Anonymous
2026-10-06 08:41:01
(11 hours ago)
Malicious Probing
Bad Web Bot
๐บ๐ธ
etu brutus
2026-10-04 20:48:36
(1 day ago)
103.214.69.185 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host
๐ฉ๐ช
Vegascosmetics
2026-10-03 17:24:44
(3 days ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after locale-probe / error-handler fuzzing ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after locale-probe / error-handler fuzzing against ASP.NET shop. Evidence: LOCALE-PROBE: MissingSlash (/ES19537cart)
show less
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-30 06:20:08
(6 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Charlesiv
2026-09-26 12:05:22
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: BLOCK
ASN: 213535 (YottaSrc)
Protoc ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: BLOCK
ASN: 213535 (YottaSrc)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-09-26T10:58:58Z
Ray ID: a411c1ab6f8546f9
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125 Safari/537.36
show less
Bad Web Bot
๐ฉ๐ช
bescared
2026-09-25 08:53:40
(1 week ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
SiliSoftware
2026-09-12 07:42:56
(3 weeks ago)
/checkout
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-12 04:20:09
(3 weeks ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-11 04:21:15
(3 weeks ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐จ๐ฆ
polycoda
2026-09-07 15:26:09
(4 weeks ago)
๐ Probes for tons of inexistent files and/or PHP scripts
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2026-09-07 13:17:13
(4 weeks ago)
103.214.69.185 - - [07/Sep/2026:15:17:12 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2 ...
show more
103.214.69.185 - - [07/Sep/2026:15:17:12 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2.0" 404 15873 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/125.0 Safari/537.36"
103.214.69.185 - - [07/Sep/2026:15:17:12 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2.0" 404 15873 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/125.0 Safari/537.36"
103.214.69.185 - - [07/Sep/2026:15:17:12 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2.0" 404 15953 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/125.0 Safari/537.36"
103.214.69.185 - - [07/Sep/2026:15:17:13 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2.0" 404 15953 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/125.0 Safari/537.36"
...
show less
Web App Attack
Hacking
๐ช๐ธ
el-brujo
2026-09-07 12:12:30
(4 weeks ago)
103.214.69.185 - - [07/Sep/2026:14:12:28 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2 ...
show more
103.214.69.185 - - [07/Sep/2026:14:12:28 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2.0" 404 15912 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/125.0 Safari/537.36"
103.214.69.185 - - [07/Sep/2026:14:12:28 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2.0" 404 15912 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/125.0 Safari/537.36"
103.214.69.185 - - [07/Sep/2026:14:12:29 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2.0" 404 15992 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/125.0 Safari/537.36"
103.214.69.185 - - [07/Sep/2026:14:12:29 +0200] "GET /Telerik.Web.UI.WebResource.axd?type=rau HTTP/2.0" 404 15992 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/125.0 Safari/537.36"
...
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-07 12:09:27
(4 weeks ago)
(mod_security) mod_security (id:210730) triggered by 103.214.69.185 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 103.214.69.185 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 08:09:23.420834 2026] [security2:error] [pid 6743:tid 6743] [client 103.214.69.185:56100] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cruisingforsex.com|F|2"] [data ".web.ui.webresource.axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cruisingforsex.com"] [uri "/Telerik.Web.UI.WebResource.axd"] [unique_id "ap6pc3RckGN-CPtPiodenQAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-07 11:45:59
(4 weeks ago)
URL file extension is restricted by policy. String match within ".asa/ .asax/ .ascx/ .axd/ .backup/ ...
show more
URL file extension is restricted by policy. String match within ".asa/ .asax/ .ascx/ .axd/ .backup/ .bak/ .bat/ .cdx/ .cer/ .cfg/ .cmd/ .com/ .config/ .conf/ .cs/ .csproj/ .csr/ .dat/ .db/ .dbf/ .dll/ .dos/ .htr/ .htw/ .ida/ .idc/ .idq/ .inc/ .ini/ .key/ .licx/ .lnk/ .log/ .mdb/ .old/ .pass/ .pdb/ .pol/ .printer/ .pwd/ .rdb/ .resources/ .resx/ .sql/ .swp/ .sys/ .vb/ .vbs/ .vbproj/ .vsdisco/ .webinfo/ .xsd/ .xsx/" at TX:extension. (920440-133)
show less
Hacking
๐บ๐ธ
ipblock.com
2026-09-07 08:11:00
(4 weeks ago)
IPBlock protected site ID [4055-d][s=02].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack