๐จ๐ญ
backslash
2026-06-13 16:48:02
(1 week ago)
block ruleset 7B8FD6B12C4E12B6F0DAE02E53C0597FBEDDF5BC
Bad Web Bot
๐จ๐ญ
Origon
2026-06-05 09:12:19
(2 weeks ago)
http-bad-user-agent - IP: 31.57.82.211 - time="2026-06-05T11:12:18+02:00" level=info msg="(555f66b4 ...
show more
http-bad-user-agent - IP: 31.57.82.211 - time="2026-06-05T11:12:18+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-bad-user-agent by ip 31.57.82.211 (CA/9009) : 4h ban on Ip 31.57.82.211" module=db
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-01 14:42:15
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 31.57.82.211 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 31.57.82.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 10:29:12.086914 2026] [security2:error] [pid 27071:tid 27090] [client 31.57.82.211:50317] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.staging.kettlehill.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.staging.kettlehill.com"] [uri "/db_backup.sql"] [unique_id "ac0ruFOIKgil6C6bVy4d3gAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
cheatmaster.store
2026-02-25 23:28:29
(3 months ago)
Automated report: This IP address has been identified as an active public open proxy.
Classification ...
show more
Automated report: This IP address has been identified as an active public open proxy.
Classification: Open Proxy | Spoofing | VPN/Anonymizer | Bad Web Bot.
Country: Canada
Threat level: High. This host is listed across multiple public proxy databases and poses a risk of abuse, credential stuffing, scraping, and spoofed traffic.
Reported by automated threat intelligence pipeline. Do not whitelist without manual verification.
show less
Web Spam
Port Scan
Web App Attack
Anonymous
2025-09-14 22:52:00
(9 months ago)
$f2bV_matches
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-07-01 09:01:45
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 31.57.82.211 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 31.57.82.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 01 05:01:39.439425 2025] [security2:error] [pid 16228:tid 16233] [client 31.57.82.211:42221] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.kettlehill.net|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.kettlehill.net"] [uri "/404.php.bak"] [unique_id "aGOj8_XXxlh0vkEOH8y-IAAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-30 22:00:19
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 31.57.82.211 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 31.57.82.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 30 18:00:16.287345 2025] [security2:error] [pid 723583:tid 723583] [client 31.57.82.211:43911] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.nbcnewsradio.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.nbcnewsradio.com"] [uri "/autodiscover.nbcnewsradio.com/errors.log"] [unique_id "aDoqcOn1Ij0JxXf_u1iF4wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-05-01 08:40:12
(1 year ago)
| SQL injection attempt.
Hacking
SQL Injection
Web App Attack
Anonymous
2025-03-08 22:45:43
(1 year ago)
alibaba cloud ddos like web scan
Bad Web Bot
๐ฆ๐บ
MAGIC
2025-03-08 09:42:16
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2025-03-07 16:05:50
(1 year ago)
Illegal actions on webapp
Hacking
Web App Attack
Anonymous
2025-03-01 16:21:08
(1 year ago)
alibaba cloud ddos like web scan
Bad Web Bot
Anonymous
2025-02-21 03:59:56
(1 year ago)
Illegal actions on webapp
Hacking
Web App Attack
Anonymous
2025-02-18 00:12:37
(1 year ago)
alibaba cloud ddos like web scan
Bad Web Bot
Anonymous
2025-02-10 20:05:58
(1 year ago)
alibaba cloud ddos like web scan
Bad Web Bot