๐บ๐ธ
kosada.com
2026-08-26 20:24:30
(1 week ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ซ๐ท
Sklurk
2026-08-24 00:06:54
(1 week ago)
Web App Attack
Web App Attack
๐ฉ๐ช
Inamin
2026-07-28 01:11:51
(1 month ago)
109.107.224.245 - - [28/Jul/2026:04:25:15 +0800] "GET /index.php?days=30&from=20260514084136&hidemys ...
show more
109.107.224.245 - - [28/Jul/2026:04:25:15 +0800] "GET /index.php?days=30&from=20260514084136&hidemyself=1&limit=500&title=%E7%89%B9%E6%AE%8A%3A%E8%BF%91%E6%9C%9F%E8%AE%8A%E5%8B%95&userExpLevel=registered HTTP/2.0" 403 153 "-" "Mozilla/5.0 (X11; Linux i686; rv:1.9.7.20) Gecko/4699-06-07 14:54:02.161972 Firefox/9.0"
...
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-26 09:31:49
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 109.107.224.245 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 109.107.224.245 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 05:31:43.341944 2026] [security2:error] [pid 2977349:tid 2977349] [client 109.107.224.245:52568] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lertap5.com|F|2"] [data ".lertap5.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lertap5.com"] [uri "/Nursing2017/HTML/www.lertap5.com"] [unique_id "amXT_6qVri1iWPntBcXq1wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-11 16:01:13
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 109.107.224.245 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 109.107.224.245 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 11 12:01:07.274155 2026] [security2:error] [pid 700238:tid 700260] [client 109.107.224.245:21649] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bbpuertadelsol.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bbpuertadelsol.com"] [uri "/greenpanelscr.com"] [unique_id "adpwQ58ffz8K3zwXYJ4SmAAAAMw"], referer: https://bbpuertadelsol.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
stechusa
2026-03-29 21:37:50
(5 months ago)
[Askari] | Behavior: Holding server worker, HTTP/1.1 over TLS, Targeting specific pages, Outdated br ...
show more
[Askari] | Behavior: Holding server worker, HTTP/1.1 over TLS, Targeting specific pages, Outdated browser, Concurrent page load during attack
show less
Bad Web Bot
DDoS Attack
๐บ๐ธ
stechusa
2026-03-29 21:37:50
(5 months ago)
ELEVATED_THREAT | 33 IPs targeting /brand.html | Facet request during elevated threat (facet_ratio=0 ...
show more
ELEVATED_THREAT | 33 IPs targeting /brand.html | Facet request during elevated threat (facet_ratio=0.79, unique_ips=240) | HTTP/1.1 over TLS (elevated=True)
show less
Bad Web Bot
DDoS Attack
๐บ๐ธ
kosada.com
2026-03-23 18:15:38
(5 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
Anonymous
2026-01-21 07:27:02
(7 months ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2025-11-16 14:36:32
(9 months ago)
scanning http requests from known botnet
Web App Attack