๐ต๐ฑ
mscode.pl
2026-08-30 16:30:44
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from LT.
Action taken: CHALLENGE
ASN: 61272 (UAB Bacloud)
...
show more
Triggered Cloudflare WAF (firewallCustom) from LT.
Action taken: CHALLENGE
ASN: 61272 (UAB Bacloud)
Protocol: HTTP/1.1 (GET method)
Zone: gotenberg.selify.io
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ฆ๐บ
A.i.D.A.N.N
2026-08-30 15:45:02
(1 day ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐บ๐ธ
Gabriel Camargo
2026-08-30 15:01:56
(1 day ago)
158.173.79.51 - - [30/Aug/2026:10:01:55 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT ...
show more
158.173.79.51 - - [30/Aug/2026:10:01:55 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
158.173.79.51 - - [30/Aug/2026:10:01:55 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
158.173.79.51 - - [30/Aug/2026:10:01:56 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Brute-Force
SSH
๐บ๐ธ
MPL
2026-08-30 14:41:54
(2 days ago)
tcp/80 (96 or more attempts)
Port Scan
๐ฎ๐ฑ
Ilop
2026-08-09 01:45:38
(3 weeks ago)
[v5-99] Firewall dropped 3 unsolicited packet(s) proto=tcp to port(s) 443 from 158.173.79.51 โ WAN s ...
show more
[v5-99] Firewall dropped 3 unsolicited packet(s) proto=tcp to port(s) 443 from 158.173.79.51 โ WAN scan (automated sensor)
show less
Port Scan
๐ฎ๐ฑ
Ilop
2026-08-08 00:10:40
(3 weeks ago)
[v5-99] Firewall dropped 3 unsolicited packet(s) proto=tcp to port(s) 443 from 158.173.79.51 โ WAN s ...
show more
[v5-99] Firewall dropped 3 unsolicited packet(s) proto=tcp to port(s) 443 from 158.173.79.51 โ WAN scan (automated sensor)
show less
Port Scan
๐ฎ๐ฑ
Ilop
2026-08-06 10:01:10
(3 weeks ago)
[v5-99] Firewall dropped 3 unsolicited packet(s) proto=tcp to port(s) 443 from 158.173.79.51 โ WAN s ...
show more
[v5-99] Firewall dropped 3 unsolicited packet(s) proto=tcp to port(s) 443 from 158.173.79.51 โ WAN scan (automated sensor)
show less
Port Scan
๐ฎ๐ฑ
Ilop
2026-08-05 08:30:44
(3 weeks ago)
[v5-99] Firewall dropped 3 unsolicited packet(s) proto=tcp to port(s) 443 from 158.173.79.51 โ WAN s ...
show more
[v5-99] Firewall dropped 3 unsolicited packet(s) proto=tcp to port(s) 443 from 158.173.79.51 โ WAN scan (automated sensor)
show less
Port Scan
๐ฆ๐บ
oncord
2026-06-17 03:10:27
(2 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-06-05 07:38:41
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.79.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.79.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 03:38:34.195412 2026] [security2:error] [pid 9951:tid 9951] [client 158.173.79.51:50501] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||www.cottrel.com|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "www.cottrel.com"] [uri "/license.txt"] [unique_id "aiJ8-pmtheu6z79LBbZgGAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 07:13:32
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.79.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.79.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 03:13:29.095213 2026] [security2:error] [pid 2423:tid 2423] [client 158.173.79.51:45581] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||compassionfatigue.org|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "compassionfatigue.org"] [uri "/license.txt"] [unique_id "aiJ3Ge5X5ou-MST3Pxo9pgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 05:01:51
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.79.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.79.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 01:01:46.293230 2026] [security2:error] [pid 2903:tid 2903] [client 158.173.79.51:50465] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||c2cdisasterresponse.org|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "c2cdisasterresponse.org"] [uri "/license.txt"] [unique_id "aiJYOn6zWdbv-AAIHAsVUgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 03:40:16
(2 months ago)
(mod_security) mod_security (id:210801) triggered by 158.173.79.51 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210801) triggered by 158.173.79.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 23:40:12.014591 2026] [security2:error] [pid 6843:tid 6843] [client 158.173.79.51:21559] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "paros" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "17"] [id "210801"] [rev "2"] [msg "COMODO WAF: Request Indicates a Security Scanner Scanned the Site||bencramer.org|F|2"] [data "mozilla/5.0 (windows nt 5.1; rv:22.0) gecko/20100101 firefox/22.0 paros/3.2.13"] [severity "CRITICAL"] [tag "CWAF"] [tag "Agents"] [hostname "bencramer.org"] [uri "/license.txt"] [unique_id "aiJFHI9wDZ8lgVby9W5JTAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-28 23:01:01
(3 months ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
oncord
2026-05-28 16:29:56
(3 months ago)
Form spam
Web Spam