by Fail2Ban in recidive jail
|
Hacking
|
|
|
๐น๐ท
rtbh.com.tr
|
|
list.rtbh.com.tr report: tcp/0
|
Brute-Force
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 9.169.164.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240000) triggered by 9.169.164.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 25 17:43:43.051874 2025] [security2:error] [pid 10269:tid 10269] [client 9.169.164.88:8324] [client 9.169.164.88] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||photojeniq.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "photojeniq.com"] [uri "/images/stories/admin-post.php"] [unique_id "Z-Mjj6teuVCVMWVE8zgFqAAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ซ๐ท
pm33
|
|
Unauthorized connections HTTP 403
|
Web App Attack
|
|
|
Anonymous
|
|
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/images/users.php
|
Web App Attack
|
|
|
๐บ๐ธ
mnsf
|
|
Too many Status 40X (14)
Too many Status 50X (21)
|
Brute-Force
Web App Attack
|
|
|
๐ฉ๐ช
FeG Deutschland
|
|
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 7
|
Exploited Host
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 9.169.164.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240000) triggered by 9.169.164.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 25 11:17:46.110068 2025] [security2:error] [pid 757835:tid 757835] [client 9.169.164.88:4998] [client 9.169.164.88] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||freddyspizza.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "freddyspizza.com"] [uri "/images/stories/admin-post.php"] [unique_id "Z-LJGslo4YQNvwmL1AXhQAAAABQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 9.169.164.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240000) triggered by 9.169.164.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 25 10:18:35.331025 2025] [security2:error] [pid 26997:tid 26997] [client 9.169.164.88:7236] [client 9.169.164.88] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||delicatessefoods.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "delicatessefoods.com"] [uri "/images/stories/admin-post.php"] [unique_id "Z-K7O1pRC09XbDiBBVU2PgAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
ghostwarriors
|
|
Webpage scraping
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
ps-center
|
|
ABV: Web Attack GET /ellen-berg/wp-includes/Text/network.php
|
Web Spam
Hacking
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
LRob
|
|
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
|
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240000) triggered by 9.169.164.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240000) triggered by 9.169.164.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 25 07:46:54.896511 2025] [security2:error] [pid 16894:tid 16894] [client 9.169.164.88:5208] [client 9.169.164.88] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||wbcsnet.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "wbcsnet.com"] [uri "/images/stories/admin-post.php"] [unique_id "Z-KXrgdfNTUJJTq1Uqzp2gAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Fail2ban block
|
Brute-Force
Web App Attack
|
|