๐ซ๐ท
Entalpi.net
2026-06-25 11:32:33
(1 hour ago)
Repeated scrapping attempts on unallowed content and/or repeated tarpit hits
Bad Web Bot
Anonymous
2026-06-25 09:27:27
(3 hours ago)
FortiWeb WAF: 36 attacks detected. Threat Score: 7800. Types: Client Management(18), GEO IP(18). Ori ...
show more
FortiWeb WAF: 36 attacks detected. Threat Score: 7800. Types: Client Management(18), GEO IP(18). Origin: Singapore.
show less
Web App Attack
๐ฉ๐ช
sdos.es
2026-06-25 07:47:55
(4 hours ago)
"Multiple/Conflicting Connection Header Data Found - keep-alive, close"
Web App Attack
๐บ๐ธ
xxkodedxx
2026-06-25 06:29:21
(6 hours ago)
[Zorvexus edge-defense] Edge-block (probe URI / bad UA / hostile vhost)
Trigger: 1ร edge-block in 10 ...
show more
[Zorvexus edge-defense] Edge-block (probe URI / bad UA / hostile vhost)
Trigger: 1ร edge-block in 10m window.
Origin: SG / AS132203 Shenzhen Tencent Computer Systems Company Limited
Active: 06:28:44 UTC
Volume: 1 HTTP req
Probed: /
Status mix: 444ร1
Vhost fishing: 67.217.240.72
UA: "Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1"
Auto-banned 30d. zorvexus-banner.
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
conrad10781
2026-06-25 06:16:28
(6 hours ago)
nginx-direct-ip
Port Scan
๐ซ๐ท
cityhunter_rhone
2026-06-25 05:15:05
(7 hours ago)
Mercurius Guide auto detection | source=Fail2Ban | scraper score=1 | events=1 | decision=datacenter ...
show more
Mercurius Guide auto detection | source=Fail2Ban | scraper score=1 | events=1 | decision=datacenter | actions=fingerprint_visit | last_seen=2026-06-25 07:13:02
show less
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-25 03:43:18
(8 hours ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 43.156.79.172 (SG/Singapore/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 43.156.79.172 (SG/Singapore/-): 1 in the last 3600 secs
show less
Web App Attack
๐ซ๐ท
Sklurk
2026-06-24 23:29:18
(13 hours ago)
Web App Attack
Web App Attack
๐น๐ท
ferique
2026-06-24 07:06:13
(1 day ago)
Real-time Intercept: DNN_AUTH attack. Reference: 2026-06-24 10:06:07.5211 Login failure: 43.156.79. ...
show more
Real-time Intercept: DNN_AUTH attack. Reference: 2026-06-24 10:06:07.5211 Login failure: 43.156.79.172 DNN_AUTH
show less
Web App Attack
Bad Web Bot
๐ณ๐ฑ
lid3rc
2026-06-24 03:29:50
(1 day ago)
According to the AbuseIPDB risk analysis, the IP address is too high risk.
Web App Attack
๐ฆ๐บ
MAGIC
2026-06-24 03:03:55
(1 day ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-23 20:02:10
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 43.156.79.172 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 43.156.79.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 16:02:02.482922 2026] [security2:error] [pid 19332:tid 19332] [client 43.156.79.172:41510] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.jillbauman.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.jillbauman.com"] [uri "/"] [unique_id "ajrmOp-tkizgyTOJokAQ9QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
Coolnagour
2026-06-23 19:47:54
(1 day ago)
bot entered honeypot
Web App Attack
๐ฉ๐ช
sdos.es
2026-06-23 19:22:40
(1 day ago)
"Multiple/Conflicting Connection Header Data Found - keep-alive, close"
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 18:49:07
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 43.156.79.172 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 43.156.79.172 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 14:49:03.259072 2026] [security2:error] [pid 28443:tid 28443] [client 43.156.79.172:44568] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||badfoodlawsuit.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "badfoodlawsuit.com"] [uri "/"] [unique_id "ajrVH_hDhtUFAUM7BA0CjwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack