๐ฎ๐ฉ
hermawan
2026-09-19 18:34:35
(1 day ago)
[Sun Sep 20 01:34:33.271150 2026] [security2:error] [pid 69693:tid 140495921587904] [client 16.216.8 ...
show more
[Sun Sep 20 01:34:33.271150 2026] [security2:error] [pid 69693:tid 140495921587904] [client 16.216.88.122:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "bot" at REQUEST_HEADERS:user-agent. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "273"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: bot found within REQUEST_HEADERS:user-agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Reflectionbot/1.0; +https://reflection.ai/bot) Chrome/151.0.0.0 Safari/537.36 request_line = GET /images/PPID/Jenis_Informasi/Surat_Keputusan_Kepala_Stasiun_Klimatologi_Kelas_II_Jawa_Timur_NOMOR_KEP_019b_KJTM_VI_2025_Tentang_Pembentukan_Tim_Pejabat_Pengelola_Informasi_dan_Dokumentasi_Website_Dan_Media_Sosial_Stasiun_Klimatologi_Kelas_II_Jawa_Timur.pdf HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/PPID/Jenis_Informasi/Surat_Keputusan_Kepala_Stasiun_Klimatologi_Ke
...
show less
Email Spam
Hacking
๐บ๐ธ
etu brutus
2026-09-19 08:36:06
(1 day ago)
16.216.88.122 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host
Anonymous
2026-09-19 02:09:39
(1 day ago)
16.216.88.122 www.rolistore.com - [17/Sep/2026:18:08:12 -0600] "GET /silla-gamer-razer-iskur-v2-x?ta ...
show more
16.216.88.122 www.rolistore.com - [17/Sep/2026:18:08:12 -0600] "GET /silla-gamer-razer-iskur-v2-x?tag=razer HTTP/1.1" 200 711191 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Reflectionbot/1.0; +https://reflection.ai/bot) Chrome/151.0.0.0 Safari/537.36"\n16.216.88.122 www.rolistore.com - [18/Sep/2026:14:09:37 -0600] "GET /microfono-blue-snowball-blanco HTTP/1.1" 200 735904 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Reflectionbot/1.0; +https://reflection.ai/bot) Chrome/151.0.0.0 Safari/537.36"\n16.216.88.122 www.rolistore.com - [18/Sep/2026:20:09:38 -0600] "GET /audifonos-skullcandy-dime3-glow-naranja?tag=audifonos HTTP/1.1" 200 750877 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Reflectionbot/1.0; +https://reflection.ai/bot) Chrome/151.0.0.0 Safari/537.36"
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-18 18:52:49
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 16.216.88.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 16.216.88.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 14:52:43.555378 2026] [security2:error] [pid 29594:tid 29594] [client 16.216.88.122:0] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||swarnar.com|F|2"] [data ".blogspot.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "swarnar.com"] [uri "/justswarna.blogspot.com"] [unique_id "aq2Ie5zdLHjtJ_6gy3GVWgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฎ
extremevital
2026-09-18 15:20:05
(2 days ago)
...
Bad Web Bot
๐ฎ๐ฉ
David Koswari
2026-09-18 05:31:00
(2 days ago)
REQ_BLOCKED_ACL
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
๐ฉ๐ช
netclix.gr
2026-09-17 23:14:08
(2 days ago)
(PERMBLOCK) 16.216.88.122 (US/United States/-) has had more than 2 temp blocks in the last 604800 se ...
show more
(PERMBLOCK) 16.216.88.122 (US/United States/-) has had more than 2 temp blocks in the last 604800 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ฉ๐ช
milcraft.nl
2026-09-17 20:15:48
(3 days ago)
Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi ...
show more
Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi patterns: filter_, add-to-cart=, orderby=, product_count=. Activity is consistent with high-volume request abuse.
show less
DDoS Attack
Web App Attack
๐ท๐บ
Mga Admin
2026-09-17 19:59:40
(3 days ago)
16.216.88.122 - - [18/Sep/2026:02:59:38 +0700] "GET /analysis/theta/ws?p=5e-8&r2=0.9&rs-id=rs2838367 ...
show more
16.216.88.122 - - [18/Sep/2026:02:59:38 +0700] "GET /analysis/theta/ws?p=5e-8&r2=0.9&rs-id=rs2838367 HTTP/1.1" 400 34 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Reflectionbot/1.0; +https://reflection.ai/bot) Chrome/151.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-09-17 12:12:09
(3 days ago)
Suspicious activity detected in web server access logs
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 11:39:18
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 16.216.88.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 16.216.88.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 07:39:11.124624 2026] [security2:error] [pid 22064:tid 22064] [client 16.216.88.122:18433] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.coolwebsites.org|F|2"] [data ".creaf.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.coolwebsites.org"] [uri "/www.creaf.com"] [unique_id "aqvRXyLj0i1mi9BmYmAPPAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ChamberofCommerce.com
2026-09-17 10:58:56
(3 days ago)
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested ...
show more
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested Before Block:226
show less
Bad Web Bot
Anonymous
2026-09-17 10:00:55
(3 days ago)
IP matched detection query 50 and more bad rqs apache.
Hacking
Bad Web Bot
Brute-Force
Web App Attack
๐ฉ๐ช
netclix.gr
2026-09-17 06:02:38
(3 days ago)
(bot_qv) Bot Scraping QuickView 16.216.88.122 (US/United States/-): 1 in the last 4600 secs; Ports: ...
show more
(bot_qv) Bot Scraping QuickView 16.216.88.122 (US/United States/-): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 16.216.88.122 - - [17/Sep/2026:09:02:32 +0300] "GET /index.php?dispatch=products.quick_view&n_items=11296%2C11327%2C11298%2C11321%2C11319%2C11291%2C12245%2C12239%2C12234%2C12233%2C12236%2C12658%2C11279%2C11290%2C11293%2C11324%2C11285%2C11320%2C12928%2C11287&prev_url=index.php%3Fdispatch%3Dcategories.view%26category_id%3D100&product_id=11327 HTTP/2.0" 302 0 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Reflectionbot/1.0; +https://reflection.ai/bot) Chrome/151.0.0.0 Safari/537.36"
show less
Port Scan
Anonymous
2026-09-17 04:20:38
(3 days ago)
Web attack
Bad Web Bot
Web App Attack