ban-reviewer auto report; ip=142.111.93.42; scenario=http:scan; verdict=valid_ban; confidence=0.85; ...
show moreban-reviewer auto report; ip=142.111.93.42; scenario=http:scan; verdict=valid_ban; confidence=0.85; categories=14,15,18,22; active_decisions=1; lookback_decisions=1; nginx_requests=0; appsec_matches=0; auth_events=0; kernel_events=0; signals=IP flagged for 'Port Scan' (category 14) in abuseipdb; Scan behavior detected via http:scan scenario; Decision is within expected time window for scan detection
show less
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET INFO Request to ...
show moreThis IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET INFO Request to Hidden Environment File - Inbound). Ip 142.111.93.42 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2025-12-18 14:58:39.415357094 +0000 UTC
show less
[Wed Sep 03 06:28:16.735559 2025] [security2:error] [pid 710559:tid 140260604372672] [client 142.111 ...
show more[Wed Sep 03 06:28:16.735559 2025] [security2:error] [pid 710559:tid 140260604372672] [client 142.111.93.42:56213] ModSecurity: Access denied with code 403 (phase 1). Match of "ipMatch 103.166.156.58" against "REMOTE_ADDR" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "372"] [id "440006"] [msg "Connection Close Header"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: close found within REMOTE_ADDR: 142.111.93.42 request_line = GET /index.php/prediksi-iklim/prediksi-bulanan/sifat-hujan/3-bulan-ke-depan/555562114-prediksi-bulanan-sifat-hujan-bulan-oktober-tahun-2025-update-dari-analisis-bulan-juni-tahun-2025-di-provinsi-jawa-timur HTTP/1.1 Request URI RAW = /index.php/prediksi-iklim/prediksi-bulanan/sifat-hujan/3-bulan-ke-depan/555562114-prediksi-bulanan-sifat-huja..."] [hostname "staklim-malang.info"] [uri "/index.php/prediksi-iklim/prediksi-bulanan/sifat-hujan/3-bu
...
show less
Malicious IP detected by WAF with anomaly score 10.0. Attack types: Exposure of environment file (.e ...
show moreMalicious IP detected by WAF with anomaly score 10.0. Attack types: Exposure of environment file (.env), Timestamp deviates by 1.0 hours, Suspicious short random path (+1 more). Activity: 340 requests to 4 URLs. Period: 2025-08-14 10:05:35 - 2025-08-14 10:05:35 (America/Bogota). Origin: US. Source: Automated WAF log analysis.
show less
This IP address has been identified as generating artificial traffic on websites after purchasing a ...
show moreThis IP address has been identified as generating artificial traffic on websites after purchasing a specific service from a Fiverr gig. User-Agent & Referrer: Mozilla/5.0 (iPhone; CPU iPhone OS 14_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/81.0.4044.138 Mobile/15E148 Safari/604.1 - https://www.facebook.com/PrinceSamlet
show less
This IP address has been identified as generating artificial traffic on websites after purchasing a ...
show moreThis IP address has been identified as generating artificial traffic on websites after purchasing a specific service from a Fiverr gig. User-Agent & Referrer: Mozilla/5.0 (iPhone; CPU iPhone OS 14_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/81.0.4044.138 Mobile/15E148 Safari/604.1 - https://www.facebook.com/PrinceSamlet
show less
Bad Web Bot
Showing 1 to
9
of 9 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ