|
๐ช๐ธ
10dencehispahard SL
|
|
Unauthorized login attempts [ accesslogs]
|
Brute-Force
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 28 12:35:50.510000 2024] [security2:error] [pid 752452] [client 94.46.167.5:6013] [client 94.46.167.5] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||usbea.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "usbea.com"] [uri "/backup/dump.sql"] [unique_id "ZgWcZnraqKXyiRgOmu1cFgAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ณ๐ฑ
Viper
|
|
Wed Mar 20 21:01:52 2024 94.46.167.5:6672 TLS Error: TLS handshake failed
Wed Mar 20 21:04:41 2024 9 ...
show more
Wed Mar 20 21:01:52 2024 94.46.167.5:6672 TLS Error: TLS handshake failed
Wed Mar 20 21:04:41 2024 94.46.167.5:6672 TLS Error: TLS handshake failed
Wed Mar 20 21:05:41 2024 94.46.167.5:6672 TLS Error: TLS handshake failed
Wed Mar 20 21:06:41 2024 94.46.167.5:6672 TLS Error: TLS handshake failed
Wed Mar 20 21:07:41 2024 94.46.167.5:6672 TLS Error: TLS handshake failed
...
show less
|
Brute-Force
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 13 02:19:43.892467 2024] [security2:error] [pid 3186] [client 94.46.167.5:35011] [client 94.46.167.5] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||equine-essence.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "equine-essence.com"] [uri "/bak/sql.sql"] [unique_id "ZfFFf-ZXR4f9wWlBYtewggAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
hbrks
|
|
HEAD http://techtronicgambia.com/backup/techtronicgambia.com.rar
statusCode: 503
|
Web Spam
Hacking
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 13 01:46:09.239378 2024] [security2:error] [pid 30448] [client 94.46.167.5:4683] [client 94.46.167.5] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||isitel.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "isitel.com"] [uri "/back/mysql.sql"] [unique_id "ZfE9ob__g_pWjZBIC4TF7wAAAA0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 09 03:50:05.544635 2024] [security2:error] [pid 2962] [client 94.46.167.5:4937] [client 94.46.167.5] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lusocleaningservice.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lusocleaningservice.com"] [uri "/bak/www.sql"] [unique_id "ZewivYCXOZhT9YEt3g-bAwAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
hbrks
|
|
HEAD http://leralmedia.com/www.sql
statusCode: 503
|
Web Spam
Hacking
Bad Web Bot
|
|
|
๐ฉ๐ช
hbrks
|
|
HEAD http://leralmedia.com/old/leralmedia.com.tar.gz
statusCode: 503
|
Web Spam
Hacking
Bad Web Bot
|
|
|
๐ฉ๐ช
hbrks
|
|
HEAD http://p4u.xyz/old/directory.tar.gz
statusCode: 503
|
Web Spam
Hacking
Bad Web Bot
|
|
|
๐ฉ๐ช
hbrks
|
|
HEAD http://leralmedia.com/backup/sftp-config.json
statusCode: 503
|
Web Spam
Hacking
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the ...
show more
(mod_security) mod_security (id:210730) triggered by 94.46.167.5 (browsi.cheecoluter.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 02 20:46:06.903349 2024] [security2:error] [pid 2740] [client 94.46.167.5:10793] [client 94.46.167.5] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||hodlmoser.com|F|2"] [data ".com.sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hodlmoser.com"] [uri "/old/hodlmoser.com.sql"] [unique_id "ZePWXrbc1q5PAPfFDRlPPQAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ช๐ธ
10dencehispahard SL
|
|
Unauthorized login attempts [ accesslogs]
|
Brute-Force
|
|
|
๐ฉ๐ช
hbrks
|
|
HEAD http://ncs.guru/back/full_backup.zip
statusCode: 503
|
Web Spam
Hacking
Bad Web Bot
|
|
|
๐ฉ๐ช
hbrks
|
|
HEAD http://ncs.guru/bak/application.zip
statusCode: 503
|
Web Spam
Hacking
Bad Web Bot
|
|