๐บ๐ธ
TPI-Abuse
2026-06-16 13:22:39
(19 hours ago)
(mod_security) mod_security (id:210730) triggered by 183.207.48.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 183.207.48.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 09:22:32.751299 2026] [security2:error] [pid 12674:tid 12674] [client 183.207.48.143:32248] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.phantomkennels.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.phantomkennels.com"] [uri "/[email protected] "] [unique_id "ajFOGJ_Yw_O5N_ddfG04TQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Gabriel Camargo
2026-06-14 13:48:53
(2 days ago)
183.207.48.143 - - [14/Jun/2026:08:48:50 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows N ...
show more
183.207.48.143 - - [14/Jun/2026:08:48:50 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36"
183.207.48.143 - - [14/Jun/2026:08:48:52 -0500] "GET /js/email.js HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36"
183.207.48.143 - - [14/Jun/2026:08:48:53 -0500] "GET /js/axios.min.js HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36"
...
show less
Brute-Force
SSH
๐ซ๐ฎ
stinpriza
2026-06-14 10:22:14
(2 days ago)
Web App Attack
Web App Attack
Anonymous
2026-06-04 18:58:20
(1 week ago)
Bad Web Bot
๐จ๐ญ
backslash
2026-05-15 09:36:00
(1 month ago)
block ruleset 43A7B4C84F1C495B355A170A3ABE0D75374A5E0D
Bad Web Bot
๐จ๐ณ
ThreatBook.io
2026-05-10 23:39:48
(1 month ago)
ThreatBook Intelligence: Zombie,Dynamic IP more details on https://threatbook.io/ip/183.207.48.143
2 ...
show more
ThreatBook Intelligence: Zombie,Dynamic IP more details on https://threatbook.io/ip/183.207.48.143
2026-05-10 12:15:29 /docs/api/index.html
2026-05-10 12:15:29 /tomcat.css
2026-05-10 12:15:34 /docs/realm-howto.html
2026-05-10 12:15:34 /manager-howto.html
2026-05-10 12:15:34 /docs/jndi-datasource-examples-howto.html
2026-05-10 12:15:29 /docs/deployer-howto.html
2026-05-10 12:15:29 /
2026-05-10 12:15:29 /favicon.ico
2026-05-10 12:15:29 /docs/changelog.html
show less
Web App Attack
๐ณ๐ฑ
RvdH
2026-05-10 02:19:11
(1 month ago)
Ignores robots.txt and noindex, nofollow meta/header directives (Honeypot).
UserAgent: Mozilla/5.0 ...
show more
Ignores robots.txt and noindex, nofollow meta/header directives (Honeypot).
UserAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
webgobe
2026-04-25 03:00:57
(1 month ago)
wew-Joomla User : try to access forms...
Hacking
Anonymous
2026-04-15 14:02:32
(2 months ago)
Web attack
Bad Web Bot
Web App Attack
๐ช๐ธ
librebit
2026-04-14 14:03:20
(2 months ago)
Brute force
Brute-Force
๐บ๐ธ
myagent.site
2026-04-14 01:44:13
(2 months ago)
Blocking for trying to access an exploit file: /myagent.site
Hacking
๐ฎ๐ช
Jim Keir
2026-04-09 21:47:17
(2 months ago)
2026-04-09 21:47:16 183.207.48.143 File scanning, blocking 183.207.48.143 for 5 minutes
Web App Attack
Anonymous
2026-04-03 08:02:03
(2 months ago)
Web attack
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 08:03:34
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 183.207.48.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 183.207.48.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 04:03:28.807817 2026] [security2:error] [pid 18261:tid 18261] [client 183.207.48.143:44722] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.citystreetsalon.com|F|2"] [data ".fionnardesign.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.citystreetsalon.com"] [uri "/www.fionnardesign.com"] [unique_id "ac4i0Nj6hqyk4vyNWMFejgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-03-31 11:55:55
(2 months ago)
Blocking for trying to access an exploit file: /myagent.site
Hacking