๐บ๐ฆ
URAN Publishing Service
2026-09-16 01:58:45
(1 day ago)
[16/Sep/2026:04:58:44 +0300] -- 118.24.9.72 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-acc ...
show more
[16/Sep/2026:04:58:44 +0300] -- 118.24.9.72 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-acc.php HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ธ๐ฌ
Cloudkul Cloudkul
2026-09-15 17:54:24
(1 day ago)
Attempted Brute Force on our application
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 15:11:26
(2 days ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-15 15:02:40
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-15 14:42:40
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 10:42:32.306753 2026] [security2:error] [pid 23464:tid 23464] [client 118.24.9.72:48356] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||andrejblatnik.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "andrejblatnik.com"] [uri "/okok.cer"] [unique_id "aqlZWIAC7xWAk_D9iAlksgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 11:54:32
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 07:54:25.124635 2026] [security2:error] [pid 26848:tid 26859] [client 118.24.9.72:45064] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||alicefaye.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "alicefaye.com"] [uri "/okok.cer"] [unique_id "aqfgcYuZ54HHGg0vcqa9PAAAAcc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 12:03:32
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 08:03:26.199377 2026] [security2:error] [pid 25060:tid 25060] [client 118.24.9.72:51622] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||airintakesonline.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "airintakesonline.com"] [uri "/okok.cer"] [unique_id "aqaRDgODQ76wajKMjYBRigAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
joe-abuse
2026-09-13 01:32:37
(4 days ago)
Automated report from fail2ban on www.fitzgerald.eu. Jail: apache-404. First seen: 2026-09-11 05:00: ...
show more
Automated report from fail2ban on www.fitzgerald.eu. Jail: apache-404. First seen: 2026-09-11 05:00:25. Events: 1. Reported by ipdb-security/fitzgerald.eu
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 09:03:28
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 05:03:21.526330 2026] [security2:error] [pid 23629:tid 23629] [client 118.24.9.72:60486] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||adrienberthaud.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "adrienberthaud.com"] [uri "/okok.cer"] [unique_id "aqUVWSpnLmB0_eNyFHVdLgAAAD0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
joe-abuse
2026-09-12 01:31:08
(5 days ago)
Automated report from fail2ban on www.fitzgerald.eu. Jail: apache-404. First seen: 2026-09-11 05:00: ...
show more
Automated report from fail2ban on www.fitzgerald.eu. Jail: apache-404. First seen: 2026-09-11 05:00:25. Events: 1. Reported by ipdb-security/fitzgerald.eu
show less
Web App Attack
๐ซ๐ท
IRISIO
2026-09-11 21:01:24
(5 days ago)
scans/SQL injection/spam posts : 1602 queries
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-11 19:59:31
(5 days ago)
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 118.24.9.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 15:59:23.695742 2026] [security2:error] [pid 17535:tid 17535] [client 118.24.9.72:59015] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||acmyles.com|F|2"] [data ".cer"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "acmyles.com"] [uri "/okok.cer"] [unique_id "aqRdm3u0f8fvKGDUQSk50gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-11 15:35:03
(6 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-06 17:54:34
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ซ๐ท
โจ
2026-09-06 01:38:13
(1 week ago)
Domain : urmston.net
Rule : admin
2026-09-06 01:36:36 ***hidden-privacy*** GET /admin/plugin/uploadi ...
show more
Domain : urmston.net
Rule : admin
2026-09-06 01:36:36 ***hidden-privacy*** GET /admin/plugin/uploadify/btn.gif - 443 - 118.24.9.72 HTTP/1.1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36 - www.urmston.net 404 0 2 1342 337 262 - -
show less
Hacking
SQL Injection
Brute-Force