๐ต๐ฑ
bmino.pl
2026-07-30 12:06:48
(2 days ago)
Autoban IP(2): 188.72.40.31 - Hostname: Experience Infinity technology Internet Service Company Ltd. ...
show more
Autoban IP(2): 188.72.40.31 - Hostname: Experience Infinity technology Internet Service Company Ltd. - City: Kut - Region: Wasit Governorate - Country: Iraq - Location: 32.5163,45.8159 - Organization: Tarik Al-thuraya Company Communications Service Ltd - failed attempts.
show less
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-07-29 01:26:31
(3 days ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nest ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nesting / CPU-drain risk). Evidence: DEEP ATTACK: Recursive currentUrl nesting detected
show less
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
kosada.com
2026-07-24 19:19:23
(1 week ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
kosada.com
2026-06-29 11:17:39
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
Anonymous
2026-06-03 06:25:11
(1 month ago)
Attac
Brute-Force
Anonymous
2026-05-08 19:28:33
(2 months ago)
Unauthorized connection to Telnet port 23
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-20 19:43:05
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 188.72.40.31 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 188.72.40.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 15:43:00.000759 2026] [security2:error] [pid 1217:tid 1217] [client 188.72.40.31:50227] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Cedar Hill/Thumbs.db"] [unique_id "aeaBw5HWFnzG99-iDPtJZAAAAAI"], referer: https://vitalitywebb.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 15:42:09
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 188.72.40.31 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 188.72.40.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 11:42:01.725999 2026] [security2:error] [pid 7998:tid 7998] [client 188.72.40.31:26773] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.dismain.com|F|2"] [data ".aigclassic.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.dismain.com"] [uri "/www.aigclassic.com"] [unique_id "acalSevmJ7aooYIOj5xiHQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
stechusa
2026-03-22 18:09:40
(4 months ago)
[Askari] ELEVATED_THREAT | 220 IPs targeting /brand.html | URL template shared by 8 IPs: /brand.html ...
show more
[Askari] ELEVATED_THREAT | 220 IPs targeting /brand.html | URL template shared by 8 IPs: /brand.html?bulb_shape_type=*&bulb_type=*&glass=*&mode=list&p=* | Facet request during elevated threat (facet_ratio=0.95, unique_ips=410) | Signals: facet_param_template, concurrent_facet_load, path_concentration, outdated_user_agent, recv_q_stall
show less
Web App Attack
Hacking
Web Spam
๐บ๐ธ
stechusa
2026-03-22 18:09:40
(4 months ago)
ELEVATED_THREAT | 220 IPs targeting /brand.html | URL template shared by 8 IPs: /brand.html?bulb_sha ...
show more
ELEVATED_THREAT | 220 IPs targeting /brand.html | URL template shared by 8 IPs: /brand.html?bulb_shape_type=*&bulb_type=*&glass=*&mode=list&p=* | Facet request during elevated threat (facet_ratio=0.95, unique_ips=410)
show less
Web App Attack
Hacking
Web Spam
๐จ๐ญ
backslash
2026-02-28 16:33:11
(5 months ago)
block ruleset Badbot using very old user-agents 5CF3CDB778C7D82564405B86B9242E612F378C68
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-02-13 10:17:43
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 188.72.40.31 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 188.72.40.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 05:17:35.115299 2026] [security2:error] [pid 2649628:tid 2649628] [client 188.72.40.31:20209] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Himolla-ZeroStress-Recliner/Images/Sinatra/Thumbs.db"] [unique_id "aY76P1J0vpPhyQW3eH_pMAAAAAQ"], referer: https://vitalitywebb.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
RAP
2026-01-15 01:11:02
(6 months ago)
2026-01-15 01:11:02 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
๐จ๐ญ
backslash
2026-01-02 17:30:15
(6 months ago)
block ruleset Badbot using very old user-agents 5CF3CDB778C7D82564405B86B9242E612F378C68
Bad Web Bot
๐จ๐ฆ
polycoda
2025-12-29 14:29:18
(7 months ago)
๐ฅถ Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
DDoS Attack