๐บ๐ธ
TPI-Abuse
2024-09-04 10:10:41
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 04 06:10:34.705185 2024] [security2:error] [pid 26811:tid 26811] [client 94.140.115.63:45142] [client 94.140.115.63] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.dtla2028.com"] [uri "/.git/config"] [unique_id "ZtgyGjG90CDMimCQjTMbaAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Swiptly
2024-08-31 01:23:16
(2 years ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-28 13:38:53
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 28 09:38:48.305848 2024] [security2:error] [pid 13211:tid 13211] [client 94.140.115.63:41198] [client 94.140.115.63] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rblep.com"] [uri "/wp-config.php.info"] [unique_id "Zs8oaCOWuwzfU0nu18KAnwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
mxinfra
2024-08-28 08:59:02
(2 years ago)
Blocked by Fail2Ban (wordpress-login)
Hacking
Brute-Force
Web App Attack
๐น๐ท
rtbh.com.tr
2024-08-27 08:55:14
(2 years ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐น๐ท
rtbh.com.tr
2024-08-26 20:55:15
(2 years ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-08-22 07:00:08
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 22 02:59:58.418762 2024] [security2:error] [pid 15381:tid 15381] [client 94.140.115.63:38090] [client 94.140.115.63] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sirio-b.com"] [uri "/main/wp-config.php.in"] [unique_id "Zsbh7isJuNo9_woHV929jQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-08-13 08:20:09
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 13 04:20:02.204556 2024] [security2:error] [pid 5210:tid 5210] [client 94.140.115.63:34810] [client 94.140.115.63] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||local639.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "local639.com"] [uri "/39.sql"] [unique_id "ZrsXMiXUfSXYYR0R4lpqYAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
oncord
2024-08-11 15:22:00
(2 years ago)
Form spam
Web Spam
๐ฉ๐ช
Packets-Decreaser.NET
2024-08-09 21:27:39
(2 years ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ธ๐ฌ
oncord
2024-08-01 07:51:12
(2 years ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2024-07-28 04:38:05
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 28 00:37:56.954726 2024] [security2:error] [pid 9930:tid 9930] [client 94.140.115.63:45760] [client 94.140.115.63] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rddeckerphotography.com"] [uri "/wp-config.phpb"] [unique_id "ZqXLJOHZp6pE49bjk-c-TwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
decisionconcepts
2024-07-27 17:47:08
(2 years ago)
GX620: Fail2Ban detected 2 attempts against wordpress from: 94.140.115.63
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2024-07-18 10:09:01
(2 years ago)
Web Spam
๐บ๐ธ
TPI-Abuse
2024-07-16 13:01:25
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 94.140.115.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 16 09:01:18.503138 2024] [security2:error] [pid 8948] [client 94.140.115.63:49090] [client 94.140.115.63] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jbsellsre.us"] [uri "/.git/config"] [unique_id "ZpZvHhnI2xEuXcSVncafNQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack